FREE ACCESS
5,000–10,000 jobs/day

See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Senior GRC Engineer
Flock SafetySenior GRC Engineer developing systems and frameworks to automate compliance in a safety tech company. Collaborating across departments to streamline governance, risk, and compliance processes.
Tech Stack
Tools & technologiesAWSCloudTerraform
About the role
Key responsibilities & impact- Design and implement policy-as-code and compliance-as-code frameworks
- Automate control testing and evidence collection using cloud and CI/CD telemetry
- Integrate GRC processes with engineering tools and workflows
- Develop reusable tooling and internal platforms for scalable, self-service compliance
- Build and deploy production-grade automation leveraging LLMs and AI tooling (e.g., for control mapping, evidence analysis, and anomaly detection)
- Own the design, development, and maintenance of core GRC automation systems and services
- Develop KPIs and KRIs using engineering and cloud data
- Support risk quantification efforts using frameworks such as FAIR
- Maintain and improve the security risk register
- Apply data modeling and AI techniques to identify emerging risks and reduce false positives
- Build automated risk scoring and prioritization models using real-time engineering and security data
- Lead and support audits including SOC 2, ISO 27001, ISO 27701, FedRAMP and CJIS
- Build automated audit readiness and continuous compliance processes
- Serve as a key point of contact for internal and external auditors
- Work with Product and Engineering teams on security and privacy requirements
- Support customer security reviews, RFIs, and trust center initiatives
- Collaborate with Legal and Privacy teams on regulatory alignment
- Automate vendor assessments using AI-assisted questionnaire analysis and response validation
- Build workflows to ingest, analyze, and score third-party risk data at scale.
Requirements
What you’ll need- 5+ years in GRC, security engineering, or related roles
- Experience working in cloud-native environments, AWS is a must
- Experience supporting audits such as SOC 2, ISO 27001, or similar
- Relevant certifications such as CISA, CRISC, FAIR, AWS Security Specialty, ISO 27001/42001 Lead Auditor certifications a plus
- Experience integrating security and compliance into CI/CD pipelines
- Ability to work with APIs, automation tools, or scripting languages
- Experience implementing policy-as-code, compliance-as-code, or security-as-code frameworks
- Familiarity with tools such as Terraform, CloudFormation, or similar IaC frameworks
- Thinks in terms of systems and scale, not manual tasks—automating repetitive work wherever possible
- Curious about and experienced with applying AI to operational problems, especially in security or compliance
- Comfortable experimenting with emerging technologies and rapidly evolving tooling
- Strong understanding of frameworks such as SOC2 Type II, NIST 800-53, ISO 27001, and CJIS
- Ability to translate regulatory requirements into technical controls
- Automation-first thinking
- Strong problem-solving skills and ownership mentality
- Ability to balance security, compliance, and business needs
- Ability to collaborate effectively with engineering, security, and business stakeholders.
Benefits
Comp & perks- Flexible PTO: We offer non-accrual PTO, plus 11 company holidays.
- Fully-paid health benefits plan for employees: including Medical, Dental, and Vision and an HSA match.
- Family Leave: All employees receive 12 weeks of 100% paid parental leave. Birthing parents are eligible for an additional 6-8 weeks of physical recovery time.
- Fertility & Family Benefits: We have partnered with Maven, a complete digital health benefit for starting and raising a family. Flock will provide a $50,000-lifetime maximum benefit related to eligible adoption, surrogacy, or fertility expenses.
- Spring Health: Spring Health offers a variety of mental health benefits, including therapy, coaching, medication management, and digital tools, all tailored to each individual's needs.
- Caregiver Support: We have partnered with Cariloop to provide our employees with caregiver support.
- Carta Tax Advisor: Employees receive 1:1 sessions with Equity Tax Advisors who can address individual grants, model tax scenarios, and answer general questions.
- ERGs: We want all employees to thrive and feel like they belong at Flock. We offer four ERGs today - Women of Flock, Flock Proud, LEOs and Melanin Motion. If you are interested in talking to a representative from one of these, please let your recruiter know.
- WFH Stipend: $150 per month to cover the costs of working from home.
- Productivity Stipend: $300 per year to use on Audible, Calm, Masterclass, Duolingo and so much more.
- Home Office Stipend: A one-time $750 to help you create your dream office.
ATS Keywords
✓ Tailor your resumeApplicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
policy-as-codecompliance-as-codecloud-native environmentsCI/CD pipelinesAPIsautomation toolsscripting languagesTerraformCloudFormationAI techniques
Soft Skills
problem-solvingownership mentalitycollaborationcuriosityadaptabilitycommunicationleadershiporganizational skillscritical thinkingautomation-first thinking
Certifications
CISACRISCFAIRAWS Security SpecialtyISO 27001 Lead AuditorISO 42001 Lead AuditorSOC 2ISO 27701FedRAMPCJIS