Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Sr. Security Engineer - GRC Frameworks & AI Governance

$100k - $228k
Full-time

SpaceXAI

SpaceXAI’s mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company’s mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates.

ABOUT THE ROLE:

We are seeking an experienced Governance, Risk, and Compliance (GRC) Engineer to own and scale our security and AI governance compliance posture as SpaceXAI grows. You will set the standards the organization builds to, design and implement controls, and automate the unglamorous parts of compliance so a fast-moving team can ship safely. The ideal candidate combines deep fluency across modern security and AI frameworks with GRC engineering skills: you translate control requirements into technical implementations, partner with engineers to bake compliance into architecture and CI/CD, and replace point-in-time checklist work with continuous, engineered assurance. You will collaborate across engineering, legal, product, and leadership to keep our AI systems audit-ready across enterprise, commercial, and public-sector environments.

This role may also include additional tasks and responsibilities as needed to support the team and evolving business priorities.

RESPONSIBILITIES:

  • Own and execute security compliance implementation and audits across core frameworks including SOC 2, NIST CSF, NIST SP 800-53, ISO 27001, ISO 42001, and the EU AI Act, including control design, mapping, gap assessment, evidence collection, and remediation tracking.
  • Build and maintain Compliance-as-Code and continuous compliance capabilities — policy-as-code, automated control validation, continuous evidence pipelines, and monitoring integrated into development and deployment workflows — so the company can move fast without cutting corners.
  • Operate and extend GRC platforms (e.g., Vanta) as the system of record for controls, evidence, and audit readiness; integrate them with cloud, identity, and engineering tooling to reduce manual toil.
  • Partner with engineering and architecture to embed compliance requirements early in design reviews; translate framework obligations into clear technical control narratives that satisfy auditors without slowing delivery.
  • Develop, maintain, and continuously improve corporate policies, standards, and procedures that support the company's governance and AI management system posture.
  • Identify, assess, and prioritize risks related to AI/ML operations, cybersecurity, regulatory compliance, data privacy, intellectual property, and cloud deployments; distinguish meaningful business risk from compliance theater.
  • Lead risk assessments and compliance reviews for new products, model deployments, features, and architectural changes, with particular attention to AI system risks (data handling, model governance, agentic and conversational surfaces).
  • Own and cultivate relationships with external auditors, assessors (e.g., QSAs where applicable), and regulators; serve as the bridge between auditors and internal teams so requests are reasonable, clear, and relevant to our stack.
  • Champion a culture of security and compliance across the company — educating teams on why controls exist, not only enforcing them.

BASIC QUALIFICATIONS:

  • Bachelor's degree in computer science, Information Security, Cybersecurity, or in an engineering/STEM field.
  • 8+ years of experience in GRC, security compliance, or technology audit roles with hands-on GRC engineering responsibilities.
  • Demonstrated experience implementing and maintaining security compliance frameworks in cloud environments (AWS, GCP, or Azure).
  • Expert-level working knowledge of several of the following: SOC 2, NIST CSF, NIST SP 800-53, ISO 27001, and ISO 42001 — including building and running controls, not only reading the frameworks.
  • Experience with Compliance-as-Code practices and GRC automation tooling (e.g., Vanta, Drata, or similar), with a bias toward continuous monitoring.
  • Ability to evaluate control objectives against real IT and cloud configurations and to work alongside engineers on remediation.

PREFERRED SKILLS AND EXPERIENCE:

  • 10+ years of security compliance, GRC engineering, or technology audit-related experience.
  • Hands-on experience implementing technical controls (e.g., IAM, logging and monitoring, encryption, infrastructure hardening) and integrating compliance checks into CI/CD pipelines.
  • Experience in the tech or AI/ML industry, particularly with startups or high-growth product organizations.
  • Working knowledge of HIPAA privacy and security rules (bonus), ideally mapped into a SOC 2 or ISO-certified control environment.
  • Experience supporting SOX / ITGC design, documentation, testing, or auditor coordination, especially in a publicly traded or IPO-bound company.
  • Strong understanding of AI ethics and AI governance frameworks (e.g., NIST AI RMF, ISO 42001, EU AI Act) and associated operational risks.
  • Working knowledge in data privacy frameworks (e.g., GDPR, CCPA) in a technology or cloud environment.
  • Exceptional analytical, problem-solving, organizational, and project management skills, with the ability to take compliance programs from conception to audit-ready launch.
  • Excellent communication and stakeholder management skills — able to explain risk and tradeoffs to engineers, legal, sales, and executives in plain language.
  • Certifications such as CISSP, CISA, CISM, CRISC, CGEIT, ISO 27001 Lead Implementer/Auditor, or similar preferred.
  • Experience with public sector or federal compliance programs (e.g., FedRAMP, NIST 800-171, CMMC) is a plus.

COMPENSATION AND BENEFITS:

$152,000 - $258,000 USD

Base salary is just one part of our total rewards package at SpaceXAI, which also includes equity, comprehensive medical, vision, and dental coverage, access to a 401(k) retirement plan, short & long-term disability insurance, life insurance, and various other discounts and perks.

ITAR REQUIREMENTS:

  • To conform to U.S. Government export regulations, applicant must be a (i) U.S. citizen or national, (ii) U.S. lawful, permanent resident (aka green card holder), (iii) Refugee under 8 U.S.C. § 1157, or (iv) Asylee under 8 U.S.C. § 1158, or be eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here.

SpaceXAI is an equal opportunity employer. For details on data processing, view our Recruitment Privacy Notice.

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Sr. Security Engineer - GRC Frameworks & AI Governance in Palo Alto, CA vacancy
  • $152k - $258k

     ...mission is to create AI systems that can...  ...motivated, and focused on engineering excellence. This...  ...an experienced Governance, Risk, and Compliance (GRC) Engineer focused on...  ...fluency in data privacy frameworks (GDPR, CCPA), and...  ...represent real security or business risk over... 
    Senior
    Permanent employment
    Full time
    Temporary work

    SpaceXAI

    Palo Alto, CA
    3 days ago
  • Engineering • Full-time • San Francisco; Palo Alto, CA Apply...  .... About the Role Security GRC Engineers design, implement, and scale our governance, risk, and compliance...  ...have experience with GRC frameworks such as SOC 2, ISO 270...  ...the security and AI governance program, and... 
    Suggested
    Full time
    Contract work
    Work at office

    Anysphere, Inc

    Palo Alto, CA
    2 days ago
  • $168k - $230k

     ...of enabling human life on Mars. SR. SECURITY SOFTWARE ENGINEER, APPLIED COMPUTING (STARSHIELD) Starshield...  ...use, Starshield is designed for government use, with an initial focus on earth...  ...Software Engineer, you will leverage AI to automate security-related efforts... 
    Senior
    Permanent employment
    Full time
    Temporary work
    Immediate start
    Flexible hours
    Weekend work

    Spacex

    Palo Alto, CA
    more than 2 months ago
  •  ...Sr. Application Security Engineer At SentinelOne, we are driven by a clear purpose: to give the advantage to those who secure our future. As AI reshapes how organizations build, operate, and innovate, the responsibility to protect them becomes more critical than ever... 
    Senior

    SentinelOne

    Mountain View, CA
    2 days ago
  • Security Engineer San Francisco, Palo Alto, Toronto About HeyGen At HeyGen,...  ...of one of the fastest-growing AI companies in the world. You will...  ...strong security controls. GRC & Compliance: Oversee our SOC...  ...management. Familiarity with GRC frameworks and compliance programs (SOC... 
    Suggested

    HeyGen

    Palo Alto, CA
    2 days ago
  • $156k - $255k

     ...and we take their security seriously. Our core...  ...leverage security engineering, advanced risk...  ...traditional security governance, risk and compliance...  ...to replace manual GRC work with scalable...  ...complex SaaS/AI tools meet our security...  ...a foundational framework for third party security... 
    Full time
    For contractors
    Work experience placement
    Work at office
    Flexible hours

    LinkedIn

    Mountain View, CA
    4 days ago
  • $200k - $235k

     ...focused on enabling our clients to securely navigate the digital asset...  ...Senior Application Security Engineer to lead the technical...  ...engagements. Secure next-generation AI-integrated applications by...  ...AI/ML lifecycles, MLOps frameworks, and agentic AI platforms.... 
    Senior
    Full time
    Work at office
    Worldwide

    BitGo Holdings, Inc.

    Palo Alto, CA
    14 hours ago
  •  ...Senior Security Engineer, Enterprise Security CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers...  ...detection, response, and governance Work with Security...  ...enterprise security standards and frameworks (e.g., SOC 2, ISO 27001,... 
    Senior
    For contractors
    Remote work

    CoreWeave

    Sunnyvale, CA
    2 days ago
  • $190k - $250k

     ...Senior Cloud Security Engineer Kodiak Robotics, Inc. was founded in 20...  ...an artificial intelligence (AI) powered technology stack purpose...  ...remediation Secure frameworks Build critical security...  ...data protection, and access governance Experience with network... 
    Senior
    Temporary work
    Work at office
    Visa sponsorship
    Flexible hours

    Kodiak

    Mountain View, CA
    4 days ago
  •  ...across connectivity, AI, security and more, we'll map a...  ...the Product Security Engineer, you will work closely...  ...analysis and treatment frameworks like STRIDE or MITRE EMB...  ...You will work with the GRC team on aligning to...  ...regulatory and corporate governance obligations; (v)... 
    Full time
    Contract work

    Rivian and Volkswagen Group Technologies

    Palo Alto, CA
    2 days ago
  • $134k - $179k

     ...is The Essential Cloud for AI™. Built for pioneers by pioneers...  ...strategies at scales most security engineers only dream about...  ...understanding of modern TTP frameworks such as MITRE ATT&CK and Cyber...  ...information. To conform to U.S. Government export regulations applicable... 
    Senior
    Permanent employment
    Full time
    Temporary work
    Casual work
    Work at office
    Flexible hours

    CoreWeave

    Sunnyvale, CA
    2 days ago
  • $120k - $150k

     ...DataVisor is the world's leading AI-powered Fraud and Risk...  ...intelligence, powerful decision engine and investigation tools work together...  ...big data, machine learning, security, and scalable infrastructure....  ...knowledge of AI security frameworks and standards: NIST AI RMF, OWASP... 
    Remote work

    DataVisor

    Mountain View, CA
    1 day ago
  • $146k - $172k

     ...rewards. Robinhood's Enterprise Security team is at the forefront of AI security, designing safety...  ...As a Senior Corporate Security Engineer on our Corporate Systems team,...  ...evidence-gathering processes for Governance, Risk, and Compliance (GRC) and internal/external... 
    Senior
    Work at office
    Flexible hours
    Shift work
    3 days per week

    Robinhood Financial

    Menlo Park, CA
    2 days ago
  • $170k - $215k

     ...record of serving over 18 million users, Credit Sesame leverages AI and advanced analytics to empower individuals to better...  ...a turnkey AI-powered credit intelligence solution.  As our security engineer, you'll own security end-to-end for our platform — standing up... 
    Senior
    Full time
    Home office
    Flexible hours

    Credit Sesame

    Mountain View, CA
    a month ago
  • $146k - $172k

     ...the rewards. About the TeamThe Security Operations (SecOps) team at...  ...security operations—leveraging AI-driven automation, Autonomic...  ...), and innovative detection frameworks to set the standard across the...  ...the RoleAs a Senior Security Engineer (IC5) on the Detection &... 
    Senior
    Work at office
    Flexible hours
    Shift work
    3 days per week

    Robinhood Financial

    Menlo Park, CA
    4 days ago
  • $129k - $212k

     ...every day and we take their security seriously. Our core value of...  ...mission is to leverage security engineering, advanced risk analytics, and...  ...SaaS, cloud services, APIs, AI/ML services, developer platforms...  ...documentation, and readiness frameworks.Evaluate, deploy and maintain... 
    Senior
    For contractors
    Work experience placement
    Work at office
    Flexible hours

    Linkedin

    Mountain View, CA
    2 days ago
  • $133k - $235k

     ...digital services. Snap Security teams protect the trust and...  ...’re looking for a Security Engineer to join Snap Inc! What you...  ...compliance, observability, and governance Utilize AI tools and high velocity...  ...SIEM, EDR, cloud security frameworks, and automation platforms... 
    Full time
    Work experience placement
    Live in
    Work at office
    Local area

    Snap Inc.

    Palo Alto, CA
    2 days ago
  • $180k - $200k

     ...where you'll own application security architecture, shape the Secure...  ...security across our engineering organization. This is a highly...  ...or other regulated security frameworks. FinTech, payments, financial...  ...you agree to receive calls, AI-generated calls, text messages... 
    Senior
    Work at office
    Local area

    Jobot

    Milpitas, CA
    3 days ago
  • $220k - $350k

     ...enabling human life on Mars. SR. AI ENGINEER, SPECIAL PROGRAMS - TOP...  ..., infrastructure, and legal/governance teams to deliver high-stakes...  ...models and develop evaluation frameworks to assess performance and...  ...-tuning, with an eye toward secure and scalable deployment.... 
    Senior
    Temporary work
    For contractors
    Shift work
    Weekend work

    SpaceX

    Palo Alto, CA
    1 day ago
  • $200k - $340k

     ...SpaceXAI's mission is to create AI systems that can accurately...  ...motivated, and focused on engineering excellence. This organization...  ...and motivated Infrastructure Security Engineer to join our security...  ...security principles, compliance frameworks, and best practices ~... 
    Full time
    Temporary work
    Relocation

    SpaceXAI

    Palo Alto, CA
    3 days ago
  • $189k - $274k

    Staff Security Engineer Aurora's mission is to deliver the benefits of self-driving technology safely...  ..., SIEM integrations, and alerting frameworks — in partnership with the Security Operations...  ...management. Familiarity with securing AI/ML platforms or applications built on... 
    Work at office
    Local area
    3 days per week
    Early shift

    Aurora - Mountain View, CA, US

    Mountain View, CA
    2 days ago
  • $180.6k - $289.3k

     ...financial institutions and government entities across more...  ...Description Visa’s Cyber Security team is seeking a Cyber Security Engineer to design, build, and...  ...scale, cloud‑native and AI‑driven security...  ...and modern web service frameworks. Develop and expand security... 
    Senior
    Full time
    Part time
    Work experience placement
    Work at office
    Local area
    Remote work

    VISA

    Foster, CA
    25 days ago
  •  ...At Commure, we're building the AI Operating System for healthcare, the foundation that...  ...transformation. About the Role Security patterns that worked 20 years ago don't hold...  ..., especially as AI changes how fast engineering teams ship code. We're looking for an Application... 
    Senior
    Full time
    Interim role
    Work at office
    Immediate start
    3 days per week

    Commure Athelas

    Mountain View, CA
    4 days ago
  • Saviynt is seeking a Principal Software Engineer to join its AI Security team. You will design, implement, and release end-to-end workflows for AI...  ...candidate should have strong expertise in Java, Spring Framework, and microservices, as well as experience with cloud technologies... 
    Senior

    Saviynt

    Milpitas, CA
    2 days ago
  • $165.6k - $296.4k

     ...Xbox Live. Azure Hardware Security Architecture team is responsible...  ...for a Principal Security Engineer to join our team Responsibilities...  ...initiatives across the full AI-driven hardware development...  ...Microsoft,customerand/or government security screening... 
    Ongoing contract
    Work at office
    Local area
    Worldwide

    Microsoft Corporation

    Mountain View, CA
    2 days ago
  • $247k - $290k

     ...the Role & TeamAt Robinhood, security is foundational to our mission...  ...Staff Software Security Engineer on our Security Engineering team...  ...Access Management Platform (IAM), AI Security, and our Detection &...  ..., or agentic automation frameworks.What We OfferChallenging, high... 
    Senior
    Work at office
    Flexible hours
    Shift work

    Robinhood Financial

    Menlo Park, CA
    14 hours ago
  •  ...Number: 200657994-0836 Summary We are seeking an experienced Security Engineer to play a pivotal role in shaping the security posture of our...  ...applications and infrastructure - with a particular focus on AI/ML systems and emerging technologies. In this high-impact role... 
    Senior
    Shift work

    Apple

    Cupertino, CA
    3 days ago
  • $165k - $280k

     ...with the ultimate goal of enabling human life on Mars. SR. NETWORK SECURITY ENGINEER SpaceX is looking for a Sr. Network Security Engineer...  ...an Equal Opportunity Employer; employment with SpaceX is governed on the basis of merit, competence and qualifications and... 
    Senior
    Temporary work
    Remote work
    Flexible hours
    Weekend work

    SpaceX

    Palo Alto, CA
    1 day ago
  • $188.5k - $282.7k

     ...re building SAGE , Rubrik's Semantic AI Governance Engine, which is the first system designed to...  ...and Online + Offline Evaluation Frameworks (20% of time) Designing automated...  ...across millions of sessions to surface security gaps, which are then turned into new policy... 
    Senior
    Permanent employment
    Full time
    Local area

    Rubrik

    Palo Alto, CA
    more than 2 months ago
  •  ...Senior Principal Software Engineer at JPMorganChase...  ...technology products in a secure, stable, and scalable...  ...deployment, monitoring, and governance. Drives...  ...standards for agentic AI-enabled engineering across...  ...software and platform frameworks to standardize ML Engineering... 
    Senior

    JPMorgan Chase & Co.

    Palo Alto, CA
    a month ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Sr. Security Engineer - GRC Frameworks & AI Governance. Be the first to apply!