Jobs in United States

Grc Engineer in United States

53 active opportunities · Updated October 2026

Explore current grc engineer jobs across United States. Filter by work mode, employment type, experience, department, date posted and distance.

C
📍 United States· Full-time· Remote
✓ High-confidence listingCompany trend -100%

From $194K/yr

Quick readStrong listing-quality and freshness signals

Ready to do the most impactful work of your career? At Coinbase , we are uncompromising on our mission to increase economic freedom. The bar is high, the environment is intense, and we like it that way. This isn't a place for complacency, it’s a place to be pushed past your perceived limits. If you're ready to build the future of finance alongside people who refuse to settle for "good enough," you belong here. Coinbase is a remote-first, but not remote-only company. Expect to get together quarterly for intense in-person working sessions called “surges.” learn more about working at Coinbase . We're hiring a Manager, GRC to join our Technology Risk & Controls team within Security and lead second line of defense advisory coverage across critical technology and security domains. This team evaluates risk posture, improves control design, and helps engineering, infrastructure, and security leaders make better, risk-informed decisions. You'll both manage a team and directly own advisory coverage for domains that may include disaster recovery and resiliency, SDLC, artificial intelligence, identity and access management, and supply chain - building trusted partnerships that ensure Coinbase addresses its most critical risks in its most critical functions. What you'll do: Lead second line advisory coverage for key technology and security domains, assessing risk exposure, control effectiveness, policy alignment, and emerging issues across the business. Partner with engineering and technology teams to evaluate domain posture and identify where additional controls, remediation, or governance improvements are needed. Review and challenge the design of new and existing risks and their corresponding controls to ensure our mitigations are scalable, effective, and aligned to business, risk, and regulatory expectations. Drive coordination across risk, controls, policy, audit, and assurance teams to translate incidents, audit findings, and regulatory expectations i

AWSAIGoRust
R
📍 Foster City, California, United States· Full-time
✓ Quality checkedCompany trend -85.9%

Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation. About the role: Replit’s ecosystem is powered by an expanding array of external services and essential AI model partners. As our lead for Security Vendor Risk & Contract Reviews, you will architect and execute a risk management program focused on substantive evaluation rather than just processing checklists. You’ll analyze SOC 2 documentation, security assessments, and system architectures to determine actual risk profiles, collaborating with our Legal team to secure necessary contractual protections. This role reports to the Head of Security GRC and involves high-impact partnerships across Legal, Engineering, and Product teams. What You'll Do Run substantive third-party risk management (TPRM), independently evaluating real risk, not just processing questionnaire responses Review SOC 2 reports, pen test findings, and architecture documentation to form an independent view of vendor risk, extending the same rigor to AI/model providers Partner with Legal on vendor and AI contract terms, including DPAs, subprocessor agreements, and AI-specific provisions Review contracts for non-standard security language when flagged by Legal or deal desk, and recommend redlines Maintain the vendor and AI/model risk register, feeding findings into the company's master risk register Enable sales through maturing the customer trust program Build the capability for continuous monitoring of vendor ecosystem Required Skills & Experience 8+ years in third-party/vendor risk management, security risk, or a related GRC role Demonstrated ability to independently assess vendor risk rather than relying on questionnaire responses alone, fluent in reading SOC 2 reports, ISO certificates, pen test summaries, and architecture documentation Experi

R
📍 Foster City, California, United States· Full-time
✓ Quality checkedCompany trend -85.9%

Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation. We are looking for a Security Operations Lead (SOC Lead) to build, mature, and operate our 24/7 detection and response capabilities across a modern cloud-native and AI-driven environment. This role leads the global SOC function—monitoring, SIEM ownership, detection engineering, alert triage, and operational readiness—while also evaluating and integrating emerging AI-based SOC products and autonomous response platforms . You will oversee monitoring across multi-cloud environments (GCP primary, AWS/Azure secondary), Kubernetes, SaaS services, endpoints, developer tools, and AI workloads . You’ll collaborate closely with Cloud Security, Compliance/GRC, SRE, Platform Engineering, IT/Endpoint teams, and AI Infrastructure to ensure our detection strategy scales and stays ahead of evolving threats. This is a hands-on leadership role perfect for someone who wants to shape the SOC of the future while solving complex challenges in a high-scale AI setting. What You’ll Do SOC Leadership & 24/7 Monitoring Lead, mentor, and scale a global SOC team responsible for 24/7 monitoring, alert intake, triage, correlation, and escalation. Build operational rigor: processes, runbooks, SLAs, metrics, and quality standards for high-scale environments. Cover monitoring across: Cloud infrastructure (GCP, AWS, Azure) Kubernetes/GKE/EKS/AKS clusters SaaS platforms (Google Workspace, GitHub, Slack, Okta, etc.) Endpoints (macOS, Linux, Windows) including EDR/XDR telemetry Developer platforms + CI/CD pipelines AI/ML systems and model-serving workflows AI-Based SOC Integration & Innovation Evaluate, adopt, and integrate AI-native SOC technologies for triaging, detection, and correlation Identify opportunities to automate triage, investigations,

PythonAWSAzureGCP
V
📍 United States· Full-time· Remote
✓ High-confidence listingCompany trend -88.6%
Quick readStrong listing-quality and freshness signals

At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. As a Director of Product on our Governance & Compliance team, you will own the product strategy and deliver key capabilities that enable Vanta’s GRC product to meet the needs of our largest enterprise customers. You will drive company-wide initiatives requiring deep partnerships across PMM, engineering, design, and go-to-market teams. You will help scale Vanta’s capabilities alongside our rapidly growing customer base and shape the culture and processes of the product team, all while growing the talented PMs you lead. This role reports directly to the VP of Product for Governance and Compliance. What you’ll do as a Director of Product at Vanta: Own the product strategy and roadmap for across trust, audit, and segmentation Inherit, lead and grow a product team: Hire and mentor product managers while establishing strong product thinking and execution. Evolve your area’s product strategy to an AI-first approach, enabling agentic workflows within the product and with the outside ecosystem Be accountable for critical business metrics, including: Revenue from products and add-ons under your purview. Enterprise customer adoption and satisfaction metrics. Collaborate cross-functionally to define a vision and roadmap that balances innovation, scalability, and customer impact. How to be successful in this role: 12+ years of product management experience in high-growth and complex environments. 5+ years of experience hiring, managing, and growing high-performing teams. A passion for scaling B2B SaaS products that serve SMB and enterprise customers alike. A track record of setting clear product vision and business strategies for comple

RestAIGoRust
V
📍 United States· Full-time
✓ Quality checkedCompany trend -88.6%

At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. Vanta's Design Systems team is the foundational layer that powers visual consistency, design quality, and engineering velocity across all of Vanta's product surfaces. We build and maintain Vanta's shared component library (Alpaca), design tokens, interaction patterns, and documentation, enabling product designers and engineers to ship high-quality, cohesive experiences at scale. As Vanta grows across GRC, Trust, and new product areas, and as AI and agentic experiences become a first-class part of the product, Design Systems is increasingly responsible for a harder problem than static component consistency: building a system that can flex for AI-driven, runtime-composed UI and agent chat and canvas experiences, without losing the craft and coherence that makes Alpaca trustworthy across the org. This role sits at that intersection. You'll help define how a design system stays foundational when the product itself is becoming more dynamic and model-aware. What you’ll do as a Staff Product Designer at Vanta: Lead the strategy, evolution, and execution of Alpaca, ensuring it scales with the needs of a rapidly growing, increasingly AI-driven product organization Extend the design system to support AI and agent product patterns, including agent chat and canvas experiences and components that need to adapt based on runtime or model context Partner with product designers and engineers across every product team to define, document, and ship new components, patterns, and guidelines Establish and evolve governance models, contribution frameworks, and quality standards that let every designer at Vanta build consistently, including for AI-nat

RestAIGoRust
O
📍 San Francisco, California, United States· Full-time
✓ High-confidence listingCompany trend -80.2%
Quick readStrong listing-quality and freshness signals

About the Team At OpenAI, our User Operations team safeguards our products and users from legal risk, regulatory non-compliance, fraud, and abuse. The team operates at the intersection of operations, compliance, and user trust, embedded within the broader User Operations organization and collaborating cross-functionally with Legal, Governance Risk & Compliance, Policy and Engineering. We support a global and diverse user base across OpenAI’s suite of product offerings, and developer tools by managing sensitive inbound tickets, regulatory obligations, and escalations. Every user-facing action is grounded in our commitment to legal integrity, ethical practice, and regulatory excellence. About the Role We are seeking an independent, adaptive, and operations-minded Regulatory Operations Analyst to help scale and evolve OpenAI’s global regulatory and compliance operations from San Francisco. This role focuses on complex regulatory operations, including work under the EU Digital Services Act (DSA) and EU AI Act, as well as regulatory inquiries and complaints across the Americas, and Asia-Pacific. You’ll manage sensitive cases independently, exercise sound judgment on escalations, and work closely with Legal Counsel, Governance, Risk and Compliance (GRC), and other cross-functional partners. You’ll also bring a working understanding of privacy and intellectual property matters so you can recognize and escalate related issues when needed. Beyond frontline casework, you’ll help shape the documentation, workflows, tooling, and automation that support safe, scalable and regulatory and legal compliance operations. This role is essential to building scalable, high-integrity operations that protect user rights, meet our obligations under emerging and current regulations. You’ll also contribute to multi-phase transitions and automation efforts that support our long-term operational model. Please note: This role may involve exposure to sensitive or concerning content, including

Artificial IntelligenceAI
V
📍 United States· Full-time
✓ Quality checkedCompany trend -88.6%

At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. Vanta is hiring for a Head of Design (VP) to lead our design organization — setting direction for a ~40-person team, shaping the next generation of AI-native product experiences, and building the quality systems that let great design ship at scale. The Design team at Vanta shapes how security and compliance teams experience Vanta — from a startup founder building their security program for the first time to an enterprise security team managing hundreds of controls. The org spans all areas of Vanta — GRC, Trust, Platform, Self-serve, and AI — and includes product designers, visual designers, design engineering, content designers, and a user researcher, led by experienced design directors. As AI fundamentally changes what products can do and how they get built, this team is at an inflection point: the right leader will define what it means for a design org to be genuinely AI-forward — enabling designers to move faster, ship more, and contribute to product direction and delivery in new ways. This is the right role for a design leader who leads with AI fluency, brings strong taste and craft across interaction design and visual design, and has the operational instincts to build the systems that make quality a consistent property of the whole org. What you’ll do as Head of Design at Vanta: Lead a team of ~40 designers and design directors across GRC, Trust, Platform, Self-serve, and AI — setting org-wide direction and enabling each leader to do their best work Lead the team building the next generation of agentic, AI-native product experiences — defining what great design looks like as Vanta’s products are increasingly shaped by AI E

RestAIRust
D
📍 New York, New York, United States· Full-time
✓ High-confidence listingCompany trend -84.7%

From $113K/yr

Quick readStrong listing-quality and freshness signals

As a Security Sales Specialist, you'll partner with Enterprise Account Executives to drive adoption of Datadog’s Security platform across key accounts. This is a high-impact role focused on positioning our Security solutions (Cloud SIEM, Cloud Workload Security, CSPM, and more) into new and existing customers—expanding our footprint and helping customers modernize their security stack in the cloud. At Datadog, we place value in our office culture - the relationships and collaboration it builds and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them. What You’ll Do: Act as the subject matter expert (SME) for Datadog Security products across a targeted account patch Collaborate closely with Enterprise AEs to support net new logo acquisition and expansion in strategic accounts Own and drive the security sales cycle from discovery to technical close, working closely with Sales Engineers Evangelize Datadog’s security story to security leaders (CISO, Security Architects, SecOps) Work cross-functionally with Datadog's partner, channel, and alliance teams to drive joint go-to-market motions Co-sell effectively with AEs and partners, contributing to deal strategy, solution alignment, and stakeholder engagement Stay informed on security trends and competitive offerings to differentiate Datadog Who You Are: Proven success selling into security buyers (CISO, SecOps, GRC, etc.) Experience co-selling in a matrixed environment, supporting or partnering with AEs and cross-functional teams Strong understanding of the partner/channel sales model, including how to navigate and influence joint selling motions Familiarity with modern security solutions such as SIEM, CSPM, CWPP, container/Kubernetes security Ability to build strong relationships with internal stakeholders, partners, and customer technical teams Datadog values people from all walks of life. We understand not everyone will meet al

KubernetesAIGoRust
DC
📍 New York, New York, United States· Full-time
✓ High-confidence listing

From $114K/yr

Quick readStrong listing-quality and freshness signals

Position Overview: The Solutions Sales Specialist will play an instrumental role in driving revenue growth for Diligent for both existing and new accounts for specialized products, with focus on Compliance (Entity Management and Managed Services). This position will collaborate with core selling teams, customer success, and other internal stakeholders to support the sales process. This role requires a strong understanding of corporate governance, legal entity management, and compliance workflows, paired with consultative selling skills and the ability to translate complex requirements into easy to understand, scalable SaaS solutions. Key Responsibilities Help generate strategic, product-focused pipeline in partnership with core sales teams. Lead discovery to understand customer goals and quantify the value of outcome-based GRC and Entity Management solutions. Advise on solution fit and make recommendations on how to best solution, working closely with SMEs, Solution Engineers and Professional Services. Co-run deals alongside core teams from start to finish. Recommend and present pricing and packaging aligned to customer values and desired outcomes. Support negotiations, security reviews, and procurement processes. Travel to customer sites to conduct strategic, on-site workshops and executive sessions. Partner with post-sale and adoption teams to support implementation and ensure a successful, value-driven customer outcome. Required Experience/Skills: 5+ years of experience in a technical sales, consulting or practitioner role, with a proven track record of success. Ability to build and maintain strong relationships with stakeholders at all levels, both internally at Diligent and within customer organizations. Strong commitment to continuous lear

AWSGitAIGo
O
📍 San Francisco, California, United States· Full-time· Remote
✓ High-confidence listingCompany trend -80.2%
Quick readStrong listing-quality and freshness signals

About the Team OpenAI’s Legal team helps advance our mission by tackling novel legal issues in AI. Our team brings together professionals across technology, privacy, intellectual property, corporate, employment, tax, regulatory, and litigation. Our regulatory compliance work turns legal requirements into practical programs that support responsible AI development and deployment. About the Role As a Legal Program Manager focused on regulatory compliance, you will build and manage cross-functional programs that translate counsel’s guidance into practical, sustainable operations. Your initial focus may include content moderation and/or frontier AI governance, with the mix shaped by team priorities and your strengths. You will partner with internal and external counsel, other legal program managers, and technical and business teams to coordinate implementation, evidence collection, reporting, and ongoing compliance. You’ll build repeatable systems that scale across regulations, products, and jurisdictions, helping teams navigate emerging requirements with clarity and sound judgment. This full-time role is based in San Francisco, CA, or New York, NY. In this role, you will: Lead regulatory compliance programs end to end: define scope, owners, milestones, dependencies, risks, and escalation paths, and drive execution with counsel and cross-functional partners. Translate counsel’s regulatory guidance into repeatable workflows, controls, and documentation. Depending on your portfolio, this may include content moderation disclosures, transparency reporting, reporting and appeals workflows, or frontier AI model launch readiness, evaluation and risk-management evidence, and incident reporting. Build strong partnerships across Product, Engineering, User Operations, Governance, Risk and Compliance (GRC), Global Affairs, Communications, and Go-to-Market to align program priorities and deliverables. Support regulatory inquiries, audits and investigations with counsel, organizing ev

SQLAWSRestAI
V
📍 United States· Full-time
✓ Quality checkedCompany trend -88.6%

At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. As Vanta expands upmarket, we have a unique opportunity to redefine how security and compliance programs are operated, while giving customers the flexibility to run their programs their way, especially in an AI-powered world. GRC Platform is a new team at the center of this effort, building the foundational capabilities that enable mid-market and enterprise customers to operate their GRC programs efficiently and at scale with Vanta. As the Senior Product Manager for GRC Platform, you will own core platform capabilities and primitives that customers rely on every day and that power critical GRC workflows—such as search, imports, exports, custom fields, and approval workflows. You will evolve these capabilities into more intelligent, agentic experiences that are increasingly flexible, automated, and adaptive, helping customers save time, reduce cognitive load, and focus on higher-value work. What you’ll do as a Senior Product Manager, GRC Platform at Vanta: Own the GRC Platform strategy and roadmap, delivering platform primitives and customer facing features leveraged across Vanta’s GRC product Distill complex problems and opportunities into clearly prioritized product goals, focus for your team, and high-quality execution in collaboration with stakeholders across the company. Partner closely with teams across GRC to develop a deep understanding of customer needs, identify opportunities for platform leverage, and translate those insights into intuitive, agentic experiences that solve critical user needs. Drive AI-first product redesigns, including defining model evaluation criteria and managing the transition from legacy experien

RestAIGoRust
DC
📍 New York, New York, United States· Full-time
✓ High-confidence listing

From $100K/yr

Quick readStrong listing-quality and freshness signals

Position Overview Diligent is looking for an experienced GRC Advisor to join the team and work on Key accounts to drive adoption and retention and identify areas for expansion within our platform. This position will leverage our GTM, and value drivers established through combining people, process, and technology. If you are anything like the talented GRC Advisors at Diligent then this feeling you have, might be the desire to serve others- but you are blinded by the limits placed on you in your current role. The Client Success Advisor role is key to Diligent’s Customer Success retention strategy. Key Responsibilities Provide guidance and best practices on configuring, customizing, and optimizing the functionality of the GRC platform and modules to align with clients’ business processes and objectives. Conduct in-depth assessments of clients’ GRC requirements, objectives, and challenges to recommend tailored solutions to address their business needs and goals. Collaborate with clients on internal roadmaps, governance, risk, and compliance requirements to be implemented within Diligent’s platform. Ensure proper understanding and adoption of the platform solutions to identify at-risk clients and help increase usage of the software and modules. Partner closely with internal Product, Customer Success, Support, and Sales teams to drive continuous improvement of the platform based on client use cases. Monitor industry trends, regulatory developments, and emerging best practices in the GRC landscape to proactively share insights and recommendations with clients from a subject matter expert perspective. Required Experience/Skills Minimum of 5-7 years of experience in a client-facing role within the legal, compliance, and entity management or subsidiary governance industry. Adaptive mindset and ability to drive out a meaningful path to how our customers see tangible business value. Ability to build relationships both internally and externally to understand the underpinni

AWSGitAIGo
DC
📍 New York, New York, United States· Full-time
✓ High-confidence listing

From C$99.3K/yr

Quick readStrong listing-quality and freshness signals

Position Overview Diligent is looking for an experienced GRC Advisor to join the team and work on Key accounts to drive adoption and retention and identify areas for expansion within our platform. This position will leverage our GTM, and value drivers established through combining people, process, and technology. If you are anything like the talented GRC Advisors at Diligent then this feeling you have, might be the desire to serve others- but you are blinded by the limits placed on you in your current role. The Client Success Advisor role is key to Diligent’s Customer Success retention strategy. Key Responsibilities Provide guidance and best practices on configuring, customizing, and optimizing the functionality of the GRC platform and modules to align with clients’ business processes and objectives. Conduct in-depth assessments of clients’ GRC requirements, objectives, and challenges to recommend tailored solutions to address their business needs and goals. Collaborate with clients on internal roadmaps, governance, risk, and compliance requirements to be implemented within Diligent’s platform. Ensure proper understanding and adoption of the platform solutions to identify at-risk clients and help increase usage of the software and modules. Partner closely with internal Product, Customer Success, Support, and Sales teams to drive continuous improvement of the platform based on client use cases. Monitor industry trends, regulatory developments, and emerging best practices in the GRC landscape to proactively share insights and recommendations with clients from a subject matter expert perspective. Required Experience/Skills Minimum of 5-7 years of experience in a client-facing role within the legal, audit, risk, or compliance industry. Adaptive mindset and ability to drive out a meaningful path to how our customers see tangible business

AWSGitAIGo
DC
📍 New York, New York, United States· Full-time
✓ High-confidence listing
Quick readStrong listing-quality and freshness signals

We're looking for a Head of Enterprise & Field Marketing to lead and scale our global field marketing organization, own account-based marketing for our largest and most strategic accounts, drive alliances and partner marketing in service of enterprise growth and regional strength; and oversee our strategic events strategy and programs. This is a senior leadership role responsible for the strategy, team, and execution to drive high-quality pipeline and conversion for Diligent’s AI-powered GRC platform in all regions, and design programs that turns enterprise pipeline into revenue through a full-funnel approach, including integrated regional campaigns; 1:1/1:few ABM for named global accounts; bespoke strategic events that offer cut-through experiences for prospects and customers; and leveraging co-marketing of alliances and partnerships for net-new pipeline and brand expansion. You would be joining Diligent at an exciting moment in the company’s history, as they unleash their new AI-powered GRC platform to help General Counsels, Chief Compliance Officers, Audit and Risk Leaders. This is the result of nearly three years of intense development of agentic workflows inside the Diligent platform, as well as MCP/plug-in access to Diligent offerings - providing a robust, differentiated experience for clients who need solutions that accelerate and action critical business objectives, not just static reporting. Working closely with Sales and the broader GTM organization, you will lead an established, multi-region field marketing team and be responsible for evolving it from regional execution into a more specialized, account-centric growth engine — tightly aligned with enterprise sales leadership, customer success, global events, and partner teams. You'll own the budget, the roadmap, and the relationship with sales as the primary marketing partner for our highest-value opportunities. You w

AWSGitAIGo
P
📍 New York, New York, United States· Full-time
✓ Quality checkedCompany trend -72.3%

We believe that the way people interact with their finances will drastically improve in the next few years. We’re dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaid’s network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam. About the Team: The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing information security risks and maintaining effective controls. Our mission is to reduce the likelihood and impact of security risks while operating a robust assurance program that builds trust with our customers, consumers, and data partners. We partner closely across the company to ensure Plaid’s platform remains secure, resilient, and aligned with industry and regulatory expectations. The Security Contracts workstream is a core part of our Security Assurance and Trust Enablement program — ensuring Plaid's contractual security obligations with customers and data partners are defensible, consistent, and never a bottleneck to deal velocity, all while building trust. About the Role You will own Plaid’s Security Contracts workstream end-to-end—the DRI for how security contract reviews get done, how fast they move, and how the program improves over time. You will review security provisions in customer MSAs, DPAs, and security addenda, identify unacceptable clauses, and provide Legal and GTM with the actionable security feedback they n

AWSAIGoRust
🔔

Get new grc engineer jobs in United States by email

Daily job updates · Unsubscribe anytime