More jobs:
Principal, GRC Automation and Cyber Risk
Job in
Seattle, King County, Washington, 98127, USA
Listed on 2026-06-12
Listing for:
F5 Networks, Inc.
Full Time
position Listed on 2026-06-12
Job specializations:
-
IT/Tech
Cybersecurity, Data Security
Job Description & How to Apply Below
Hybrid locations:
Seattle:
San Josetime type:
Full time posted on:
Posted Yesterday job requisition :
RP1037823
At F5, we strive to bring a better digital world to life. Our teams empower organizations across the globe to create, secure, and run applications that enhance how we experience our evolving digital world. We are passionate about cybersecurity, from protecting consumers from fraud to enabling companies to focus on innovation. Everything we do centers around people. That means we obsess over how to make the lives of our customers, and their customers, better.
And it means we prioritize a diverse F5 community where each individual can thrive.
The Principal, GRC Automation & Cyber Risk Quantification is a senior
** engineering and strategic leadership
** role responsible for designing, implementing, and scaling automated, data-driven cyber risk and GRC capabilities across the enterprise. This role blends deep cyber risk management expertise with
** hands-on software engineering**, GRC platform architecture, workflow automation,
** API development and systems integration**, and emerging AI-enabled and
** Agentic c
** apabilities to modernize how the organization manages risk, compliance, and governance orting to the VP, Cyber Governance, Risk & Compliance, this role serves as a force multiplier for the GRC organization, translating complex regulatory and risk frameworks into automated controls, continuous monitoring workflows, decision-ready dashboards, and audit-ready evidence. The principal is expected to
** write, review, and own production-quality code
** and partner closely with ERM, Engineering, IT, Legal, Privacy, Internal Audit, and Digital teams to embed risk intelligence directly into business and technology processes.##
** Key Objectives
*** Shift GRC from manual, point-in-time assessments to continuous, automated, and risk-informed execution by
** leveraging purpose-built engineering solutions, Python-based tooling, and Agentic workflows.
*** Enable executive and board-ready cyber risk insights grounded in quantitative and business-relevant data,
** supported by automated data pipelines and integrations.
*** Standardize and automate control mapping, testing, evidence collection, and risk reporting across frameworks and regulators
** through scalable API-driven architectures.
*** Act as the technical and architectural authority for Service Now IRM and adjacent GRC automation capabilities,
** including custom-developed integrations and Agentic automation agents.**##
** Primary Responsibilities**###
** 1. GRC Automation & Platform Architecture
*** Design, build, and evolve end-to-end GRC automation across risk, compliance, policy, and issue management domains —
** including writing and maintaining Python-based automation scripts, services, and tools.
*** Integrate GRC workflows with source systems (cloud platforms, vulnerability tools, IAM, SDLC, third-party systems)
** via RESTful APIs, webhooks, and event-driven integration patterns
** to reduce manual effort and improve data quality.
* ** Architect and maintain a systems integration layer
** connecting GRC platforms to enterprise data sources, enabling real-time risk signal ingestion and automated control validation.###
** 2. Cyber Risk Quantification & Decision Enablement
*** Partner with Cyber Risk leadership to operationalize quantitative and scenario-based risk analysis (e.g., FAIR-aligned methods).
* ** Engineer automated pipelines
** for ingesting threat, vulnerability, asset, and business context data to support risk-based prioritization,
** leveraging Python data processing libraries (e.g., pandas, Num Py) integration APIs, and Agentic work flows.
*** Enable financially grounded cyber risk outputs that inform: + Risk acceptance and investment decisions + Executive and board-level reporting + Program prioritization and roadmap planning###
** 3. Compliance Automation & Continuous Monitoring
*** Translate regulatory and framework requirements into automated, testable, and traceable controls,
** implementing these as code-driven workflows and API-integrated monitoring checks.
***…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
Search for further Jobs Here:
×