GRC Security Engineer, Federal & Public Sector
Anysphere
GRC Security Engineer, Federal & Public Sector
Engineering · Full-time · San Francisco
Our mission is to automate coding. The first step in our journey is to build the best tool for professional programmers, using a combination of inventive research, design, and engineering. Our organization is very flat, and our team is small and talent dense. We particularly like people who are truth-seeking, passionate, and creative. We enjoy spirited debate, crazy ideas, and shipping code.
About the Role
Cursor is investing in serving federal and other regulated-market customers, and we're building the GRC foundation to get there. Federal compliance — FedRAMP and adjacent authorizations — is a key path, and we're looking for a senior GRC engineer to lead the technical execution.
This is a hands-on GRC engineering role. We treat compliance as code. You'll write code, ship infrastructure changes, generate machine-readable artifacts, and design evidence collection pipelines that keep compliance honest without dragging engineers into screenshot purgatory. You'll partner closely with our security engineering, infrastructure, and legal teams.
We're in-person with cozy offices in North Beach, San Francisco and Manhattan, New York, complete with well-stocked libraries. SF is preferred for this role since you'll be partnering closely with the GRC and security leadership team in person.
What You'll Do
- Help us evaluate and shape our federal and regulated-market compliance strategy — FedRAMP, impact levels, and international equivalents — and lead the technical execution
- Own the technical heavy lifting on any authorization we pursue: control implementation, SSP authorship, 3PAO engagement, POA&M management, and continuous monitoring
- Build compliance-as-code: automated evidence collection, machine-readable artifacts, and continuous control monitoring tied into our existing security telemetry
- Author honest, defensible control narratives across the major NIST 800-53 families
- Influence and drive international compliance strategy as we expand
- Support the broader security team on security and trust enablement as needed
You May Be a Fit If
- You have direct, hands-on experience with FedRAMP authorization — as a CSP team member who took a service through ATO, or as a senior assessor at a 3PAO
- You read NIST SP 800-53 Rev. 5 like a developer reads RFCs — you can argue control intent, not just recite it
- You write code (Go, Python, or comparable) and have automated something in compliance that other people would have done with screenshots
- You know what OSCAL is, why it matters, and ideally have generated or consumed it in production
- You've worked in or alongside AWS GovCloud, Azure Government, or DoD IL4/5 environments
- You have working knowledge of FIPS 140-3, FedRAMP 20x / KSIs, CMMC, and how DoD impact levels map onto FedRAMP baselines
- Bonus: dual-perspective experience — you've been an operator who has taken organizations through FedRAMP authorization multiple times and spent time on the 3PAO assessor side. OSCAL tooling or GRC engineering tooling contributions and public writing or speaking on GRC engineering are also a plus
$163.94k - $215.18k
...Hi, we're Oscar. We're hiring a Senior Security Engineer 1, GRC to join our Security Team. Oscar is the first health insurance company built around a full stack technology platform and a relentless focus on serving our members. We started Oscar in 2012 to create the...SuggestedFull timeWork at officeFlexible hours$100k - $160k
...A cybersecurity firm is looking for a Senior/Principal Federal Security Engineer experienced in managing detection, response, and vulnerability issues within Federally regulated environments. The role requires expertise in security technologies and compliance standards...Suggested$100k - $160k
...usage of AI. Saviynt is recognized as the leader in identity security, with solutions that protect and empower the world’s... ...For more information, please visit . The Senior/Principal Federal Security Engineer reports into Federal Information Security leadership, and...SuggestedLocal areaFlexible hours- ...Westborough Workplace Flexibility: Hybrid Job Duties The Senior IT Security GRC Analyst (Global) is accountable for the following core... ...services, and any other characteristic protected by applicable federal, state or local law. #J-18808-Ljbffr Olympus Corporation of...SuggestedWork experience placementLocal area
- ...Orrick, Herrington & Sutcliffe LLP is seeking an IT Security Engineer for Governance Risk & Compliance (GRC), providing data protection and privacy support. The role is available in any U.S. offices, including remote options. Responsibilities include maintaining security...SuggestedRemote work
$125k - $170k
...changing solutions. We are seeking a motivated Security Engineer (Compliance) to be an integral part of... ...of Governance, Risk, and Compliance (GRC) programs. Responsibilities Own, manage,... ..., or any other protected category under federal, state, or local law. #J-18808-Ljbffr...Work experience placementLocal areaRemote work- ...program provides advanced security, development, and... ...operations support to safeguard federal information systems and... ...a Zero Trust Security Engineer – SME to serve as the... ...obtain and maintain a Public Trust clearance.... ...remediation documentation in GRC repositories....Contract workFor contractorsWork at officeLocal areaRemote work
$150k - $200k
...Senior Security Engineer - Compliance and Risk New York, NY About the Role We are seeking... .... AI/ML in healthcare and emerging federal and state AI regulations What We're Looking... ..., Vulnerability Management, Compliance (GRC), or IT Audit. Program Management:...Full timeLocal area- ...and application development, DMI supports public sector agencies and commercial enterprises... ...Workplace, DMI is committed to delivering secure, efficient, and cost-effective solutions... ...DMI, LLC is seeking a Mid-Level Security Engineer to join us. Duties and Responsibilities:...Remote work
$100k - $228k
...Security Engineer - Governance Risk Compliance New York, NY; Palo Alto, CA... ...Governance, Risk, and Compliance (GRC) team member as we expand into government and public sector applications of AI. This... ...regulatory, ethical, operational, and federal boundaries while fostering a...Temporary work- ...A cybersecurity services company is seeking a Remote Federal Prisma Access Engineer to deliver professional services for a U.S. federal government... ...strong skills in Prisma Access deployment and network security. The role demands independent work on multiple projects,...Full timeRemote work
$153.4k - $186k
...top 50 nationwide. The Role As a Senior Security Engineer, Enterprise SaaS, you’ll serve as Ro’s... ...partner across Security Operations, IT, GRC, and Product Security to shape a unified... ...legally protected classification protected by federal, state, or local law. Ro is committed...Local areaFlexible hours- ...Summary The Governance Risk & Compliance (GRC) Cybersecurity Senior Analyst plays a... ...Qualifications Bachelor’s degree in Information Security, Risk Management, Computer Science, or... ...in accordance with UGI policies. As a federal contractor that engages in safety‑sensitive...For contractors
$124k - $150k
A leading home repair company is looking for an L5 Sr Security Engineer in Idaho to lead complex security and compliance initiatives. The role requires over 8 years of experience in GRC or cybersecurity and involves executing risk assessments and developing governance artifacts...- ...work with AI. About the role This is where security meets innovation at enterprise scale. As a security engineer, applications at WRITER, you'll be building the... ...basis protected by applicable local, state or federal law. Under the San Francisco Fair Chance Ordinance...Full timeWork at officeLocal areaFlexible hours
$167.5k - $226.3k
...Senior Security Engineer (AI Security) New York, New York Apply Who We Are At Justworks, you’ll enjoy a welcoming and casual environment... ...well as for other covered reasons consistent with applicable federal, state, and local laws. If you're in need of a reasonable...Casual workWork at officeLocal area$113k - $188k
...Required:**Ability to Obtain Public Trust**What You Will Do... ...and maintain system security boundaries across... ...systems migrate to cloud.* **GRC Tool Administration:**... ...between infrastructure engineers, application teams,... ...ensuring deliverables meet federal security standards.**...Temporary workFor contractorsFlexible hours- ...Trilogy Innovations is looking for a Cybersecurity Analyst to remotely support federal clients. This role involves modernizing large-scale IT systems and requires expertise in information security, NIST framework, and AWS GovCloud. The ideal candidate will possess a...Remote work
- ...technology solutions provider in the United States is seeking an experienced Cybersecurity Engineer to oversee the management of system security boundaries and ensure compliance with federal regulations. The role demands 7+ years of progressive experience in cybersecurity...
- ...Sr. Recruitment Consultant I @ Akkodis (GRC) Connecing people with great opportunities Akkodis is seeking an Information Security Engineer for a Contract To Hire position based in... ...and conviction records in accordance with federal, state, and local laws and/or security...Contract workLocal areaRemote work
- ...This new role will support our expanding US Federal team & both their existing and... ...Are 3+ years experience in an information security practitioner or consulting role Authoritative... ...tools (IDS, firewalls, anti‑malware, SIEM), public cloud environments, etc Security clearance...Immediate startRemote workFlexible hours2 days per week
$116.25k - $155k
...cybersecurity firm is seeking a Cyber Resilience Advisor to support federal customers in the US. This role focuses on enhancing... ...candidates will have over 3 years of experience in information security and possess thorough knowledge of cybersecurity protocols. Offering...Remote work- A leading staffing firm is seeking a Senior Governance, Risk, and Compliance (GRC) Analyst / Engineer. In this role, you will work on security best practices and compliance for cutting-edge robotic delivery solutions. You'll assess risks related to financial and IT systems...Remote work
- ...cybersecurity solutions provider seeks a Cyber Resilience Advisor to join their team, supporting Federal customers. Candidates should have over 3 years of experience in information security, with the ability to develop and deliver cybersecurity programs. Key responsibilities...Remote workFlexible hours
$138k - $200k
Technical Vulnerability Management Analyst, Public Sector Location: New York, NY, USA Level: Mid... ...solutions across multiple security domains. 5 years of experience in delivering... ...the complex needs of local, state and federal government and educational institutions...Full timeLocal area$320k - $405k
...group of committed researchers, engineers, policy experts, and business... ...The Role We’re looking for a Security Engineering Lead to own and drive... ..., Detection & Response, and GRC teams. This role is high‑... ...work with us! Anthropic is a public benefit corporation headquartered...Work at officeVisa sponsorshipFlexible hours- ...A leading security firm is seeking a Federal Advanced Support Engineer to deliver technical support for US Federal customers. This role involves skillfully analyzing network configurations, documenting best practices, and providing technical assistance. The ideal candidate...Remote work
$230k - $240k
...anywhere within the United States. The Security Engineering team at Fullstory ensures that engineering... ...Enable our partners, such as Security GRC and Legal, in supporting business... ...annual company-wide closure, along with federal holidays. Benefits. Take care of the whole...Full timeWork at officeRemote workFlexible hours1 day per week$125k - $170k
...A health technology company is seeking a motivated Security Engineer (Compliance) to enhance their security team. This role involves managing compliance frameworks, developing policies, and supporting risk management. Ideal candidates should have 5+ years of experience...Remote work$160k - $185k
...technology teams to design and implement secure software and practices. You’ll also... ...security controls. About the team The security engineering team is building tooling and processes... ...other characteristics protected under federal, state, or local laws. Employment with Human...Local areaImmediate startWork from home
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to GRC Security Engineer, Federal & Public Sector. Be the first to apply!
- staff security engineer New York, NY
- senior application security engineer New York, NY
- sr information security engineer New York, NY
- security engineering manager New York, NY
- security operations engineer New York, NY
- cloud security engineer New York, NY
- azure security engineer New York, NY
- endpoint security engineer New York, NY
- physical security engineer New York, NY
- systems security engineer New York, NY

