Senior GRC Engineer
$130k - $150kFlock Safety
Senior GRC Engineer
We are hiring a Senior GRC Engineer to build and scale an engineering-driven, automation-first, and AI-enabled approach to Governance, Risk, and Compliance (GRC).
This role goes far beyond traditional GRC. You will design and implement intelligent, automated systems that integrate directly into our engineering and cloud environments—transforming compliance from a manual, point-in-time exercise into a continuous, real-time capability.
You will leverage automation, data pipelines, and emerging AI/LLM capabilities to reduce manual effort, improve signal quality, and enable proactive risk management.
This is a high-impact role at the intersection of security engineering, compliance, and data—helping evolve GRC into a measurable, scalable, and product-aligned function.
The Skillset
Build GRC Engineering Capabilities
- Design and implement policy-as-code and compliance-as-code frameworks
- Automate control testing and evidence collection using cloud and CI/CD telemetry
- Integrate GRC processes with engineering tools and workflows
- Develop reusable tooling and internal platforms for scalable, self-service compliance
- Build and deploy production-grade automation leveraging LLMs and AI tooling (e.g., for control mapping, evidence analysis, and anomaly detection)
- Own the design, development, and maintenance of core GRC automation systems and services
Drive Risk Visibility and Measurement
- Develop KPIs and KRIs using engineering and cloud data
- Support risk quantification efforts using frameworks such as FAIR
- Maintain and improve the security risk register
- Apply data modeling and AI techniques to identify emerging risks and reduce false positives
- Build automated risk scoring and prioritization models using real-time engineering and security data
Support Audits and Certifications
- Lead and support audits including SOC 2, ISO 27001, ISO 27701, FedRAMP and CJIS
- Build automated audit readiness and continuous compliance processes
- Serve as a key point of contact for internal and external auditors
Partner Across the Business
- Work with Product and Engineering teams on security and privacy requirements
- Support customer security reviews, RFIs, and trust center initiatives
- Collaborate with Legal and Privacy teams on regulatory alignment
Third-Party Risk Management
- Automate vendor assessments using AI-assisted questionnaire analysis and response validation
- Build workflows to ingest, analyze, and score third-party risk data at scale
What You Bring
Experience
- 5+ years in GRC, security engineering, or related roles
- Experience working in cloud-native environments, AWS is a must
- Experience supporting audits such as SOC 2, ISO 27001, or similar
- Relevant certifications such as CISA, CRISC, FAIR, AWS Security Specialty, ISO 27001/42001 Lead Auditor certifications a plus
Technical Skills
- Experience integrating security and compliance into CI/CD pipelines
- Ability to work with APIs, automation tools, or scripting languages
- Experience implementing policy-as-code, compliance-as-code, or security-as-code frameworks
- Familiarity with tools such as Terraform, CloudFormation, or similar IaC frameworks
AI & Automation Mindset
- Thinks in terms of systems and scale, not manual tasks—automating repetitive work wherever possible
- Curious about and experienced with applying AI to operational problems, especially in security or compliance
- Comfortable experimenting with emerging technologies and rapidly evolving tooling
- Focused on signal over noise, reducing manual overhead while increasing accuracy
GRC Expertise
- Strong understanding of frameworks such as SOC2 Type II, NIST 800-53, ISO 27001, and CJIS
- Experience with third-party risk management and vendor assessments
- Ability to translate regulatory requirements into technical controls
Mindset
- Automation-first thinking
- Strong problem-solving skills and ownership mentality
- Ability to balance security, compliance, and business needs
- Ability to collaborate effectively with engineering, security, and business stakeholders
What Success Looks Like
- GRC processes are automated and integrated into engineering workflows
- Audit readiness becomes continuous rather than periodic
- Risk is measured using real-time data and clear metrics, tied to revenue
- Engineering teams experience GRC as an enabler, not a blocker
- Customer trust and security assurance scale with company growth
- Manual GRC processes are replaced with intelligent, automated workflows
- AI-assisted systems reduce audit preparation time and improve evidence quality
- GRC insights directly influence engineering prioritization and business decision-making
Feeling uneasy that you haven't ticked every box? That's okay; we've felt that way too. Studies have shown women and minorities are less likely to apply unless they meet all qualifications. We encourage you to break the status quo and apply to roles that would make you excited to come to work every day.
90 Days at Flock
We prescribe to 90 day plans and believe that good days lead to good weeks, which lead to good months. This serves as a preview of the 90 day plan you will receive if you were to be hired in this role at Flock.
The First 30 Days
- Ramp on systems, architecture, and existing GRC processes
- Build relationships with Engineering, Security, and Legal
- Identify initial automation opportunities
The First 60 Days
- Begin implementing automation for control testing and evidence collection
- Contribute to audit readiness and ongoing compliance efforts
- Define KPIs/KRIs for risk visibility
90 Days & Beyond
- Deliver measurable improvements in GRC automation and efficiency
- Launch initial AI-assisted workflows
- Influence roadmap for long-term GRC engineering strategy using a crawl, walk, run approach
Salary & Equity
In this role, you'll receive a starting salary between $130,000 and $150,000 as well as Flock Stock Options. Base salary is determined by job-related experience, education/training, as well as market indicators. Your recruiter will discuss this in-depth with you during our first chat.
Location
We're building the impossible, together. To drive innovation through in-person collaboration, we're prioritizing candidates in our key hubs: Atlanta, Austin, Boston, Chicago, Denver, Los Angeles, New York City, and San Francisco. While we value the energy of our hub communities, we embrace remote work and welcome applications from exceptional talent across the United States.
The Perks
Flexible PTO : We offer non-accrual PTO, plus 11 company holidays.
Fully-paid health benefits plan for employees : including Medical, Dental, and Vision and an HSA match.
Family Leave : All employees receive 12
- ...Sr. GRC Engineer At Workstreet, we're on an exciting journey to help businesses scale securely by designing and implementing cutting-edge security and compliance programs. As a fast-growing startup, we specialize in a wide range of frameworks—including SOC 2, ISO 2...SeniorRemote workHome office
- ...Senior GRC Engineer Dallas, TX - Hybrid (3x in office/week) About Lantern Lantern is the specialty care platform connecting people with the best care when they need it most. By curating a Network of Excellence comprised of the nation's top specialists for surgery...SeniorTemporary workWork at officeFlexible hours
$180k - $200k
...in a collaborative, fast-moving environment where trust and impact matter, you'll feel at home here. Aircall is hiring a Senior GRC Engineer to build and operate the engineering backbone of our Governance, Risk & Compliance program. You'll join the Security Engineering...SeniorWorldwide$130k - $150k
...quickly, take on real responsibility, and contribute to something bigger than yourself. The Opportunity We are hiring a Senior GRC Engineer to build and scale an engineering-driven, automation-first, and AI-enabled approach to Governance, Risk, and Compliance (GRC)...SeniorWork at officeRemote workWork from homeHome officeFlexible hours- ...DIRECTV, LLC is seeking a seasoned Principal in Cybersecurity Engineering focused on Governance, Risk, and Compliance. This high-impact role... ...will have 3-5 years of experience in cybersecurity, leading GRC programs and managing supplier information security. This position...SeniorRemote work
$153k - $214k
1Password is seeking a Senior Security Engineer – GRC Controls and Audit to direct compliance audit programs and lead technical audit walkthroughs with external auditors. This role demands over 5 years of experience in the GRC space, particularly strong in SOC 2 Type II...SeniorRemote work- Basis is seeking a Compliance Manager to oversee compliance programs such as SOC and ISO standards. This role emphasizes building GRC systems, automating workflows through AI, and ensuring effective vendor risk management. The ideal candidate will have hands-on experience...Senior
- Brex is looking for a Senior GRC Engineer to enhance its Governance, Risk, and Compliance function. This role is pivotal in automating compliance workflows, ensuring security and regulatory adherence, and advancing our Trust program. You will work cross-functionally to...SeniorRemote work
- A leading staffing firm is seeking a Senior Governance, Risk, and Compliance (GRC) Analyst / Engineer. In this role, you will work on security best practices and compliance for cutting-edge robotic delivery solutions. You'll assess risks related to financial and IT systems...SeniorRemote work
- ...A telehealth company is seeking a GRC Engineer to enhance their security governance and compliance automation. The role involves building workflows, integrating systems, and creating dashboards for real-time insights. Candidates should have over 5 years of experience,...Senior
- ...Senior Systems Engineer SAP Security & GRC, immediate start. I am working with a Pharmaceutical client with an urgent requirement for a Senior Systems Engineer to own and drive their SAP Security & GRC roadmap across S/4HANA and adjacent platforms (Ariba, MDG, BTP)...SeniorImmediate startRemote work
- ...Framework Ventures is seeking a Senior GRC Engineer to enhance compliance and risk management via automation. The ideal candidate will lead the development of automated compliance systems supporting the Magic Labs ecosystem. Key responsibilities include building integrations...SeniorRemote workFlexible hours
- A dynamic cybersecurity consulting startup is seeking a Senior Consultant GRC Engineering to support clients in elevating their Governance, Risk, and Compliance frameworks. The role includes building and implementing modern GRC programs and requires strong knowledge in...SeniorRemote job
- ...A telehealth support organization is seeking a GRC Engineer to design and maintain automated workflows for their governance, risk, and compliance program. This role involves developing automation pipelines and integrations, and requires strong cloud security and Python...Senior
$153.6k - $192k
A financial technology company based in New York is looking for a Senior GRC Engineer. The role involves automating compliance processes, supporting risk management initiatives, and collaborating with technical teams to ensure compliance in a growing hybrid environment....Senior- ...solutions company located in Grand Prairie, Texas, is seeking a Senior Developer to join their Enterprise Risk Management Technologies... ...agile sprints. This position requires strong skills in developing GRC modules and system integrations. The company values diversity...Senior
- An established industry player is seeking a seasoned ServiceNow Developer with over 9 years of experience. This role focuses on GRC modules, Continuous Authorization, and Monitoring, where you will develop and maintain custom applications. You will leverage your strong...Senior
$105.4k - $207.8k
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Management Specialist Join Deloitte's Enterprise Security team and help clients strengthen SAP security across enterprise transformation, cloud modernization, and application change...SeniorVisa sponsorship$148k - $175k
...third year in a row. In 2022, Ro was listed as a CNBC Disruptor 50. +The Role: The Governance Risk and Compliance Engineer role will be a core member of Ro’s GRC team. This is a remote, Individual Contributor role. The GRC team enables Ro to manage risk by vigorously...SeniorLocal areaRemote workFlexible hours- ...Sr. GRC Engineer (Government) At Workstreet, we're on an exciting journey to help businesses scale securely by designing and implementing cutting-edge security and compliance programs. As a fast-growing startup, we specialize in frameworks such as CMMC, NIST 800-17...SeniorPermanent employmentContract workFor contractorsHome office
$48.36 per hour
...Genesis10 is seeking a Senior Tester for a contract position in Plano, TX, involving manual and automated testing of ServiceNow solutions. The ideal candidate will have 5-8+ years of QA experience, specifically in ServiceNow ATF, and strong automation skills. Responsibilities...SeniorHourly payContract work- A technology services company is seeking a ServiceNow Tester in Plano, Texas. The role involves testing and ensuring the quality of ServiceNow modules through manual and automated testing. Candidates should have 5-8 years of QA experience, and a strong background in ServiceNow...Senior
- ...team solving these complex problems, then Rotary and Mission Systems is the place for you. THE WORK We are seeking a talented engineer to report directly to the Manager of RF & Microwave Engineering. The Sr RF Engineer will significantly contribute to the design...SeniorFlexible hours
- ...Senior Check Point Firewall Engineer R80+ VSX Auto Club of Southern California is hiring a Senior Firewall Engineer to own and operate enterprise and... ...). Familiarity with Governance, Risk, and Compliance (GRC) practices. Experience in high-availability or large-...SeniorWork at officeRemote work3 days per week
$120k - $160k
...Systems Engineer Senior SAIC is looking for an experienced Systems Engineer to support the Space Reactor-1 (SR-1) Freedom Nuclear Power... ...effort Location: ~ Work will be performed onsite at NASA GRC in Cleveland, Ohio, 5-days a week Qualifications:...Senior- ...They're expanding their GTM team and hiring a foundational Sales Engineer to help drive technical wins across mid‐market and enterprise... ...not just support demos Experience with security, compliance, or GRC‐related platforms Familiarity with frameworks like SOC 2, ISO 27...SeniorRemote work
- Lead development efforts within ServiceNow SecOps (GRC, Vulnerability Response, Integrations) Perform code reviews and enforce coding standards Own branch strategy and pull requests Implement DevSecOps best practicesSeniorRemote work
- ...situational awareness, early warning, and kill assessment capabilities in the most demanding environments. Join a global team of 35 000 engineers, software developers, and cyber experts who turn complex challenges into reliable, next generation systems that keep warfighters...SeniorFull timeWorldwideFlexible hours
$153k - $214k
...simpler digital future. Trust is earned — and we’re building the systems to earn it at scale. 1Password is looking for a Senior Security Engineer – GRC Automation to design and implement automation, dashboards, and integrations that power our Governance, Risk, and...SeniorRemote jobFull timeCurrently hiringLocal areaImmediate startWork from home$112.3k - $181.5k
...and the kind of precision that drives great outcomes. Job Summary Job Summary As a Senior Customer Trust Engineer, you will join our Governance, Risk & Compliance (GRC) team to enhance our vital mission of safeguarding the digital world. You will help craft an...SeniorFull timeWork at officeVisa sponsorshipWork visa
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior GRC Engineer. Be the first to apply!
- senior game producer United States
- senior manager process engineering United States
- senior manufacturing engineer United States
- senior director fp&a United States
- senior manager clinical operations United States
- senior community manager United States
- senior optical engineer United States
- senior lead project manager United States
- senior manager quality engineering United States
- senior device engineer United States

