Jobedly Post a Job

Senior Security Engineer, GRC

Temporal Technologies · United States
Full-timeGeneralSenior$180,000–$225,000/yr
Apply on Jobedly ⚡ One-click AI Apply

About the Senior Security Engineer Grc role

Senior Security Engineer Grc positions focus on delivering results in their domain. This page aggregates open Senior Security Engineer Grc roles and what employers typically expect.

### **Summary** Join our team as a **Senior Security Engineer, GRC**, where you'll be the primary owner of our customer-facing compliance program and a trusted partner throughout the enterprise sales cycle. In this role, you will manage the end-to-end lifecycle of security questionnaires, due diligence requests, and compliance reviews and automate parts of that process. You will ensure prospective and existing customers have full confidence in our security posture and you will work closely with Sales, Legal, and Product to represent our compliance program externally, while maintaining the internal rigor of our governance and risk frameworks. **What You'll Do** - Own the intake, prioritization, and completion of all inbound customer security questionnaires, RFPs, and due diligence requests including SIG, CAIQ, and custom enterprise questionnaires with a commitment to accuracy, thoroughness, and turnaround time. - Serve as the primary customer-facing representative for security and compliance, leading calls and meetings with enterprise customers, prospects, and their security or procurement teams. - Build and maintain a comprehensive, evergreen response library for common security and compliance questions, reducing duplication of effort and ensuring consistency across all customer engagements. - Build and maintain automations to continuously validate the organization's compliance posture across key frameworks including SOC2 Type II, ISO 27001, and HIPAA, coordinating evidence collection, managing external auditor relationships, and driving readiness for annual assessments. - Build dashboards and reporting pipelines that provide leadership with real-time visibility into compliance posture, open risks, and program health. - Design and automate the third-party risk assessment process, including vendor tiering logic, questionnaire workflows, and continuous monitoring for critical vendors. - Perform ongoing risk assessments and maintain a risk register that reflects the current threat and compliance landscape, escalating material findings to leadership with clear remediation recommendations. - Conduct third-party vendor risk assessments, including use case-specific risk analysis, ongoing tiering and monitoring, and implementation recommendations. - Author, maintain, and operationalize security policies and procedures; track employee acknowledgments and manage exceptions through to resolution. - Coordinate and participate in customer security review meetings, including onsite or virtual sessions with enterprise security, legal, and procurement stakeholders. - Collaborate cross-functionally with Engineering, Legal, and Product to gather documentation, validate control descriptions, and resolve compliance gaps surfaced through customer inquiries. **What You'll Bring** - 8+ years of experience in GRC, information security compliance, or a closely related field. - Deep, hands-on experience with at least two major compliance frameworks (SOC2, ISO 27001, HIPAA, PCI-DSS, or FedRAMP), including direct involvement in audits and assessments. - Proven track record managing high volumes of security questionnaires and enterprise due diligence requests, including SIG and CAIQ formats. - Strong understanding of the security program’s influence on company revenue and a partnership mindset with the Go To Market function. - Scripting and automation fluency (Python, Bash, or similar) and a track record of building tools, not just spreadsheets. - Strong customer-facing communication skills, you are equally comfortable presenting to a CISO, walking a procurement team through a control matrix, or discussing technical security controls with customer engineering leaders. - Solid understanding of risk management principles, with hands-on experience performing risk assessments and maintaining a risk register. - Ability to translate technical security controls into clear, business-appropriate language for non-technical audiences including customers, legal team…

Salary estimate

$180,000 – $225,000/yr
Provided by the employer.

Skills for this role

PythonGOSalesCommunicationLeadershipSecurityAutomation

Resume tips for Senior Security Engineer Grc applicants

Interview preparation

Prepare concrete STAR-format stories that show Senior Security Engineer Grc outcomes you drove.

Research the employer's product and recent news before the interview.

Be ready to explain how you'd approach a typical Senior Security Engineer Grc problem end to end.

Have thoughtful questions ready about the team, tools and success metrics.

About Temporal Technologies

Temporal Technologies is actively hiring on Jobedly. Explore their open roles and what it's like to work there.

Apply on Jobedly ⚡ One-click AI Apply

Similar jobs

Companies hiring for similar roles