Senior GRC Architect: Policy, Risk & Automation

Palo Alto Networks

California (MO)

On-site

USD 168,000 - 271,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

Palo Alto Networks seeks a Principal InfoSec GRC Business Engineer to architect, execute, and mature our Global Governance, Risk, and Compliance programs. You will bridge security engineering, enterprise risk management, and business operations by designing global governance frameworks and scalable risk assessment methodologies.

You will partner with stakeholders to craft actionable security policies and standards, leveraging AI, automation, and continuous control monitoring to embed security

Qualifications

  • 10+ years of experience in Information Security or IT Risk, with at least 6+ years focused on GRC and enterprise risk engineering in global environments.
  • Bachelor's or Master's degree in Computer Science, Cybersecurity, MIS, or equivalent practical experience.
  • Active certification in CISSP, CRISC, CISM, or CISA.
  • Deep knowledge of ISO 27001/2, NIST SP 800-53, NIST CSF, SOC 2 Type II, PCI-DSS, GDPR, and enterprise risk frameworks.

Responsibilities

  • Design and scale the global GRC vision to align security governance with enterprise goals and regulatory mandates.
  • Partner with senior leaders across Information Security, Legal, and Product Engineering to align risk tolerance with business objectives.
  • Lead the drafting, maintenance, rollout, and annual review of Information Security policies, standards, procedures, and guidelines.
  • Translate complex regulatory and security frameworks into clear, actionable security-focused requirements.
  • Architect and refine quantitative and qualitative risk assessment methodologies for cloud, SaaS, and hybrid environments.
  • Lead end-to-end technical security risk evaluations for business-critical applications, infrastructure, and processes.
  • Design and manage executive-level risk reporting to provide visibility into risk posture and drive risk reduction.
  • Lead the implementation, optimization, and continuous improvement of enterprise GRC platforms and risk management tools.
  • Design and implement test plans and policy-as-code to enable automated evidence collection and real-time control testing.
  • Redesign manual risk and compliance processes into scalable, automated workflows to reduce operational friction.

Skills

Information Security
GRC
Risk Management
Cross-functional
Executive communication

Education

Bachelor's or Master's degree in CS/Cybersecurity/MIS

Tools

GRC tools
Automation tools

Job description

Palo Alto Networks seeks a Principal InfoSec GRC Business Engineer to architect, execute, and mature our Global Governance, Risk, and Compliance programs. You will bridge security engineering, enterprise risk management, and business operations by designing global governance frameworks and scalable risk assessment methodologies.

You will partner with stakeholders to craft actionable security policies and standards, leveraging AI, automation, and continuous control monitoring to embed security

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal GRC Architect - InfoSec & Enterprise Risk
Principal GRC Architect - InfoSec & Enterprise Risk

Palo Alto Networks • Santa Clara (CA)

On-site
USD 168,000 - 271,000
GRC Architect & Risk Strategy Leader
GRC Architect & Risk Strategy Leader

Palo Alto Networks, Inc. • Santa Clara (CA)

On-site
USD 168,000 - 271,000
Principal GRC Business Engineer
Principal GRC Business Engineer

Palo Alto Networks • California (MO)

On-site
USD 168,000 - 271,000
Principal GRC Business Engineer
Principal GRC Business Engineer

Palo Alto Networks • Santa Clara (CA)

On-site
USD 168,000 - 271,000
Principal GRC Business Engineer
Principal GRC Business Engineer

Palo Alto Networks, Inc. • Santa Clara (CA)

On-site
USD 168,000 - 271,000
Senior GRC Engineer - Automate Compliance & Security
Senior GRC Engineer - Automate Compliance & Security

Cloud Software Group • San Ramon (CA)

On-site
USD 160,000 - 241,000
Senior GRC Engineer: Cloud Security & Compliance
Senior GRC Engineer: Cloud Security & Compliance

Cloud Software Group • San Ramon (CA)

On-site
USD 160,000 - 240,000
Healthcare benefits
401(k) match
Career development
Senior GRC Engineer: AI‑Powered Security & Compliance
Senior GRC Engineer: AI‑Powered Security & Compliance

Block • San Francisco (CA)

On-site
USD 218,000 - 327,000
Global Network Security Architect & Automation Leader
Global Network Security Architect & Automation Leader

Socket.dev • California (MO)

On-site
USD 154,000 - 250,000
Senior GRC & Compliance Automation Engineer
Senior GRC & Compliance Automation Engineer

Talanto • San Mateo (CA)

On-site
USD 200,000 - 250,000
Healthcare coverage
Paid holidays
Parental leave