×
Register Here to Apply for Jobs or Post Jobs. X

Senior GRC Technical Engineer

Job in San Ramon, Contra Costa County, California, 94583, USA
Listing for: Cloud Software Group
Full Time position
Listed on 2026-08-27
Job specializations:
  • IT/Tech
    Cybersecurity, Information Security & Data Protection, IT Consultant
Salary/Wage Range or Industry Benchmark: 160000 - 240000 USD Yearly USD 160000.00 240000.00 YEAR
Job Description & How to Apply Below

As a
Senior
GRC Technical Engineer
, you will play a key role in implementing and operating the organization's Governance, Risk, and Compliance (GRC) program, with a strong focus on the intersection of
technology, cybersecurity, compliance, and risk management
.

This role is ideal for a technically strong security professional who understands how security controls are implemented in real-world technology environments and can translate technical requirements into practical compliance outcomes. The individual will work closely with Engineering, Product, IT, Corporate Security, Legal, Privacy, Internal Audit, and business stakeholders to drive compliance, manage risk, and strengthen the organization's overall security posture.

The role will also provide exposure to and collaboration with
Corporate Security functions
, including vulnerability management, identity and access management, third-party risk, security assessments, and security operations.

Key Responsibilities
  • Identify opportunities to automate manual GRC processes and reduce reliance on spreadsheets and email-based evidence collection.
  • Support implementation of automated control monitoring and continuous compliance capabilities.
  • Explore the use of
    AI and agentic technologies
    to improve evidence collection, control validation, risk analysis, reporting, and compliance operations.
  • Partner with technical teams to integrate security and compliance data from enterprise systems into GRC platforms.
  • Maintain accurate and reliable GRC data, documentation, control libraries, and reporting.
  • Leverage GRC, security, cloud, vulnerability management, IAM, and other technology platforms to improve compliance operations.
  • Support the design, implementation, and ongoing operation of GRC programs across security, privacy, technology, and compliance requirements.
  • Translate regulatory, contractual, and industry-standard requirements into
    technical and operational control requirements
    .
  • Partner with Engineering, Product, IT, Cloud, Infrastructure, and Security teams to understand how controls are implemented within technology environments.
  • Support compliance programs and assessments across frameworks such as
    SOC 2, ISO 27001, ISO 27701, ISO 42001, PCI DSS, FedRAMP, CMMC, IRAP, HIPAA, HITRUST, and other applicable standards
    .
  • Develop working knowledge of areas such as
    Vulnerability Management, IAM/PAM, Third-Party Risk Management, security awareness/phishing, security assessments, and security operations
    .
  • Help translate Corporate Security activities and technical security capabilities into compliance evidence and control outcomes.
  • Build and maintain strong relationships with control owners, Engineering, Product, IT, Security, Legal, Privacy, Finance, Sales, and business-unit stakeholders.
  • Act as a
    trusted advisor rather than simply a compliance reviewer
    , helping stakeholders understand the intent behind security and compliance requirements.
  • Influence stakeholders across the organization without relying on direct authority.
  • Understand competing business priorities and help balance security, compliance, operational efficiency, and business objectives.
Qualifications & Experience
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Risk Management, Business, or a related field.
  • 5+ years of experience
    in cybersecurity, GRC, security engineering, compliance, IT risk, audit, or a related discipline.
  • Demonstrated experience working with
    technical and security teams
    in a technology, SaaS, cloud, or enterprise environment.
  • Strong understanding of cybersecurity principles, security controls, risk management, and compliance frameworks.
  • Practical experience with one or more frameworks such as
    ISO 27001, SOC 2, NIST, PCI DSS, FedRAMP, CMMC, ISO 42001, ISO 27701, HIPAA, or similar standards
    .
  • Experience performing control assessments, risk assessments, security reviews, audit preparation, or technical compliance activities.
  • Experience working with security technologies or programs such as
    IAM/PAM, vulnerability management, cloud security, endpoint security, third-party risk, or security operations
    is highly desirable.
  • Ability to understand technical architecture, security controls, system…
Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary