Senior Security Engineer – GRC Engineering

🔥 1 minute ago

🇮🇳 India – Remote

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

👻 Ghost score 11%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of One Identity

One Identity

501 - 1000 employees

🔒 Cybersecurity

☁️ SaaS

🏢 Enterprise

💰 $3M Venture Round on 2004-07

Cybersecurity • SaaS • Enterprise

One Identity is a company that specializes in identity and access management solutions, focusing on protecting digital identities and simplifying user access across organizations. They offer a comprehensive suite of products designed to secure privileged access, govern user identities, and streamline compliance with regulations through automation. Their platform integrates AI-driven insights to enhance security and operational efficiency, supporting both on-premises and cloud environments.

📋 Description

• Own continuous control monitoring end to end across identity providers, cloud control planes, code repositories, endpoint management, and ticketing • Build alerting, escalation, and remediation confirmation for degraded controls • Build a centralized common controls framework based on ISO 27001 and SOC 2 • Map additional frameworks to the common controls framework • Capture, timestamp, index, and assemble audit-ready evidence on demand • Ensure the evidence system operates within and logs its own controls • Write control validation as code and produce auditor-accepted, engineer-actionable outputs • Create pull-request-based corrections against pipelines, policies, or configurations • Partner with infrastructure engineering on policy as code and evidence emission • Define appropriate uses of agentic workflows for control mapping, evidence classification, and validation • Own the compliance engineering program's direction, framework priorities, automation priorities, and engineering allocation • Advance metrics covering control health, framework coverage, remediation velocity, and trends • Integrate cyber risk management, risk registers, and exception handling with control telemetry • Own automated asset prioritization to inform risk decisions, control coverage, and remediation order • Lead the technical side of audits and explain control implementation and evidence production to assessors

🎯 Requirements

• Six or more years across compliance program leadership and security or compliance engineering, including experience on both the framework side and the build side; equivalent depth counts • Experience leading a major framework through assessment from readiness through certification or authorization, such as FedRAMP or comparable, or owning GRC engineering end to end with control telemetry, continuous monitoring, and evidence automation • Strategic framework design and control mapping across frameworks • Recent hands-on Python and API integration experience • Hands-on building with AI in the loop within the last six months, including verification of tooling output • Framework fluency across ISO 27001 and SOC 2 • Familiarity with FedRAMP 20x, NIS2, DORA, and PCI DSS • Knowledge of policy-as-code frameworks and cloud enforcement • Sufficient Azure and AWS experience to identify where evidence resides • Experience with a compliance automation platform • Ability to run an audit calendar and assessor relationship • Ability to write for both auditors and engineers • Helpful: assessor-side experience; IRAP or another non-US regime; evidence work across hosted services and customer-deployed software; prior software or platform engineering experience

🏖️ Benefits

• Health and wellness programs • Career development opportunities • Programs supporting employees in pursuing fulfilling careers • Opportunities to learn and grow • Equal employment opportunity and harassment-free work environment

Apply Now

Similar Jobs

🕒 5 days ago

Mondelēz International

10,000+ employees

💼 Consulting

📣 Marketing

📦 Logistics

Information security specialist and Scrum Master supporting cybersecurity, Agile delivery, and Jira practices at Mondelēz International, the global snack maker. Coaching teams and growing into project ownership.

Cyber Security

PMP

🕒 5 days ago

Bio-Rad Laboratories

5001 - 10000

🏥 Healthcare

🏭 Manufacturing

🧬 Biotechnology

Information security specialist protecting Bio-Rad’s life-science data and cloud infrastructure. Owning DLP, cloud security, and high-severity incident response outside US hours.

AWS

Azure

Cloud

Python

🕒 September 29

AHEAD

1001 - 5000

💼 Consulting

🤖 Artificial Intelligence

🏢 Enterprise

Senior Security GRC Consultant advising digital-business enterprises on cyber risk, control frameworks, and compliance. Designing GRC programs, quantifying risk, and leading client engagements.

Cyber Security

🕒 September 23

LinkedIn

10,000+ employees

💼 Consulting

📣 Marketing

📦 Logistics

Senior Incident Response Engineer protecting LinkedIn’s professional network and member data. Leading investigations, threat hunting, forensic analysis, and large-scale incident remediation.

🇮🇳 India – Remote

💵 $129k - $212k / year

💰 Private Equity Round - LinkedIn on 2016-02

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

Cloud

Cyber Security

Linux

Open Source

Python

Unix

🕒 September 23

LinkedIn

10,000+ employees

💼 Consulting

📣 Marketing

📦 Logistics

Senior Security Engineer building high-signal threat detections for LinkedIn’s professional network. Engineering SIEM, cloud, endpoint, identity, and incident-response automation.

🇮🇳 India – Remote

💵 $129k - $212k / year

💰 Private Equity Round - LinkedIn on 2016-02

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

AWS

Azure

Cloud

Cyber Security

Google Cloud Platform

Linux

MacOS

Python

SQL