Security GRC Engineer
$120k - $160kCWILL
About Us
CWILL a fast-growing Shopify SaaS startup company serving global (primarily US/EU) merchants. With strong product-market fit and expanding US operations, we are building our local security and compliance capabilities to meet global data privacy standards.
Role Overview
We are looking for a Security GRC (Governance, Risk, and Compliance) Engineer to drive data compliance governance and audit execution.
This role focuses on building practical, enforceable, and auditable controls around data access, data lifecycle, product data usage, and cross-border data flows.
This is a hands-on, execution-focused role working directly with data systems and audit processes (not a policy-only role).
Responsibilities
1. Data Compliance Governance
- Support US data compliance requirements (e.g., CCPA, EO 14117)
- Perform gap analysis and define remediation plans
- Design and implement controls for: sensitive data classification, access governance, data lifecycle management
- Build processes for data subject rights (deletion, access, portability)
- Participate in product and engineering reviews (e.g., DPIA)
- Support compliance for new features, data use cases, and vendor/cross-border scenarios
2. Compliance & Audit Execution
- Support SOC 2 readiness and audit execution
- Conduct access reviews, log validation, and anomaly detection
- Maintain audit records and generate compliance reports
- Build or improve automated evidence collection (e.g., scripting)
- Work with internal teams and external auditors to provide audit evidence
Requirements
This is a hands-on, execution-focused role working directly with data systems and audit processes (not a policy-only role).
1. Must-have:
- Authorized to work in the United States
- Mandarin preferred for day-to-day collaboration
- Bachelor’s degree or above in Computer Science, Information Security, or a related technical field
- 3–5 years of experience in Security, GRC, Data Security, or Data Compliance
- Hands-on experience with at least one compliance framework (e.g., SOC 2, CCPA, GDPR, 14117), beyond policy or documentation
- Practical experience in data compliance governance, including: sensitive data identification and classification, access control and access governance, data lifecycle management (storage, usage, deletion, portability)
- Ability to work with data systems (e.g., databases, data flows, APIs) and translate compliance requirements into technical implementations
- Basic technical capability (e.g., Python, Golang, or scripting) to support audit automation, data validation, or tooling
- Strong cross-functional communication skills, with the ability to work closely with engineering, product, data, and infra teams
2. Nice-to-have:
- Relevant certifications such as CISSP, CISM, or CIPP/US
- Experience in SaaS / e-commerce platforms (e.g., Shopify ecosystem) or third-party integrations
- Background in data governance, data platforms, or analytics
- Familiarity with cross-border data transfer compliance
- Understanding of web accessibility standards (e.g., WCAG, ADA) and related privacy/security considerations
Language:
- Mandarin (Required)
Benefits
Pay: $120,000.00 - $160,000.00 per year
- 401(k) matching
- Flexible schedule
- Health insurance
- Paid time off
- Vision insurance
$101k - $194k
...everywhere & always. Want in? Join the #VTeamLife. What you’ll be doing... The GN&T Network Security team is looking for a highly motivated and experienced Network Engineer to join the Remediation Assurance team within the Network Security Adversary Emulation (NSAE)...SuggestedFull timeTemporary workPart timeWork experience placementWork at officeWork from homeShift work3 days per week- ...environment. Whether it's building award-winning games or crafting engine technology that enables others to make visually stunning... ...platforms. What You'll Do Epic Games is looking for a Senior Security Engineer focused on Game Security to develop and improve anti-...Suggested
$95.3k - $158.8k
...on site in the Raleigh N.C. office 2-3 days a week. Senior Security Engineer II - Compliance Automation & Controls About Us LexisNexis... ...and implement a scalable Governance, Risk, and Compliance (GRC) foundation across our cloud-based environment. This role will...SuggestedWork at officeLocal areaRemote workFlexible hours2 days per week3 days per week$101k - $194k
...& always. Want in? Join the #VTeamLife. What you'll be doing... The GN&T Network Security team is looking for a highly motivated and experienced Cybersecurity Engineer to join the Network Security Defense team. The Defense teams are responsible for owning the...SuggestedFull timeTemporary workPart timeWork experience placementWork at officeWork from homeShift work3 days per week$73 - $74 per hour
...Security Operations Engineer Cary, NC, United States $ 73.00 - 74.00 (US Dollar) Security Operations Engineer needs 5 years equivalent work experience, required. Security Operations Engineer requires: Bachelor's degree in Information Systems or Computer Science...SuggestedWork experience placement- ...architectural doors, frames, hardware, specialty products, and complete security integration services. At CBX Solutions, trust and... ...everything we do. Summary Associate Physical Security Engineer is an entry-level physical engineering professional who reports...For contractorsFor subcontractor
$100k - $120k
...As a Firmware Security Engineer at OnLogic, you will be a vital part of a team dedicated to developing and protecting cutting-edge industrial computing products. You will lead vulnerability management and firmware/software coding tasks for various UEFI/BIOS, BMC, and...Temporary workWork at officeRelocation$161k - $242k
...Date posted 05/14/2026 Category Engineering Hire Type Employee Job ID 17316... ...cybersecurity engineer with a passion for securing access to critical systems, applications... ...guidance to stakeholders. Partnering with GRC, audit, and compliance teams to ensure...Remote work$98.9k
...What you can expect The Security Engineer is responsible for security design and reviews across our products and services. The ideal candidate brings broad technical expertise and hands-on experience in end-to-end product security. In this role, you’ll collaborate with...Work at officeRemote work- ...Come join a growing team that is responsible for the design/engineering/operation of the following foundational infrastructure technology... ...-related experience. Minimum of 5 years of experience in security engineering or related cybersecurity roles. Advanced knowledge...Full timePart timeWork experience placementWork at officeRemote workShift workDay shift
$65.1k - $108.5k
...Monitoring Maintain continuous operational visibility into the security posture of FedRAMP systems, including vulnerabilities, assets,... ...artifacts, including monthly summaries Partner with engineering, cloud, and security teams to support timely remediation...Local area- ...Summary • Perform a variety of daily activities to ensure FedRAMP security controls remain in compliance. Includes monitoring and... ...control assessment, third party risk and/or cybersecurity • BS Engineering/Computer Science or equivalent experience required •...
$65 - $70 per hour
...Title: Wiz DSPM Security Engineer Location: Research Triangle Park (RTP), North Carolina, area. (Onsite position) Duration: 6+ Month Contract Compensation: $65-$70 HR Target Work Requirements: US Citizen, GC Holders or Authorized to Work in the U.S. Skillset...Contract workFor contractorsLocal areaFlexible hours- ...Cloud Security Engineer/Architect Tier One Technologies has an immediate need for a Cloud Security Engineer/Architect for our US Government client. This hybrid Contract-to-Hire position will be available to start in Falls Church, VA, Morrisville, NC or Eagan, MN....Permanent employmentContract workImmediate start
$122k - $145k
...Senior Development Security Operations Engineer We are seeking a Senior Development Security Operations Engineer to join American Tower's Information Security organization. The Information Security team is responsible for protecting the confidentiality, integrity,...Local area$71.2k - $158.2k
...Job Description The Senior Federal Information Systems Security Engineer (ISSE) serves as a technical integrator responsible for ensuring that system-to-system connections across federal boundaries are properly documented, approved, and compliant with all required cybersecurity...Contract workTemporary workWork experience placementRelocationFlexible hours- A leading data security firm is seeking a dynamic Inside Sales Engineer to drive the adoption of its solutions. This role involves working closely with sales teams, conducting product demos, and providing technical expertise. The ideal candidate is experienced in cloud...Remote job
- LifeScale Analytics is hiring a Senior Cloud Security Engineer in Morrisville, NC. You'll implement a technical strategy for securing a large-scale hybrid ecosystem. Ideal candidates will have 8+ years of experience in Cybersecurity Engineering, focusing on cloud environments...Remote work
- ...Security Analyst Tool Name: Client Webinspect and HCL Appscan preferred – any other tools is OK as well Minimum 7 years of experience Work with enterprise programs on penetration testing and online application security Worked extensively on Web & Mobile Application...
- ...position must be a US Citizen and may be subjected to a government security investigation which requires possessing the ability to view... ...landscape. We have an opportunity for a Senior Cloud Security Engineer (Hybrid/Multi-Cloud) in Morrisville, NC; Falls Church, VA; or Eagan...Full timeCasual workH1bLocal areaRemote workRelocationWork visa
- ...Application Security Engineer – Remote or Hybrid | Cary, North Carolina We're a leader in data and AI. Through our software and services, we inspire customers around the world to transform data into intelligence – and questions into answers. If you're looking for...Full timeWork at officeLocal areaRemote workWork visa
$105.1k - $164.13k
...highly technical professionals with a strong foundation in network architecture, design, and security - individuals who are ready to step up from traditional network engineering roles to take ownership of strategic, architecture-level responsibilities. Ideal candidates...Permanent employmentFull timeContract workPart timeLocal areaRemote work- ...The Network Security Engineer is responsible for the day-to-day operations, maintenance, and continuous improvement of perimeter security services across global data centers and cloud environments. This role focuses on firewall, proxy, and zero-trust solutions, ensuring...Permanent employmentTemporary workRemote workFlexible hours
$101k - $194k
...everywhere & always. Want in? Join the #VTeamLife. What you’ll be doing… The GN&T Network Security team is looking for a highly motivated and experienced Senior Network Security Engineer to join the Security Defense organization. The Defense teams are responsible for...Full timeTemporary workPart timeWork experience placementWork at officeWork from homeShift work3 days per week- ...customers include Google, GE, and NBC Universal, and we partner with leaders such as Google, Atlassian, and Microsoft. As a Senior Security Engineer at Lucid, you will serve as a key defender of Lucid's corporate assets, world-class web applications, and employees. You'll...Remote work
- ...Senior Network Security Firewall Engineer (Fortinet/Palo Alto) - 100% remote (EST Hours) Optomi, in partnership with an enterprise client in the healthcare space, is looking to add a Network Security Firewall Engineer to their team to help with a major firewall migration...Remote work
- ...Role Summary This Senior Security Engineer - IAM owns the design, implementation, and day-to-day operation of the organization's Identity and Access Management platforms. The role exists to secure access at scale , automate identity lifecycle processes, and ensure...
$150k - $250k
...your family. World-class facilities and the technology you need to thrive - in our offices or yours. Job Summary The Security Engineer - Google collaborates with account and specialty teams to assess customer cybersecurity needs. They will be a customer-facing...Work experience placementWork at officeWorldwideFlexible hours- ...dynamic, high-stakes environment. You thrive on solving complex security challenges, proactively identifying threats, and developing... ...malware analysis, and vulnerability assessments, including reverse engineering of suspicious files. Implementing and administering...
$120.5k - $231k
...in? Join the #VTeamLife. What you'll be doing... The Global Network & Technology team seeks highly motivated Network Security Engineer to secure and harden Verizon's Telemetry networks. This role requires candidates to translate high-level security frameworks...Full timeTemporary workPart timeWork experience placementWork at officeWork from homeShift work3 days per week
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security GRC Engineer. Be the first to apply!
- senior application security engineer Cary, NC
- aws cloud security engineer Cary, NC
- IT security engineer Cary, NC
- information technology security engineer Cary, NC
- network security engineer Cary, NC
- security engineer Cary, NC
- sr information security engineer
- security engineer intern
- senior application security engineer
- security solutions engineer


