Senior GRC Engineer, Trust

P2P

Massachusetts

On-site

USD 140,000 - 210,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Chainalysis is seeking a Senior GRC Engineer to lead technical control implementation across our security program. You’ll own remediation end-to-end and improve evidence collection to support audits and customer assurance.

In this senior IC role, you’ll collaborate with Product, R&D, Security, and Legal to translate requirements into concrete actions, enhance automation, and maintain audit readiness at scale.

Qualifications

  • Experience implementing and operating security controls in cloud/SaaS environments.
  • Built repeatable evidence collection and control testing workflows.
  • Experience translating requirements into technical actions for delivery teams.
  • Strong communication for technical and non-technical audiences.

Responsibilities

  • Partner with Product, R&D Engineering, Security Engineering and adjacent teams to implement and operationalize security and compliance controls across Chainalysis products.
  • Own end-to-end remediation of compliance and security findings, from gap identification through validation and closure.
  • Build scalable evidence collection and control-testing workflows that improve audit readiness and reduce manual effort.
  • Drive continuous control improvement across a segmented product suite, including pass-through security and compliance requirements where applicable.
  • Support product and risk review processes by helping teams translate requirements into practical technical and operational actions.
  • Advocate for a durable, scalable control environment that keeps pace with business growth and customer expectations.
  • Help shape GRC automation and stronger operating rhythms across the Trust organization.

Skills

Cross-functional collaboration
Strong written and verbal comms
Influencing cross-functional work
Systems-minded approach
Auditing readiness

Tools

Jira
Okta
AWS
Terraform
Vanta

Job description

The InfoSec organization at Chainalysis helps protect the company, its products, and its customers as the business grows. The team works across security engineering, trust, governance, risk, and compliance to strengthen our control environment, support customer and regulatory expectations, and enable the business to move quickly with confidence. We partner closely across Product, Engineering, IT, Legal, and other cross‑functional teams to build security and compliance into how Chainalysis operates. This role will contribute to that mission by improving the systems, processes, and technical controls that support a scalable security and compliance program.

We’re looking for a Senior GRC Engineer to lead technical control implementation, own remediation work end to end, and improve how evidence is gathered and maintained across the business. You’ll operate as a senior individual contributor at the Senior level, leading work of moderate scope through influence, cross‑functional collaboration, and guidance rather than people management. Success in this role means reducing manual articulation, improving control effectiveness, and making it easier for Chainalysis to meet customer, audit, and security commitments at scale.

In this role, you’ll:
  • Partner with Product, R&D Engineering, Security Engineering and adjacent teams to implement and operationalize security and compliance controls across Chainalysis products.
  • Own end-to-end remediation of compliance and security findings, from gap identification through validation and closure.
  • Build scalable evidence collection and control‑testing workflows that improve audit readiness and reduce manual effort.
  • Drive continuous control improvement across a segmented product suite, including pass‑through security and compliance requirements where applicable.
  • Support product and risk review processes by helping teams translate requirements into practical technical and operational actions.
  • Advocate for a durable, scalable control environment that keeps pace with business growth and customer expectations.
  • Help shape GRC automation and stronger operating rhythms across the Trust organization.
We’re looking for candidates who have:
  • Experience implementing and operating security or compliance controls in a cloud, SaaS, or otherwise regulated technology environment.
  • Built repeatable evidence collection, control testing, or remediation workflows that improved audit readiness and reduced manual work.
  • Experience partnering cross‑functionally with engineering, security, and business stakeholders to move control work from requirement to implementation.
  • The ability to translate customer, audit, or internal control requirements into clear technical actions for delivery teams.
  • Strong written and verbal communication skills, including the ability to explain risk, tradeoffs, and remediation plans to both technical and non‑technical audiences.
  • Experience supporting assurance or compliance programs such as SOC 2, ISO 27001, customer security reviews, or similar control frameworks.
  • A track record of influencing cross‑functional work, collaborating broadly, and providing guidance in a senior IC role.
  • A practical, systems‑minded approach to improving controls without creating unnecessary friction for the business.
Nice to have experience:
  • Experience with Trust Center operations or customer‑facing security and compliance request workflows.
  • Familiarity with identity and access management controls such as Okta and MFA enforcement.
  • Experience with GRC automation or workflow tooling that improves evidence collection, remediation tracking, or control monitoring.
  • Exposure to blockchain, fintech, or other high‑trust environments where customer assurance and technical controls are tightly coupled.
Technologies we use:
  • AWS, Cloud Architecture
  • Terraform, Infrastructure as Code (IaC)
  • Vanta
  • Trust Center workflows
  • Jira
  • Okta

Please note: This position is ineligible for visa sponsorship. US Citizenship is required.

We encourage applicants across any race, ethnicity, gender/gender expression, age, spirituality, ability, experience and more. If you need any accommodations to make our interview process more accessible to you due to a disability, don't hesitate to let us know. You can learn more here. We can’t wait to meet you.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior GRC Engineer, Trust
Senior GRC Engineer, Trust

Chainalysis • New York (NY)

On-site
USD 140,000 - 190,000
Senior GRC Engineer, Trust
Senior GRC Engineer, Trust

Chainalysis • Virginia (MN), New York (NY)

On-site
USD 120,000 - 190,000
Senior GRC Engineer - Trust & Compliance at Scale
Senior GRC Engineer - Trust & Compliance at Scale

P2P • Massachusetts

On-site
USD 140,000 - 210,000
Senior GRC Engineer: Scale Trust & Compliance
Senior GRC Engineer: Scale Trust & Compliance

Chainalysis • Virginia (MN), New York (NY)

On-site
USD 120,000 - 190,000
Security Analyst II, Trust
Security Analyst II, Trust

P2P • Maryland

On-site
USD 110,000 - 150,000
GRC Program Manager, Assurance Engineering & Control Systems
GRC Program Manager, Assurance Engineering & Control Systems

OpenAI • San Francisco (CA)

On-site
USD 160,000 - 260,000
Security Compliance Engineer
Security Compliance Engineer

ANAUTICS INC • Oklahoma City (OK)

On-site
USD 80,000 - 100,000
Security Engineer (GRC)
Security Engineer (GRC)

Candid Health • United States

On-site
USD 120,000 - 180,000
GRC Compliance Auditor
GRC Compliance Auditor

NorthMark Compute & Cloud • Dallas (TX)

On-site
USD 90,000 - 140,000
Sr. Security Assurance Engineer
Sr. Security Assurance Engineer

6sense • United States

On-site
USD 140,000 - 200,000