GRC Engineer

Talanto

San Mateo (CA)

On-site

USD 200,000 - 250,000

Full time

4 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Healthcare coverage
Paid holidays
Parental leave

Job summary

Talanto is seeking a senior security and compliance leader to build and run the GRCA function within the security team. You will manage risk, scale compliance, and provide customers with transparent security posture information.

The role supports rapid growth across global enterprise customers and requires hands-on leadership across policy, controls, and audits. As part of the role, you will collaborate with Security, IT, Engineering, Product and Legal to implement automated controls, maintain

Qualifications

  • Outstanding written and spoken communication skills.
  • Ability to autonomously accomplish outcomes across cross-functional teams in ambiguous situations.
  • Experience with audits, risk and compliance (SOC 2, ISO27001, etc.) for cloud software products.
  • 7+ years of security/IT compliance or equivalent experience.
  • Bonus: Experience with scripting languages such as Python, JSON.
  • Experience with AWS or another cloud service provider.

Responsibilities

  • Work cross-functionally with Security, IT, Engineering, Product and Legal to guide security controls implementation and automation.
  • Maintain and automate security compliance roadmaps across corporate, IT and product environments.
  • Develop and maintain security policies, procedures, and plans; communicate best practices to stakeholders.
  • Collaborate with auditors to achieve continuous compliance over technology controls.

Skills

Communication
Cross-functional Collaboration
AWS
SOC 2
ISO27001
Security Compliance
Python
JSON
7+ years experience

Job description

Important: if an employer asks you to log into their system via iCloud or Google, send a code, an SMS or Telegram password, run some code, or install software — refuse. These are signs of fraud.

Who We Are

••••••• is transforming how organizations protect their people and places with an integrated, privacy-sensitive AI-powered platform that includes solutions for video security, access control, air quality sensors, alarms, intercoms, and visitor management.

We’ve got serious momentum in the market: more than 30,000 customers (including 100+ of the Fortune 500), a $5.8B valuation , more than $1 billion in annualized bookings, and backing from CapitalG, Sequoia Capital, General Catalyst, Felicis Ventures, Next47 and more. Physical AI is one of the most consequential technology shifts of our time, and ••••••• is at the center of it.

You can look at all kinds of communities to see our platform’s impact in the world. It's the retailer that uses our agentic AI to deter theft before it happens. The warehouse that uses AI-powered alerts to make sure its team is protected on the floor with proper PPE. The school that’s alerted to a threat in real-time and triggers a lockdown in seconds, not minutes. We’re rapidly scaling this impact: today, more than 2 million ••••••• devices are deployed across 170+ countries.

About the Role

Build and lead the GRCA function within ••••••• ’s Security Team. Manage risks, scale and meet ••••••• ’s growing compliance needs. Curate information provided to customers about ••••••• ’s security practices.

You'll build scalable, automated programs that enable rapid business growth while maintaining customer trust. As ••••••• expands globally with increasing enterprise customers, this role is critical to meeting sophisticated security and compliance expectations that directly impact revenue and risk management.

What You'll Do
  • Work cross functionally with Security, IT, Engineering, Product and Legal to provide guidance on security controls implementation including: effectiveness, implementation and automation
    • Research, build and maintain tooling for testing and continuous monitoring of security controls across multiple platforms including: AWS, Github, etc.
  • Maintain the roadmap for continuous security compliance across ••••••• ’s Corporate, IT and Product environments with a goal of increasing automation coverage
  • Assist in the development and maintenance of company-wide security policies, procedures, and plans, and support communication to internal stakeholders regarding security and compliance best practices around applicable laws, regulations, and controls
  • Communicate progress, escalations, and issue resolution to management and team stakeholders
  • Create procedural documentation, including training materials or process documentation
  • Build relationships with a broad range of ••••••• employees at all levels to accomplish program objectives and further ••••••• GRC goals.
  • Implement the development and oversight of required corrective action plans relating to security compliance issues
  • Perform annual security risk assessments and prepare risk treatment plans
  • Conduct vendor security assessments to assess risks and evaluate security postures of new and existing third-party vendors/suppliers
  • Manage the Security Exception Process to enable Security teams to track exceptions, manage approvals, and improve automation
  • Assurance program (the A in GRCA) - Maintain the FAQ for customer questionnaires
  • Collaborate on Business Impact Assessments (BIA) and annual BCP/DR activities
  • Leverage AI and automation to scale the GRCA functions
  • Work closely with internal and external auditors to educate them and achieve continuous compliance over technology control environment
  • Must be willing and able to work onsite five days per week
What You Bring
  • Outstanding written and spoken communication skills
  • Ability to effectively and autonomously accomplish outcomes across cross-functional teams in ambiguous situations
  • Ability to multitask, prioritize work and meet deadlines in a fast paced environment
  • Experience with AWS or another cloud service provider
  • Prior experience with software companies’ compliance
  • Experience with audits, risk and compliance (SOC 2, ISO27001, etc.) for cloud software products.
  • 7+ years of security/IT compliance or equivalent experience
  • Bonus: Experience with scripting languages such as: Python, JSON etc
US Employee Benefits

••••••• is committed to fostering a workplace environment that prioritizes the holistic health and wellbeing of our employees and their families by offering comprehensive wellness perks, benefits, and resources. Our benefits and perks programs include, but are not limited to:

  • Healthcare programs that can be tailored to meet the personal health and financial well-being needs - Premiums are 100% covered for the employee under at least one plan and 80% for family premiums under all plans
  • Nationwide medical, vision and dental coverage
  • Health Saving Account (HSA) with annual employer contributions and Flexible Spending Account (FSA) with tax saving options
  • Expanded mental health support
  • Paid parental leave policy & fertility benefits
  • Time off to relax and recharge through our paid holidays, firmwide extended holidays, flexible PTO and personal sick time
  • Wellness/fitness benefits
  • Healthy lunches provided daily
Additional Information
  • We do sponsor and take over sponsorship of employment visas for this role. If we make you an offer, we will make every reasonable effort to get you a visa.
Annual Pay Range

At ••••••• , we want to attract and retain the best employees, and compensate them in a way that appropriately and fairly values their individual contribution to the company. With that in mind, we carefully consider a number of factors to determine the appropriate starting pay for an employee, including their primary work location and an assessment of a candidate's skills and experience, as well as market demands and internal parity. A ••••••• employee may be eligible for additional forms of compensation, depending on their role, including sales incentives, discretionary bonuses, and/or equity in the company in the form of restricted stock units (RSUs)

Below is the annual on-target earnings (OTE) range for full-time employees for this position, comprised of base compensation and commissions (if applicable).

Estimated Annual Pay Range$200,000—$250,000 USD

As an equal opportunity employer, ••••••• is committed to providing employment opportunities to all individuals. All applicants for positions at ••••••• will be treated without regard to race, color, ethnicity, religion, sex, gender, gender identity and expression, sexual orientation, national origin, disability, age, marital status, veteran status, pregnancy, or any other basis prohibited by applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Engineer
GRC Engineer

United States Digital Space LLC • San Mateo (CA)

On-site
USD 200,000 - 250,000
Healthcare coverage
Vision & dental coverage
HSA & FSA
+7
Senior Director, GRC
Senior Director, GRC

United States Digital Space LLC • San Francisco (CA)

On-site
USD 264,000 - 363,000
Equity (where applicable)
Bonus
Health, dental and vision insurance
+3
Senior GRC Analyst
Senior GRC Analyst

United States Digital Space LLC • Boston (MA)

On-site
USD 130,000 - 170,000
Principal GRC Business Engineer
Principal GRC Business Engineer

Palo Alto Networks, Inc. • Santa Clara (CA)

On-site
USD 168,000 - 271,000
Staff+ Security Engineer, Developer Tools
Staff+ Security Engineer, Developer Tools

United States Digital Space LLC • San Mateo (CA)

On-site
USD 200,000 - 300,000
Healthcare coverage
Mental health support
Parental leave
+3
Principal GRC Business Engineer
Principal GRC Business Engineer

Palo Alto Networks • Santa Clara (CA)

On-site
USD 168,000 - 271,000
GRC Manager
GRC Manager

Valence • United States

Hybrid
USD 130,000 - 190,000
WFH stipend
Phone stipend
Workspace support
GRC Engineer
GRC Engineer

Cloudflare • Austin (TX)

On-site
USD 150,000 - 210,000
Equity plan
Medical insurance
401(k) plan
+1
Principal Security GRC Analyst
Principal Security GRC Analyst

Jobgether • United States

On-site
USD 150,000 - 210,000
High autonomy
Multi-framework exposure
Cloud environment experience
Software Engineering Manager, Data Protection Platform
Software Engineering Manager, Data Protection Platform

United States Digital Space LLC • San Mateo (CA)

On-site
USD 250,000 - 350,000
Healthcare programs
Vision and dental coverage
HSA with employer contributions
+3