GRC Engineer

đź•’ August 26

🇺🇸 United States – Remote

đź’µ $110.1k - $143.1k / year

⏰ Full Time

đźź  Senior

đź”´ Lead

đźš” Compliance

đź‘» Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Velera

Velera

1001 - 5000 employees

đź’Ľ Consulting

📣 Marketing

đź’ł Fintech

Consulting • Marketing • Fintech

Velera is a company that provides a wide range of solutions for financial institutions, focusing on payment and banking technology. The company offers services in digital card issuance, digital wallets, and provides a co-op pay network and ATM terminal driving. Velera integrates sophisticated scoring and decision-making tools for fraud prevention and identity authentication. It also offers strategic consulting services for growth and marketing. Velera positions itself as a partner in digital banking and financial technology innovation.

đź“‹ Description

• Lead the transformation of the Technology Compliance program • Replace manual audit testing with Compliance-as-Code (CaC), Policy-as-Code (PaC), and Continuous Control Monitoring (CCM) • Embed controls into CI/CD pipelines within the Azure cloud ecosystem • Automate technical controls for data persistence layers • Embed security checks into development workflows and Infrastructure-as-Code (IaC) • Design, write, and maintain executable policies using Azure Policy, Open Policy Agent (OPA), or Rego • Build and maintain automated pipelines auditing cloud environments, database clusters, and storage systems against compliance baselines • Design automated database security controls for encryption at rest, key rotation, data masking, database activity monitoring (DAM), and IAM/PIM access controls • Integrate automated compliance and configuration checks into DevOps deployment pipelines • Develop Python, PowerShell, or Go scripts to gather, aggregate, and store audit evidence • Automate remediation of control failures, including attestations • Identify, document, and quantify technical security risks, threats, and vulnerabilities • Translate technical risks into business-impact metrics for leadership • Perform all other duties as assigned

🎯 Requirements

• Bachelors Degree in Computer Science, Cybersecurity, Management Information Systems (MIS), or equivalent experience • Exceptional background in database administration with deep knowledge of technical database compliance rules (PCI-DSS) requirements and Security GRC practices • 10+ years as subject matter expert formerly in DBA roles and/or GRC Engineer • Strong program management skills in large complex organizations • Ability to propose solutions and implement effectively with minimal oversight • Ability to build strong relationships with Security, Engineering, Product and other key stakeholders • Ability to demonstrate GRC Engineering practices and use of AI solutions • Previous GRC tooling for control automation experience highly desired • This role is currently not eligible for sponsorship • Must comply with applicable work authorization requirements

🏖️ Benefits

• Competitive wages • Medical with telemedicine • Dental and Vision • Basic and Optional Life Insurance • Paid Time Off (PTO) • Maternity, Parental, Family Care • Community Volunteer Time Off • 12 Paid Holidays • Company Paid Disability Insurance • 401k (with employer match) • Health Savings Accounts (HSA) with company provided contributions • Flexible Spending Accounts (FSA) • Supplemental Insurance • Mental Health and Well-being: Employee Assistance Program (EAP) • Tuition Reimbursement • Wellness program • Remote-first, flexible environment • Psychological safety, wellbeing and belonging

Apply Now

Similar Jobs

đź•’ August 26

Wiz

201 - 500

đź”’ Cybersecurity

Compliance Engineer leading FedRAMP CR26 compliance-as-code and monitoring automation. Translating federal security requirements into scalable solutions for Wiz’s cloud security platform.

🇺🇸 United States – Remote

đź’µ $174k - $238k / year

⏰ Full Time

🟡 Mid-level

đźź  Senior

đźš” Compliance

🦅 H1B Visa Sponsor

infoinfo

đź•’ August 26

INSIGHTEC

201 - 500

🏭 Manufacturing

🏥 Healthcare

đź’Š Pharmaceuticals

Regulatory Affairs Manager advancing Insightec’s incisionless medical technology through clinical submissions and compliance. Managing US regulatory activities, licenses, complaints, promotional reviews, and global audits.

🇺🇸 United States – Remote

đź’° $100M Debt Financing on 2022-08

⏰ Full Time

🟡 Mid-level

đźź  Senior

đźš” Compliance

đź•’ August 26

Paxos

201 - 500

đź’Ľ Consulting

⚖️ Legal

📦 Logistics

Compliance Investigations Manager leading financial-crime investigations and regulatory reporting. Strengthening Paxos’s blockchain-based financial infrastructure through scalable compliance operations and automation.

🇺🇸 United States – Remote

đź’µ $156k - $178.4k / year

đź’° Corporate Round - Paxos on 2022-01

⏰ Full Time

🟡 Mid-level

đźź  Senior

đźš” Compliance

🦅 H1B Visa Sponsor

infoinfo

đź•’ August 26

Praxis

11 - 50

🏥 Healthcare

đź’Ľ Consulting

📦 Logistics

Associate Director guiding CMC regulatory strategy for Praxis’s CNS medicines. Preparing global submissions and supporting health-authority interactions across small-molecule and ASO programs.

🇺🇸 United States – Remote

đź’µ $175k - $200k / year

⏰ Full Time

đźź  Senior

đźš” Compliance

🦅 H1B Visa Sponsor

infoinfo

đź•’ August 26

Sardine

51 - 200

đź”’ Cybersecurity

đź“‹ Compliance

đź’ł Fintech

Security Compliance Manager owning Sardine’s SOC 2, PCI DSS, ISO 27001, and FedRAMP programs. Reducing financial-crime platform risk through GRC leadership, audits, and customer assurance.

🇺🇸 United States – Remote

đź’µ $130k - $190k / year

⏰ Full Time

đźź  Senior

đź”´ Lead

đźš” Compliance