Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Senior Compliance Automation Engineer

True Anomaly

Senior Compliance Automation Engineer

Denver, CO or Long Beach, CA or SF Bay area, CA or Washington, DC

Space is a warfighting domain. True Anomaly seeks those with the talent and ambition to build the technology that secures it.

True Anomaly delivers decisive capabilities for space superiority. We build autonomous spacecraft, advanced payloads, mission software, and space-based interceptors — enabling the U.S. and its Allies to secure the space environment and counter threats from the ultimate high ground.

Our Values

  • Be the offset. We create asymmetric advantages with creativity and ingenuity.
  • What would it take? We challenge assumptions to deliver ambitious results.
  • It's the people. Our team is our competitive advantage and we are better together.

Your Mission

We are seeking a Senior Compliance Automation Engineer to join our Governance, Risk, and Compliance (GRC) team and design and build True Anomaly's compliance automation platform from the ground up. This is a greenfield engineering role, not a configuration or administration position. You will not be deploying off-the-shelf GRC tools and calling it done. Instead, you will architect and engineer a purpose-built, continuous compliance monitoring platform capable of spanning a hybrid environment of on-premises classified systems and multi-cloud infrastructure (AWS GovCloud, Azure Government).

This role sits at the intersection of software engineering, DevSecOps, and compliance, and demands someone who can write production-quality code, design robust API and webhook integration frameworks, and translate NIST SP 800-53 Rev. 5 and NIST SP 800-171 Rev. 3 control requirements into automated, evidence-generating technical workflows. You will own the architecture, build the pipelines, and integrate data from across the enterprise to produce a real-time, auditable, and scalable compliance posture built on infrastructure you design, not a vendor's dashboard.

This position requires the ability to obtain and maintain a security clearance.

Responsibilities

Compliance Automation Platform Engineering

  • Architect and build a greenfield Continuous Compliance Monitoring (CCM) platform from first principles, designed to aggregate, correlate, and report on security control status across hybrid on-premises and cloud environments in near real time.
  • Design and implement a modular, API-first platform architecture with well-documented internal APIs and extensible data models that support rapid onboarding of new control families, systems, and data sources.
  • Develop webhook-driven integration pipelines that ingest telemetry and compliance signals from diverse source systems, including cloud-native security services, SIEM platforms, vulnerability scanners, configuration management tools, and identity providers, without reliance on manual data collection or polling.
  • Build control validation microservices that programmatically test the implementation state of NIST SP 800-53 and 800-171 controls, generate machine-readable evidence artifacts, and surface control gaps with contextual remediation guidance.
  • Implement an evidence collection and artifact management framework that automatically captures, timestamps, and indexes compliance evidence mapped to specific control requirements, enabling audit-ready artifact packages to be assembled on demand.
  • Develop platform capabilities to support continuous authorization workflows, replacing point-in-time assessment cycles with living, automated control validation that feeds directly into ATO decision support.

DevSecOps and Pipeline Integration

  • Embed compliance enforcement gates into CI/CD pipelines (GitHub Actions, GitLab CI, Jenkins) to intercept non-compliant infrastructure-as-code (IaC) changes, insecure configurations, and policy violations before they reach production.
  • Develop and maintain policy-as-code libraries using tools such as Open Policy Agent (OPA), Terraform Sentinel, AWS Config Rules, and Azure Policy, translating control requirements into machine-enforceable rulesets.
  • Integrate compliance telemetry with infrastructure provisioning workflows using Terraform, Ansible, and Pulumi, ensuring that system authorization boundaries are maintained as infrastructure evolves.
  • Build automated STIG validation workflows that apply and verify DISA STIG benchmarks across Linux, Windows, container, and cloud resource configurations using tools such as InSpec, OpenSCAP, and custom-built validation scripts.
  • Partner with DevOps and platform engineering teams to implement secure baseline enforcement automation, including automated drift detection and remediation triggering for configuration deviations.

Hybrid Architecture and On-Premises Integration

  • Design integration patterns and secure data collection agents for on-premises and air-gapped or limited-connectivity environments, enabling compliance telemetry to flow into the central platform without violating network segmentation or classification boundaries.
  • Build bidirectional sync mechanisms between on-premises systems and cloud compliance services where permitted by authorization boundaries, ensuring hybrid posture visibility without creating unauthorized data flows.
  • Develop solutions for classified environment compliance monitoring that operate within applicable network and data handling constraints, including support for IL5 and IL6 system boundaries.
  • Architect the platform's data pipeline and storage layer with an explicit understanding of CUI, ITAR-controlled data, and classified data handling requirements, ensuring the platform itself does not become a compliance liability.

NIST Framework Implementation and Control Automation

  • Serve as the technical authority on programmatic implementation of NIST SP 800-53 Rev. 5 control families, translating AC, AU, CM, IA, IR, RA, SC, SI, and other control families into automatable checks, evidence generators, and remediation workflows.
  • Build automation coverage for NIST SP 800-171 Rev. 3 requirements across the full 110-control set, with particular depth in Access Control, Audit and Accountability, Configuration Management, and System and Communications Protection.
  • Develop automated SSP population and maintenance workflows, enabling system security plans to be updated dynamically as control implementations change rather than through manual quarterly refresh cycles.
  • Implement POA&M lifecycle automation, including automated finding ingestion from scan results and audit outputs, deduplication, severity scoring, and status tracking integrated with ticketing systems such as Jira or ServiceNow.
  • Build CMMC Level 3 readiness automation tooling that maps assessment objectives to automated test cases, evidence artifacts, and gap reporting outputs.

Platform Observability and Reporting

  • Design and implement a compliance posture dashboard and reporting layer, built in-house, that provides real-time visibility into control implementation status, open findings, POA&M health, and assessment readiness across all scoped systems.
  • Build automated compliance scoring and trend analysis capabilities, surfacing control degradation, coverage gaps, and risk concentration patterns to GRC leadership and system owners.
  • Develop alerting and escalation workflows that notify responsible parties of control failures, configuration drift, scan findings, or expiring artifacts with appropriate urgency and context.
  • Implement structured audit log generation across all platform components, ensuring the compliance platform itself is fully auditable and operates within the control boundaries it enforces.

Qualifications

  • 7+ years of experience in security engineering, compliance engineering, DevSecOps, or a closely related discipline, with a demonstrated emphasis on building automation rather than operating tools.
  • Proven ability to design and build production-quality software systems, including APIs, data pipelines, and integration services. Proficiency in one or more of: Python, Go, TypeScript/Node.js, or equivalent.
  • Deep, hands-on expertise with NIST SP 800-53 Rev. 5 and NIST SP 800-171 Rev. 2/Rev. 3, including the ability to translate control language into specific, automatable technical implementations rather than policy documents alone.
  • Demonstrated experience designing and implementing webhook-driven and API-based integrations across heterogeneous security and IT toolsets, including cloud-native services, SIEMs, vulnerability management platforms, and ITSM systems.
  • Hands-on experience with policy-as-code frameworks including Open Policy Agent (OPA), Terraform Sentinel, AWS Config, or Azure Policy.
  • Proficiency with infrastructure-as-code tools including Terraform, Ansible, Pulumi, or equivalent, with experience enforcing compliance controls through IaC templates and pipelines.
  • Experience with CI/CD platforms (GitHub Actions, GitLab CI, Jenkins) and the ability to build and maintain compliance gates as native pipeline components.
  • Working experience with STIG validation tooling including InSpec, OpenSCAP, SCC, or equivalent, including custom profile development.
  • Familiarity with cloud security services across AWS GovCloud and/or Azure Government, including AWS Security Hub, AWS Config, Azure Security Center, Microsoft Defender for Cloud, and related services.
Vacancy posted 3 hours ago
Similar jobs that could be interesting for youBased on the Senior Compliance Automation Engineer in San Francisco, CA vacancy
  • $137k - $188k

     ...Francisco headquarters, and reporting to the Forensic Engineering Manager, the Senior Compliance Engineer is a key member of the technical team responsible...  ...and implement process improvements, including automation opportunities, to improve accuracy, scalability, and efficiency... 
    Senior
    Full time
    Work at office
    Local area
    Remote work
    Worldwide

    Dolby

    San Francisco, CA
    3 days ago
  •  ...and test design, and lead a group of testers Knowledgeable on tools like Tosca, Selenium Expertise in creating maintaining automation frameworks and scripts Experience working with different frameworks like Keyword, Data Driven and Hybrid. Ability to multi-... 
    Senior

    Purple Drive

    San Francisco, CA
    3 days ago
  •  ...Blockchain Works is seeking an experienced Web3 QA Automation Engineer to join their Engineering team. This role is critical in ensuring the highest standards of quality for their products, focusing on automated testing, project management, and collaboration within a decentralised... 
    Senior
    Remote work

    Blockchain Works

    San Francisco, CA
    2 days ago
  • Senior Launch Automation Engineer Darwin has partnered with a fast-paced startup in the Bay Area to find a Senior Launch Automation Engineer who will own the algorithms and software that automatically load, fuel, and launch orbital rockets. What you’ll do Develop real-time... 
    Senior

    Darwin Recruitment

    San Francisco, CA
    1 day ago
  • $165k - $195k

    A leading tech company in San Francisco is seeking a Senior Automation Engineer. In this role, you'll collaborate with clients to design AI-powered workflows that enhance business processes. You'll lead training sessions and document project requirements while ensuring... 
    Senior

    Parabola

    San Francisco, CA
    1 day ago
  • Alembic, Inc. is seeking a Senior Automation and Tools Engineer in San Francisco to scale their platform. The role focuses on automation in cloud infrastructure, improving reliability, and collaborating across teams. Candidates should have 5+ years of related experience... 
    Senior

    Alembic, Inc.

    San Francisco, CA
    2 days ago
  • $170k - $190k

    Mxv in San Francisco is seeking an experienced Senior Automation and Tools Engineer. In this hands-on role, you will scale the platform with a focus on reliability, observability, and operational excellence. Key responsibilities include automating cloud infrastructure,... 
    Senior

    Mxv

    San Francisco, CA
    4 days ago
  • A leading technology firm in San Francisco is looking for a Senior QA Automation Engineer to develop and maintain test automation frameworks for UI and API testing. You will work closely with development and design teams to ensure high software quality and participate in... 
    Senior

    Theory Ventures

    San Francisco, CA
    2 days ago
  • $165k - $195k

     ...spreadsheets—so that forward-thinking teams can automate the work they thought would always be...  ...to automate it—all without needing engineering support. Parabola is backed by OpenView...  ...on workshops, and everything in‑between, Senior Automation Engineers work closely with... 
    Senior
    Work at office

    Parabola

    San Francisco, CA
    2 days ago
  • A leading design consulting company is seeking a Senior Automation Engineer based in San Francisco, California. This position involves guiding the technical design of BAS/BMS/PLC systems, managing project scopes, and collaborating across disciplines. Candidates should... 
    Senior

    Stantec Consulting International Ltd.

    San Francisco, CA
    3 days ago
  • A global consulting firm is looking for a Senior Automation Engineer in San Francisco, California. This role involves guiding the technical design of BAS/BMS/PLC systems, managing projects, and ensuring design quality. The ideal candidate will have a strong engineering... 
    Senior

    Stantec Consulting International Ltd.

    San Francisco, CA
    5 days ago
  • $272k - $336k

     ...across 15+ U.S. states. Waymo's Systems Engineering team works together to blend software...  ...and Type Approval processes) to close compliance gaps. Represent technical teams and concepts...  ...data structures). Experience building automated, verifiable reporting tools that... 
    Senior
    Odd job
    Full time
    Remote work

    Waymo

    San Francisco, CA
    3 days ago
  • Allspice, Inc. in San Francisco is seeking a Software Engineer to lead automation projects in hardware development. The role involves working closely with customers and internal teams to design and implement workflows that enhance circuit design processes. Candidates should... 
    Senior
    Flexible hours

    Allspice, Inc.

    San Francisco, CA
    3 days ago
  • $117.8k - $176.8k

     ...integrated design practice. Our architects, engineers, interior designers, consultants,...  ...with Stantec. Your Opportunity The Senior Automation Engineer for BAS/BMS/PLC systems, guides...  ...800.00 Annually Pay Transparency: In compliance with pay transparency laws, pay ranges... 
    Senior
    Full time
    Temporary work
    Part time
    Casual work
    Local area
    Flexible hours

    Stantec Consulting International Ltd.

    San Francisco, CA
    5 days ago
  • $100k - $400k

     ...reliable, useful, and ubiquitous. We combine a powerful orchestration engine with a seamless consumer app to unlock liquidity for the world....  ...of the global economy. Join us! Overview We are seeking a QA Automation Engineer to own the quality engineering function end-to-end. In... 
    Senior
    Contract work
    Work at office
    Remote work
    Shift work
    2 days per week

    B Capital

    San Francisco, CA
    5 days ago
  • $320k - $405k

    Anthropic is seeking experienced network engineers to build and scale networking infrastructure for AI. The role requires 5+ years in...  ...Responsibilities include designing high-performance networks, developing automation tools, ensuring network reliability, and collaborating with AI... 
    Senior

    Anthropic

    San Francisco, CA
    1 day ago
  • A leading energy solutions company in San Francisco seeks a skilled Controls / Automation Engineer to optimize manufacturing automation systems. The role requires strong technical skills, including PLC programming and problem-solving in a collaborative environment. Candidates... 
    Senior
    Full time

    Franklin Whole Home

    San Francisco, CA
    5 days ago
  •  ...visit  Team Overview  The Hardware Engineering team is responsible for designing and testing...  ...and deserts.  Role Description The Senior Firmware QA Engineer will, as a starting...  ...the following:  Develop and maintain automated test scripts and frameworks for firmware... 
    Senior

    Gridware

    San Francisco, CA
    6 days ago
  • $187k - $260k

    NextGenEnergyJobs seeks an experienced engineer to develop automated testing frameworks for embedded systems in San Francisco. The role focuses on ensuring the reliability of Samsara's products, requiring a minimum of 5 years in firmware automation engineering, expertise... 
    Senior
    Remote job
    Flexible hours

    NextGenEnergyJobs

    San Francisco, CA
    1 day ago
  • $64.9k - $111.26k

    Siemens Mobility is seeking a Building Automation Design Engineer in San Francisco, CA. This role involves creating tailored design solutions for building automation systems, demanding a strong background in HVAC controls. Candidates should possess over 5 years of experience... 
    Senior
    Work at office
    Remote work

    Siemens Mobility

    San Francisco, CA
    4 days ago
  • Anyline is seeking a senior Solutions Engineer in San Francisco, California, to serve as a key technical advisor in industrial automation. In this role, you will guide both technical implementations and strategic solutions across customers' organizations. Your responsibilities... 
    Senior

    Anyline

    San Francisco, CA
    5 days ago
  • $165k

     ...seeking a rare combination of disciplines: an experienced Sr. Compliance Engineer with deep AI Subject Matter Expertise (SME) and export...  ...from flowing into non-authorized AI systems or endpoints * Automated audit logging of AI interactions for traceability and... 
    Senior
    Permanent employment
    Full time
    Work at office

    True Anomaly

    San Francisco, CA
    1 hour ago
  • A leading digital signature company based in San Francisco is seeking a Senior Intelligent Automation Engineer to drive their automation initiatives. This pivotal role involves collaborating with cross-functional teams to create and manage robust automation solutions,... 
    Senior
    Work at office
    2 days per week

    DocuSign, Inc.

    San Francisco, CA
    1 day ago
  • A leading automation technology company in San Francisco is seeking a Controls & Automation Engineer. The ideal candidate will support advanced technical needs and ensure the reliability of robotic systems in manufacturing environments. Responsibilities include diagnosing... 
    Senior

    Blackhornvc

    San Francisco, CA
    3 days ago
  • $187k - $260k

    The role involves developing and maintaining automated testing frameworks for embedded systems and hardware-in-the-loop environments to...  ...of experience in embedded systems or firmware automation engineering. Hands-on expertise building and maintaining Hardware-in-the-... 
    Senior
    Remote work
    Flexible hours

    NextGenEnergyJobs

    San Francisco, CA
    1 day ago
  • A global professional services firm based in San Francisco seeks a Senior Associate in Cybersecurity to develop innovative AI-driven solutions. You will leverage your skills in software development and AI/ML to address complex cybersecurity challenges, mentor team members... 
    Senior

    PwC

    San Francisco, CA
    4 days ago
  • A global healthcare leader seeks an experienced engineer to integrate advanced AI and laboratory systems. This hands-on role involves...  ...mechanical engineering with demonstrated experience in laboratory automation, containerization, and Python. The position offers a... 
    Senior

    Eli Lilly and Company

    San Francisco, CA
    1 day ago
  •  ...to solve our customers’ unique challenges. Through intelligent automation, we give factories newfound flexibility, scalability, and...  ...speak with you. ABOUT THE ROLE   As an Automation Controls Engineer you will be designing and developing automated solutions, choosing... 
    Senior

    Bright Machines

    San Francisco, CA
    16 days ago
  • $77k - $202k

     ...PwC, our people in risk and compliance focus on maintaining regulatory...  ..., AI-driven solutions. As a Senior Associate, you will analyze...  ..., and security operations automation - Implement and maintain data...  ...development or AI/ML engineering What Sets You Apart -... 
    Senior
    Full time
    H1b

    PwC

    San Francisco, CA
    1 day ago
  • $128.6k

     ...that serve both wireless and wired connectivity needs for customers and businesses across the globe. The Sr. HW Regulatory Compliance engineer ensures that our products meet all relevant regulations. This role requires deep technical knowledge of international... 
    Senior
    Permanent employment
    Local area
    Worldwide

    Amazon

    San Francisco, CA
    2 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Senior Compliance Automation Engineer. Be the first to apply!