GRC Engineer

United States Digital Space LLC

San Mateo (CA)

On-site

USD 200,000 - 250,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Healthcare coverage
Vision & dental coverage
HSA & FSA
Mental health support
Parental leave & fertility benefits
Paid time off & holidays
Professional development stipend
Wellness benefits
Daily healthy lunches
Commuter benefits

Job summary

United States Digital Space LLC is seeking a GRCA leader to build and run the company’s governance, risk, and compliance program within the Security team. You will manage risk, scale compliance, and provide customers with clear information about security practices.

You will develop automated programs, drive policy, and collaborate with Security, IT, Legal, and Engineering to meet regulatory requirements as the company expands globally. This role is onsite.

Qualifications

  • Strong written and spoken communication tailored to security topics.
  • Demonstrated ability to lead security/compliance programs across teams.
  • Experience in audits, risk management and regulatory controls for cloud apps.

Responsibilities

  • Lead GRCA within Security, manage risks, scale compliance programs.
  • Coordinate with Security, IT, Engineering, Product and Legal on controls.
  • Develop tooling for testing and monitoring of controls across AWS, GitHub, etc.
  • Maintain roadmap for security compliance in Corporate, IT and Product.
  • Create and maintain company-wide security policies and training materials.
  • Report progress and issue resolutions to management and stakeholders.
  • Document procedures and oversee corrective action plans for issues.
  • Perform annual security risk assessments and risk treatment planning.
  • Conduct vendor security assessments and manage third-party risk.
  • Oversee Security Exception Process and automate evidence collection.
  • Support BIA, and annual BCP/DR activities; align with audits.
  • Leverage AI/automation to scale GRCA functions; collaborate with auditors.
  • Onsite work five days per week.

Skills

Security/compliance leadership
Audits and risk management
Cross-functional collaboration
Cloud experience (AWS)
Scripting (Python/JSON)
Policy and governance
SOC 2 / ISO27001 expertise
Security/IT compliance experience

Job description

Who We Are

the company is transforming how organizations protect their people and places with an integrated, privacy-sensitive AI-powered platform that includes solutions for video security, access control, air quality sensors, alarms, intercoms, and visitor management.

We’ve got serious momentum in the market: more than 30,000 customers (including 100+ of the Fortune 500), a $5.8B valuation, more than $1 billion in annualized bookings, and backing from CapitalG, Sequoia Capital, General Catalyst, Felicis Ventures, Next47 and more. Physical AI is one of the most consequential technology shifts of our time, and the company is at the center of it.

You can look at all kinds of communities to see our platform’s impact in the world. It's the retailer that uses our agentic AI to deter theft before it happens. The warehouse that uses AI-powered alerts to make sure its team is protected on the floor with proper PPE. The school that’s alerted to a threat in real-time and triggers a lockdown in seconds, not minutes. We’re rapidly scaling this impact: today, more than 2 million the company devices are deployed across 170+ countries.

About the Role

Build and lead the GRCA function within the company’s Security Team. Manage risks, scale and meet the company’s growing compliance needs. Curate information provided to customers about the company’s security practices.

You'll build scalable, automated programs that enable rapid business growth while maintaining customer trust. As the company expands globally with increasing enterprise customers, this role is critical to meeting sophisticated security and compliance expectations that directly impact revenue and risk management.

What You’ll Do
  • Work cross functionally with Security, IT, Engineering, Product and Legal to provide guidance on security controls implementation including: effectiveness, implementation and automation
  • Research, build and maintain tooling for testing and continuous monitoring of security controls across multiple platforms including: AWS, Github, etc.
  • Maintain the roadmap for continuous security compliance across the company’s Corporate, IT and Product environments with a goal of increasing automation coverage
  • Assist in the development and maintenance of company-wide security policies, procedures, and plans, and support communication to internal stakeholders regarding security and compliance best practices around applicable laws, regulations, and controls
  • Communicate progress, escalations, and issue resolution to management and team stakeholders
  • Create procedural documentation, including training materials or process documentation
  • Build relationships with a broad range of the company employees at all levels to accomplish program objectives and further the company GRC goals.
  • Implement the development and oversight of required corrective action plans relating to security compliance issues
  • Perform annual security risk assessments and prepare risk treatment plans
  • Conduct vendor security assessments to assess risks and evaluate security postures of new and existing third-party vendors/suppliers
  • Manage the Security Exception Process to enable Security teams to track exceptions, manage approvals, and improve automation
  • Assurance program (the A in GRCA) - Maintain the FAQ for customer questionnaires
  • Collaborate on Business Impact Assessments (BIA) and annual BCP/DR activities
  • Leverage AI and automation to scale the GRCA functions
  • Work closely with internal and external auditors to educate them and achieve continuous compliance over technology control environment
  • Must be willing and able to work onsite five days per week
What You Bring
  • Outstanding written and spoken communication skills
  • Ability to effectively and autonomously accomplish outcomes across cross-functional teams in ambiguous situations
  • Ability to multitask, prioritize work and meet deadlines in a fast paced environment
  • Experience with AWS or another cloud service provider
  • Prior experience with software companies’ compliance
  • Experience with audits, risk and compliance (SOC 2, ISO27001, etc.) for cloud software products.
  • 7+ years of security/IT compliance or equivalent experience
  • Bonus: Experience with scripting languages such as: Python, JSON etc
  • Bonus: Prior experience automating audit evidence collection
US Employee Benefits

the company is committed to fostering a workplace environment that prioritizes the holistic health and wellbeing of our employees and their families by offering comprehensive wellness perks, benefits, and resources. Our benefits and perks programs include, but are not limited to:

  • Healthcare programs that can be tailored to meet the personal health and financial well-being needs - Premiums are 100% covered for the employee under at least one plan and 80% for family premiums under all plans
  • Nationwide medical, vision and dental coverage
  • Health Saving Account (HSA) with annual employer contributions and Flexible Spending Account (FSA) with tax saving options
  • Expanded mental health support
  • Paid parental leave policy & fertility benefits
  • Time off to relax and recharge through our paid holidays, firmwide extended holidays, flexible PTO and personal sick time
  • Professional development stipend
  • Wellness/fitness benefits
  • Healthy lunches provided daily
  • Commuter benefits
Additional Information
  • We do sponsor and take over sponsorship of employment visas for this role. If we make you an offer, we will make every reasonable effort to get you a visa.
Annual Pay Range

At the company, we want to attract and retain the best employees, and compensate them in a way that appropriately and fairly values their individual contribution to the company. With that in mind, we carefully consider a number of factors to determine the appropriate starting pay for an employee, including their primary work location and an assessment of a candidate's skills and experience, as well as market demands and internal parity. A the company employee may be eligible for additional forms of compensation, depending on their role, including sales incentives, discretionary bonuses, and/or equity in the company in the form of restricted stock units (RSUs)

Below is the annual on-target earnings (OTE) range for full-time employees for this position, comprised of base compensation and commissions (if applicable).

Estimated Annual Pay Range

$200,000—$250,000 USD

the company Is An Equal Opportunity Employer

As an equal opportunity employer, the company is committed to providing employment opportunities to all individuals. All applicants for positions at the company will be treated without regard to race, color, ethnicity, religion, sex, gender, gender identity and expression, sexual orientation, national origin, disability, age, marital status, veteran status, pregnancy, or any other basis prohibited by applicable law.

*Your application will be handled in accordance with our *

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Engineer
GRC Engineer

Talanto • San Mateo (CA)

On-site
USD 200,000 - 250,000
Healthcare coverage
Paid holidays
Parental leave
Senior Director, GRC
Senior Director, GRC

United States Digital Space LLC • San Francisco (CA)

On-site
USD 264,000 - 363,000
Equity (where applicable)
Bonus
Health, dental and vision insurance
+3
GRC Engineer
GRC Engineer

Cloudflare • Austin (TX)

On-site
USD 150,000 - 210,000
Equity plan
Medical insurance
401(k) plan
+1
Senior GRC Analyst
Senior GRC Analyst

United States Digital Space LLC • Boston (MA)

On-site
USD 130,000 - 170,000
Principal Security GRC Analyst
Principal Security GRC Analyst

Jobgether • United States

On-site
USD 150,000 - 210,000
High autonomy
Multi-framework exposure
Cloud environment experience
Principal GRC Business Engineer
Principal GRC Business Engineer

Palo Alto Networks, Inc. • Santa Clara (CA)

On-site
USD 168,000 - 271,000
Staff+ Security Engineer, Developer Tools
Staff+ Security Engineer, Developer Tools

United States Digital Space LLC • San Mateo (CA)

On-site
USD 200,000 - 300,000
Healthcare coverage
Mental health support
Parental leave
+3
Principal GRC Business Engineer
Principal GRC Business Engineer

Palo Alto Networks • Santa Clara (CA)

On-site
USD 168,000 - 271,000
GRC Manager
GRC Manager

Valence • United States

Hybrid
USD 130,000 - 190,000
WFH stipend
Phone stipend
Workspace support
GRC Specialist
GRC Specialist

Papaya Global • Connecticut

On-site
USD 110,000 - 170,000