Principal, GRC Automation and Cyber Risk (Seattle)
F5 Networks
At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation. Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better. And it means we prioritize a diverse F5 community where each individual can thrive.The Principal, GRC Automation & Cyber Risk Quantification is a senior engineering and strategic leadership role responsible for designing, implementing, and scaling automated, data-driven cyber risk and GRC capabilities across the enterprise. This role blends deep cyber risk management expertise with hands-on software engineering, GRC platform architecture, workflow automation, API development and systems integration, and emerging AI-enabled and Agentic capabilities to modernize how the organization manages risk, compliance, and governance at scale.Reporting to the VP, Cyber Governance, Risk & Compliance, this role serves as a force multiplier for the GRC organization, translating complex regulatory and risk frameworks into automated controls, continuous monitoring workflows, decision-ready dashboards, and audit-ready evidence. The principal is expected to write, review, and own production-quality code and partner closely with ERM, Engineering, IT, Legal, Privacy, Internal Audit, and Digital teams to embed risk intelligence directly into business and technology processes.Key ObjectivesShift GRC from manual, point-in-time assessments to continuous, automated, and risk-informed execution by leveraging purpose-built engineering solutions, Python-based tooling, and Agentic workflows.Enable executive and board-ready cyber risk insights grounded in quantitative and business-relevant data, supported by automated data pipelines and integrations.Standardize and automate control mapping, testing, evidence collection, and risk reporting across frameworks and regulators through scalable API-driven architectures.Act as the technical and architectural authority for ServiceNow IRM and adjacent GRC automation capabilities, including custom-developed integrations and Agentic automation agents.Primary Responsibilities1. GRC Automation & Platform ArchitectureDesign, build, and evolve end-to-end GRC automation across risk, compliance, policy, and issue management domains — including writing and maintaining Python-based automation scripts, services, and tools.Integrate GRC workflows with source systems (cloud platforms, vulnerability tools, IAM, SDLC, third-party systems) via RESTful APIs, webhooks, and event-driven integration patterns to reduce manual effort and improve data quality.Architect and maintain a systems integration layer connecting GRC platforms to enterprise data sources, enabling real-time risk signal ingestion and automated control validation.2. Cyber Risk Quantification & Decision EnablementPartner with Cyber Risk leadership to operationalize quantitative and scenario-based risk analysis (e.g., FAIR-aligned methods).Engineer automated pipelines for ingesting threat, vulnerability, asset, and business context data to support risk-based prioritization, leveraging Python data processing libraries (e.g., pandas, NumPy) integration APIs, and Agentic work flows.Enable financially grounded cyber risk outputs that inform:Risk acceptance and investment decisionsExecutive and board-level reportingProgram prioritization and roadmap planning3. Compliance Automation & Continuous MonitoringTranslate regulatory and framework requirements into automated, testable, and traceable controls, implementing these as code-driven workflows and API-integrated monitoring checks.Implement continuous control monitoring and evidence refresh to support ISO, SOX, SOC, and regulatory audits, using automated evidence collection scripts and scheduled integrations.Reduce audit fatigue by standardizing artifacts, workflows, and control narratives across compliance programs.Partner with Internal Audit and external auditors to improve transparency, timeliness, and defensibility of GRC outputs.4. AI-Enabled GRC & Agentic DevelopmentDesign, build, and deploy Agentic automation solutions — autonomous AI-driven agents capable of reasoning across GRC data, identifying risks, triggering workflows, and recommending actions with minimal human intervention.Identify and pilot AI-assisted capabilities to accelerate GRC outcomes, such as:Control mapping and gap analysisRisk scenario generation and prioritizationPolicy-to-control alignment and impact analysisAgentic issue triage, intelligent remediation recommendations, and autonomous evidence collectionDevelop and integrate LLM-based or agent-framework tooling (e.g., LangChain, AutoGen, or comparable frameworks) into GRC workflows.Ensure all AI-enabled and Agentic GRC use cases align with internal security, privacy, and governance standards.5. API and Systems IntegrationDesign, develop, and maintain RESTful and GraphQL APIs that expose GRC data and capabilities to downstream consumers including dashboards, reporting tools, and integrated enterprise systems.Own the end-to-end systems integration architecture connecting GRC platforms to security tools, cloud environments, HR systems, asset management, and third-party risk platforms.Establish and enforce API governance standards, including versioning, authentication, documentation (OpenAPI/Swagger), and rate management.Build and maintain integration middleware, ETL pipelines, and event-driven connectors to ensure consistent, reliable data flows across GRC systems.6. Stakeholder Partnership & InfluenceServe as a trusted advisor to security, IT, engineering, and business leaders on risk-based automation, control design, and engineering best practices for GRC tooling.Influence teams to embed GRC requirements directly into SDLC, cloud, procurement, and third-party workflows.Translate technical implementations — including architecture diagrams, API designs, and automation logic — into clear, executive-ready narratives for leadership consumption.Knowledge, Skills & AbilitiesKnowledgeDeep understanding of cyber risk management and GRC frameworks (NIST CSF, NIST 800-53/171, ISO 27001, SOC 2, SOX).Strong grasp of enterprise risk management (ERM) concepts and alignment.Working knowledge of quantitative cyber risk analysis (FAIR or similar approaches).Familiarity with audit, regulatory, and certification processes.Understanding of software engineering principles, API design patterns, and systems integration methodologies.Knowledge of Agentic AI frameworks and multi-agent system design principles.SkillsExpertise designing and automating workflows within ServiceNow IRM or comparable GRC platforms.Proficient Python developer — able to write clean, maintainable, production-ready code for automation scripts, data pipelines, API clients, and Agentic workflows.Experienced in API development and integration — designing and consuming REST APIs, managing authentication (OAuth, API keys), and building integration layers.Demonstrated systems integration experience — connecting heterogeneous enterprise systems through APIs, webhooks, message queues, or ETL frameworks.Hands-on experience with Agentic development — building autonomous AI agents using frameworks.Ability to translate abstract frameworks into practical, automated, and scalable implementations.Strong systems thinking, connecting people, process, technology, and data.Excellent written and verbal communication skills, including executive-level storytelling.AbilitiesOperate comfortably at both strategic and hands-on engineering levels.Influence without authority in a highly matrixed environment.Drive change from legacy/manual processes to modern, code-driven automated execution.Independently scope, build, and ship engineering solutions with minimal oversight.QualificationsRequiredBachelor's degree in Cybersecurity, Information Systems, Computer Science, Engineering, Risk Management, or related field.10+ years of experience across cybersecurity, risk management, GRC, or security architecture roles — with at least 3–5 years in a hands-on engineering or software development capacity.Demonstrated Python programming proficiency applied to automation, data processing, tooling, or security use cases.Proven API development and integration experience, including designing, building, and consuming APIs in enterprise environments.Demonstrated systems integration experience, connecting GRC, security, cloud, or enterprise systems at scale.Demonstrated experience automating or scaling GRC, risk, or compliance programs using enterprise platforms.Strong experience partnering with cross-functional technical and business teams.PreferredMaster's degree in a related field.Experience with FAIR or quantitative risk methods.Hands-on experience with Agentic AI development — building and deploying autonomous agents for task automation, decision support, or workflow orchestration.Familiarity with LLM orchestration frameworks (LangChain, LangGraph, AutoGen, CrewAI, or similar).Experience with Python data and automation libraries (pandas, NumPy, FastAPI, Celery, Airflow, etc.).Experience with API gateway tooling, integration platforms (e.g., MuleSoft, Boomi, Workato), or message broker systems (Kafka, RabbitMQ).Hands-on experience with AI, data analytics, or workflow automation applied to GRC use cases.Professional certifications (CISSP, CISM, CRISC, Open FAIR).Why This Role MattersThis role is foundational to advancing the organization's GRC maturity by reducing friction, increasing signal, and enabling leadership to make faster, better-informed risk decisions. It is a highly visible engineering leadership position with direct impact on executive confidence, audit outcomes
$221k - $365k
...Senior Director of Governance, Risk, and Compliance (GRC) plays a critical role in... ...day.The role is based in Seattle reporting directly to the Chief... ...risk assessments across cyber, IT, third‑party, and... ...tools and platforms, advancing automation and scalable risk and compliance...CyberRiskFull timePart time$173.3k - $288.9k
...GroupSalesJob ProfileClient Partner Principal Director - CCIManagement... ...business outcomes with embedded cyber resiliency and AI to protect... ...ensure client success• Identify risks to account growth or client... ...Phoenix AZ; Philadelphia PA; Seattle WA; Chicago IL; Orlando FL; Omaha...CyberPrincipalRiskFull timePart timeRemote workVisa sponsorshipFlexible hours$143.3k - $238.8k
...business outcomes with embedded cyber resiliency and AI to protect... ...the Cox family of companies.The Principal Client Partner is responsible... ...account health, identify risks, and support mitigation strategies... ...Phoenix AZ; Philadelphia PA; Seattle WA; Chicago IL; Orlando FL; Charlotte...CyberPrincipalRiskFull timePart timeRemote workVisa sponsorshipFlexible hours$124.9k - $229.1k
...Portland, San Francisco, Seattle, Tampa. At EY, we’re all... ...a better working world. Risk Consulting – Risk Technology – GRC/IRM Platforms – Manager The... ...regulatory reforms, and cyber threats. Organizations are... ...to simplify governance, automate compliance, and deliver forward...CyberRiskSummer holidayWork at officeFlexible hours$124.9k - $229.1k
...Portland, San Francisco, Seattle, Tampa At EY, we’re... ...better working world. Risk Consulting – Risk Technology – GRC/IRM Platforms – Manager... ...regulatory reforms, and cyber threats. Organizations are... ...to simplify governance, automate compliance, and deliver forward...CyberRiskWork experience placementSummer holidayWork at officeFlexible hours$200k - $250k
...distinct practice areas: healthcare, cyber, and national security. United... ...pressing problems. Location: Seattle, WA or McLean, VA or Remote... ...the associated complexity and risks. We are an end‑to‑end solution... ...opportunity for you as a Principal Backend Software Engineer at Trase...CyberPrincipalRiskRemote work$166k - $203k
...delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders,... ...targeted for candidates within ~50 miles of Seattle, WA or Austin, TX . We believe this... ...enhance vulnerability detection and security automation. Demonstrate First Principles...CyberRiskFull timeApprenticeshipWork at officeLocal areaRemote workFlexible hoursShift work1 day per week$230k - $280k
...delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders,... ...Software Applied AI Engineer Location: Seattle, WA or Austin, TX Position Summary... ...improve vulnerability detection and security automation. Partner across Product, Security...CyberRiskFull timeApprenticeshipWork at officeLocal areaRemote workFlexible hoursShift work1 day per week$192k - $240k
...effortlessly. Brex’s AI-native automation and world-class service... ...Security, Corporate Engineering, GRC and IT and to improve security... ...workThis role will be based in our Seattle office. We are a hybrid... ...aware, job-seekers may be at risk of targeting by malicious actors...RiskPart timeWork at officeRemote workWork from home$238.3k - $356.8k
...As the Principal Business Information Security Officer, you will translate enterprise security... ..., and the ability to communicate complex risk to executives. As the BISO, you will help... ...and the Fair Chance Initiative for Hiring.SummaryLocation: Seattle, WAType: Full time...PrincipalRiskMinimum wageFull timePart timeLocal area$224k
...best work. Join us and build for travelers everywhere.Principal Product Manager, Fraud & Risk PlatformIntroduction to the Team: The Product Team creates... ...growth. The total cash range for this position in Seattle is $224,000.00 to $313,500.00. Employees in this role have...PrincipalRiskFull timePart timeImmediate start- ...Title: Principal Project Manager – Rolling StockLocation: 1601 5th Avenue, Suite 800, Seattle, WA 98101Duties: Lead rolling stock engineering consulting teams and business development... ...software, communications, human factors, or cyber securityConducting design reviews or systems...CyberPrincipalContract workPart timeWork at officeRemote workHome office
$184.3k - $264.95k
...outcomes.About the RoleWe are seeking a Principal Technical Program Manager to drive the strategy... ...program cadences—status tracking, risk management, escalation protocols—that keep... ...Employment Type:RegularWork Style:hybridLocation:Seattle,WA,United StatesTravel:Up to 25%Role:...PrincipalRiskPart timeWork at office$200.5k - $332k
...security concepts into business risk and opportunityLead cross-... ...organizationOrganization & Talent DevelopmentMentor Principal Engineers, Architects, and... ...and custom security automation at scaleMulti-cloud security... .... 2026 Nordstrom, IncSummaryLocation: Seattle, WAType: Full time...PrincipalRiskFull timePart time- ...be remote and can be hired anywhere near Seattle, Portland, or BoiseThe Sr. Cybersecurity... ...business operations, security needs, and risk appetite. Identify their security concerns... ...advisor with clients, partners, peers and cyber community resulting in an influential...CyberRiskFull timePart timeWork experience placementLocal areaRemote workWork from home
$212.7k - $374.4k
...Enhance supply chain resilience and mitigate risks.Team Leadership: Lead and develop a high... ...thinker.Experience with process automation and agentic transformation Adept at navigating... ...Alto; California - Irvine; Washington - Seattle; Washington - BellevueType: Full time...RiskFull timeContract workPart timeWork experience placement$189.8k - $284k
..., experimentation and market insights to inform decisionsManage risks, dependencies and trade-offs across multiple initiativesAboutyouMinimum... ...for employment per the Fair Chance Ordinance and the Fair Chance Initiative for Hiring.SummaryLocation: Seattle, WAType: Full time...PrincipalRiskMinimum wageFull timePart timeLocal area$164.4k - $246.6k
...support and continuous evolution across Seattle, and is the accountable Research Site Partner... ...excellence, financial stewardship, and risk management across a complex laboratory... ...both IT and OT environments, aligned to cyber security, ITSM, ITIL, and DTE system lifecycle...CyberRiskFull timePart timeSummer workLocal areaRemote workFlexible hours2 days per week- ...and PricingPreferred Location: Seattle, WA, with other Pacific Time... ...function through improved workflows, automation, and AI-enabled capabilities.... ...the businessEstablish clear, risk-based review processes based... ...access to ensure their cyber resilience tailored for distributed...CyberRiskPermanent employmentContract workPart timeSummer workShift work
$166k - $258k
...and escalation of the highest-risk exposures, along with the actions... ...remediation activities, and automate processes that secure the... ...management, network security, and cyber hygiene.Demonstrated thought leadership... .... 2026 Nordstrom, IncSummaryLocation: Seattle, WAType: Full time...CyberRiskFull timePart time- ...company where you matter.Your ImpactAs a Principal NPI Program Manager, you will own the... ...functional areas.What You’ll DoLocation: Seattle, WA (flexible for other Axon hubs)Reports... ...improvements to NPI workflows - including AI and automation opportunities that reduce manual effort,...PrincipalPart timeLive inFlexible hours
- ...each individual can thrive.Role SummaryThe Principal Human Resources Business Partner (... ...F5’s transformation agenda.• Anticipate risks and opportunities by looking around corners... ...Request by contacting ****@*****.***: Seattle; San JoseType: Full time...PrincipalRiskFull timePart timeLocal area
$224k
...Join us and build for travelers everywhere.Principal Product Manager, Agentic... ...strategic decisions on AI investments and risk managementDrive alignment across product,... ...analysisThe total cash range for this position in Seattle is $224,000.00 to $313,500.00. Employees...PrincipalRiskFull timePart time$189k - $230.7k
...ProgramTuition Reimbursement ProgramBECU Cares volunteer time off + donation matchIMPACT YOU’LL MAKE:As the AI Governance, Risk & Compliance (GRC) Director, you will help shape how AI is responsibly and effectively adopted across BECU. You’ll serve as the critical bridge...RiskFull timePart timeRemote work$177k - $239.4k
...possibilities by leveraging AWS.We're seeking a Principal Technical Program Manager, as an... ...while proactively identifying and mitigating risk.This is not a role for someone who waits... ...more about our benefits at .USA, WA, Seattle - 177,000.00 - 239,400.00 USD annually...PrincipalRiskPart timeFlexible hours$164.2k - $246.2k
...return, we’ll give you the trust to take risks, the tools to grow, the skills to develop... ...an innovative team member to serve as a Principal, Partner Enablement Program Manager. In this... ..., IL, Remote; USA, MA, Boston; USA, WA, Seattle; USA, UT, Salt Lake City; USA, OR,...PrincipalRiskFull timePart timeWork at officeRemote workWork from homeHome officeFlexible hours$210.6k - $263.25k
...control spend effortlessly. Brex’s AI-native automation and world-class service eliminate manual... ...’s most critical functions — including Risk, Compliance, Payment Operations,... ...Will WorkThis role will be based in our Seattle office. We are a hybrid environment that...RiskPart timeWork at officeRemote workWork from home$162.8k - $244.2k
...return, we’ll give you the trust to take risks, the tools to grow, the skills to develop... ...the team.About the RoleWe are looking for Principal Product Managers who have shipped... ...SummaryLocation: USA, CA, Pleasanton; USA, WA, Seattle; Canada, BC, Vancouver; USA, CA, San FranciscoType...PrincipalRiskFull timePart timeWork at officeRemote workHome officeFlexible hoursWeekend work$197.3k - $313.7k
...events, both in-person and virtually. As the Principal Engineer focused on architecture... ...mobile and cross-platform/browser test automation.Experience with Snowflake, Google Analytics... ...Chicago; New York - New York; Washington - Seattle; Indiana - IndianapolisType: Full time...PrincipalFull timePart time- ...investment banking. Wells Fargo is seeking a Principal Commercial Banking Relationship Manager... ...strategies for process improvement and risk control development across Commercial Banking... ...: SAN FRANCISCO, CA; IRVINE, CA; SEATTLE, WA; OAKLAND, CA; DENVER, CO; WEST COVINA...PrincipalRiskFull timePart timeWork experience placementLocal area
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Principal, GRC Automation and Cyber Risk (Seattle). Be the first to apply!
- senior principal cloud computing engineer Seattle, WA
- senior principal scientist Seattle, WA
- principal cloud computing engineer Seattle, WA
- principal Seattle, WA
- cyber sales Seattle, WA
- cyber Seattle, WA
- risk Seattle, WA
- risk adjustment Seattle, WA
- antepartum high risk ob nurse Seattle, WA
- risk intern Seattle, WA



















