Senior GRC Engineer
Core
Lead engineering for governance, risk, and compliance (GRC) systems, building production controls, evidence pipelines, and tests to validate security requirements in a healthcare platform.
Role type
Senior IC GRC Engineer (Security & Compliance)
Builds
Production GRC automation, evidence collection pipelines, control tests, and drift detection workflows.
Domain
Healthcare technology / Security & Compliance
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Cloud security, API integration, structured data handling, controls-as-code, policy-as-code, continuous control monitoring, evidence management, software engineering best practices, audit preparation
Preferred skills
ISO 27001, C5, SOC 2, healthcare domain, infrastructure as code, cloud security, identity systems, CI/CD pipelines, AI for control mapping
Technologies
Cloud services, APIs, version control, monitoring tools, compliance platforms
Responsibilities
Build and operate approved GRC automation in production; design evidence records with clear provenance; write tests to verify control operation; detect missing or stale evidence; build workflows to identify policy drift; join audits as a technical subject matter expert; translate security requirements into technical controls.
Seniority
Senior, hands-on IC