Staff GRC Engineer (Remote)
Core
Technical leader maturing governance, risk, compliance, and data security capabilities for a SaaS platform, embedding controls into engineering operations and automating evidence collection.
Role type
Staff GRC Engineer (Technical Leader)
Builds
Auditable control frameworks, continuous control monitoring systems, automated compliance workflows, and data security governance patterns.
Domain
SaaS / Cloud Security / GRC
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
GRC program ownership, security compliance frameworks (ISO-27001, NIST CSF, SOC 2, PCI-DSS), automation/scripting, systems thinking, stakeholder alignment, audit partnership
Preferred skills
AI governance strategy, engineering-embedded control patterns, agentic workflows
Technologies
APIs, dashboards, platform configuration, scripting
Responsibilities
Design and maintain an auditable control framework for SaaS/cloud environments; Shape and define AI Governance strategy with cross-functional stakeholders; Automate control testing, evidence collection, and compliance workflows; Define logs, metadata, and dashboards to assess control health; Partner with audit teams on control design, walkthroughs, and remediation; Mentor team members and improve documentation and knowledge sharing.
Seniority
Staff, technical leader with high autonomy and cross-team influence