GRC automation & tooling (e.g. compliance automation platforms, API integrations, scripted evidence ... Serve as a trusted advisor to Engineering and Product teams, embedding compliance-by-design into ...
GRC automation & tooling (e.g. compliance automation platforms, API integrations, scripted evidence ... Serve as a trusted advisor to Engineering and Product teams, embedding compliance-by-design into ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
SAP Security and GRC Manager / Engineering Manager II Our Deloitte Cyber team helps organizations address cybersecurity challenges across complex technology environments. Join the team to deliver ...
IRM GRC ServiceNow Developer Senior
Englewood, CO · On-site
$53.25 - $73.25/hr
Job Title: IRM GRC ServiceNow Developer Senior Location: Englewood, CO Type: Contract To Hire Compensation: 130-160K Contractor Work Model: On-site Security Clearance: Clearable for a secret ...
Quick apply
IRM GRC ServiceNow Developer Senior
Englewood, CO · On-site
$53.25 - $73.25/hr
Job Title: IRM GRC ServiceNow Developer Senior Location: Englewood, CO Type: Contract To Hire Compensation: 130-160K Contractor Work Model: On-site Security Clearance: Clearable for a secret ...
IRM GRC ServiceNow Developer Senior
Englewood, CO · On-site
$53.25 - $73.25/hr
Job Title: IRM GRC ServiceNow Developer Senior Location: Englewood, CO Type: Contract To Hire Compensation: 130-160K Contractor Work Model: On-site Security Clearance: Clearable for a secret ...
Quick apply
IRM GRC ServiceNow Developer Senior
Englewood, CO · On-site
$53.25 - $73.25/hr
Job Title: IRM GRC ServiceNow Developer Senior Location: Englewood, CO Type: Contract To Hire Compensation: 130-160K Contractor Work Model: On-site Security Clearance: Clearable for a secret ...
IRM GRC ServiceNow Developer Senior
Englewood, CO · On-site
$53.25 - $73.25/hr
Job Title: IRM GRC ServiceNow Developer Senior Location: Englewood, CO Type: Contract To Hire Compensation: 130-160K Contractor Work Model: On-site Security Clearance: Clearable for a secret ...
Quick apply
IRM GRC ServiceNow Developer Senior
Englewood, CO · On-site
$53.25 - $73.25/hr
Job Title: IRM GRC ServiceNow Developer Senior Location: Englewood, CO Type: Contract To Hire Compensation: 130-160K Contractor Work Model: On-site Security Clearance: Clearable for a secret ...
IRM GRC ServiceNow Developer Senior
Englewood, CO · On-site
$53.25 - $73.25/hr
Job Title: IRM GRC ServiceNow Developer Senior Location: Englewood, CO Type: Contract To Hire Compensation: 130-160K Contractor Work Model: On-site Security Clearance: Clearable for a secret ...
Quick apply
IRM GRC ServiceNow Developer Senior
Englewood, CO · On-site
$53.25 - $73.25/hr
Job Title: IRM GRC ServiceNow Developer Senior Location: Englewood, CO Type: Contract To Hire Compensation: 130-160K Contractor Work Model: On-site Security Clearance: Clearable for a secret ...
Manager, Cybersecurity GRC, Global
$114K - $154K/yr
The Manager, Cybersecurity GRC supports the governance, risk, and compliance (GRC) function to ... Partnering cross-functionally across IT, Engineering, Legal, and other business units, the manager ...
Manager, Cybersecurity GRC, Global
$114K - $154K/yr
The Manager, Cybersecurity GRC supports the governance, risk, and compliance (GRC) function to ... Partnering cross-functionally across IT, Engineering, Legal, and other business units, the manager ...
Manager, Cybersecurity GRC, Global
Denver, CO · On-site
$114K - $154K/yr
The Manager, Cybersecurity GRC supports the governance, risk, and compliance (GRC) function to ... Partnering cross-functionally across IT, Engineering, Legal, and other business units, the manager ...
Manager, Cybersecurity GRC, Global
Denver, CO · On-site
$114K - $154K/yr
The Manager, Cybersecurity GRC supports the governance, risk, and compliance (GRC) function to ... Partnering cross-functionally across IT, Engineering, Legal, and other business units, the manager ...
GRC Analyst II
Colorado Springs, CO · On-site
$73K - $92K/yr
The Governance, Risk, and Compliance (GRC) Analyst II configures, implements, and manages security ... From engineers and product managers to sales teams, marketers, and skilled manufacturing ...
GRC Analyst II
Colorado Springs, CO · On-site
$73K - $92K/yr
The Governance, Risk, and Compliance (GRC) Analyst II configures, implements, and manages security ... From engineers and product managers to sales teams, marketers, and skilled manufacturing ...
Analyst-Cyber GRC, Sr.
Lakewood, CO · On-site
$99K - $128K/yr
The Senior Analyst, Cyber GRC supports the continued improvement of Tallgrass Energy ... Engineering, and business stakeholders on contract reviews, obligation mapping, risk assessments ...
Analyst-Cyber GRC, Sr.
Lakewood, CO · On-site
$99K - $128K/yr
The Senior Analyst, Cyber GRC supports the continued improvement of Tallgrass Energy ... Engineering, and business stakeholders on contract reviews, obligation mapping, risk assessments ...
Analyst-Cyber GRC, Sr.
Lakewood, CO · On-site
$100K - $129K/yr
The Senior Analyst, Cyber GRC supports the continued improvement of Tallgrass Energy ... Engineering, and business stakeholders on contract reviews, obligation mapping, risk assessments ...
Analyst-Cyber GRC, Sr.
Lakewood, CO · On-site
$100K - $129K/yr
The Senior Analyst, Cyber GRC supports the continued improvement of Tallgrass Energy ... Engineering, and business stakeholders on contract reviews, obligation mapping, risk assessments ...
We are looking to fill a position for Information Security Engineer with GRC experience in Denver CO. This is a Risk and Compliance: Governance, Risk & Compliance (GRC) position Qualifications
We are looking to fill a position for Information Security Engineer with GRC experience in Denver CO. This is a Risk and Compliance: Governance, Risk & Compliance (GRC) position Qualifications
We are looking to fill a position for Information Security Engineer with GRC experience in Denver CO. Qualifications Qualification Audit Governance Risk and Compliance It Security Risk Management ...
We are looking to fill a position for Information Security Engineer with GRC experience in Denver CO. Qualifications Qualification Audit Governance Risk and Compliance It Security Risk Management ...
Sr. Principal, GRC
Boulder, CO · On-site
$196K - $287K/yr
... in Computer Engineering, Computer Science, Management Information Systems or related field plus ... GRC-related occupation. 7 years (84 months) of experience in EMEA cybersecurity standards and ...
Sr. Principal, GRC
Boulder, CO · On-site
$196K - $287K/yr
... in Computer Engineering, Computer Science, Management Information Systems or related field plus ... GRC-related occupation. 7 years (84 months) of experience in EMEA cybersecurity standards and ...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Management Specialist Join Deloitte's Enterprise Security team and help clients strengthen SAP security ...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Manage...
Cyber SAP Security and GRC Access & Process Control Senior Consultant / Senior Engineering Management Specialist Join Deloitte's Enterprise Security team and help clients strengthen SAP security ...
Cyber Security Engineer III
Denver, CO · On-site
Cyber Security Engineer III The Cyber Security Engineer III supports Reclamation IT systems and ... Bison GRC tool (and other designated repositories), and communicates clearly in English using ...
Cyber Security Engineer III
Denver, CO · On-site
Cyber Security Engineer III The Cyber Security Engineer III supports Reclamation IT systems and ... Bison GRC tool (and other designated repositories), and communicates clearly in English using ...
Cyber Security Engineer III
Denver, CO · On-site
Cyber Security Engineer III The Cyber Security Engineer III supports Reclamation IT systems and ... Bison GRC tool (and other designated repositories), and communicates clearly in English using ...
Cyber Security Engineer III
Denver, CO · On-site
Cyber Security Engineer III The Cyber Security Engineer III supports Reclamation IT systems and ... Bison GRC tool (and other designated repositories), and communicates clearly in English using ...
Analyst-Cyber GRC, Sr.
$100K - $129K/yr
... Engineering, and business stakeholders on contract reviews, obligation mapping, risk assessments ... Familiarity with GRC tools, third-party risk management platforms, or similar systems.
Analyst-Cyber GRC, Sr.
$100K - $129K/yr
... Engineering, and business stakeholders on contract reviews, obligation mapping, risk assessments ... Familiarity with GRC tools, third-party risk management platforms, or similar systems.
This role is ideal for engineers who can bridge modern data engineering and software development with Governance, Risk, and Compliance (GRC) expectations in regulated enterprise environments.
This role is ideal for engineers who can bridge modern data engineering and software development with Governance, Risk, and Compliance (GRC) expectations in regulated enterprise environments.
This role is ideal for engineers who can bridge modern data engineering and software development with Governance, Risk, and Compliance (GRC) expectations in regulated enterprise environments.
This role is ideal for engineers who can bridge modern data engineering and software development with Governance, Risk, and Compliance (GRC) expectations in regulated enterprise environments.
Grc Engineer information
See Colorado salary details
$62.6K - $76.3K
14% of jobs
$84.5K is the 25th percentile. Wages below this are outliers.
$76.3K - $90K
19% of jobs
$90K - $103.7K
12% of jobs
The median wage is $108.4K / yr.
$103.7K - $117.4K
17% of jobs
$117.4K - $131.2K
12% of jobs
$133.5K is the 75th percentile. Wages above this are outliers.
$131.2K - $144.9K
14% of jobs
$144.9K - $158.6K
7% of jobs
$158.6K - $172.3K
3% of jobs
$172.3K - $186K
0% of jobs
$186K - $199.7K
1% of jobs
$199.7K - $213.5K
2% of jobs
$62.6K
$117.4K
$213.5K
How much do grc engineer jobs pay per year?
What is a GRC engineer?
What are the key skills and qualifications needed to thrive as a GRC engineer?
What are some common challenges faced by GRC engineers when implementing new compliance frameworks?
How much do GRC engineers make?
What is the difference between Grc Engineer vs Security Analyst?
| Aspect | Grc Engineer | Security Analyst |
|---|---|---|
| Certifications | ISO 27001, CISSP, CISA | CISSP, CompTIA Security+ |
| Work Environment | Policy development, compliance, risk management | Monitoring, incident response, threat analysis |
| Industry Usage | Corporate governance, compliance teams | Security operations centers, IT departments |
Grc Engineers focus on establishing and maintaining governance, risk, and compliance frameworks, ensuring organizations meet regulatory standards. Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require security certifications and work within the cybersecurity industry, Grc Engineers emphasize policy and compliance, whereas Security Analysts focus on threat detection and response.
Is GRC engineer an entry-level job?

Job description
At Klaviyo, we're on a mission to empower creators to own their destiny. Our AI-first B2C CRM platform empowers 176,000+ brands in 80+ countries to cultivate relationships with hundreds of millions of consumers. We love solving hard problems and look for people who specialize in certain areas while being passionate about building, owning, and scaling solutions end-to-end, overcoming any obstacle in their way. We are a team of ambitious, customer-obsessed peers who are insatiably curious and meticulous in our craft. We push each other to grow beyond our comfort zone, learn new things, and work hard to ensure each day is better than the last.
An exciting opportunity within the Security Trust and Risk (STAR) team whose mission is to ensure the safety and security of our customers, partners and Klaviyos as well as deliver best in class technology solutions, infrastructure and services. This is achieved by providing a robust and secure technology foundation to do great work. We solve problems using technology, embrace automation and AI, and support Klaviyo's continued scalability and sustainable employee growth in a rapidly evolving environment.
About this role
We're seeking a highly motivated Senior Security Compliance Engineer to serve as a trusted advisor and hands-on engineer within our Security Trust & Compliance team. You'll design, build, and optimize automated solutions that streamline compliance operations, strengthen continuous control monitoring, and integrate GRC tooling across Klaviyo's systems. You'll partner closely with cross-functional teams, such as Engineering, IT, Security, Legal, Internal Audit, and more. You'll help Klaviyo scale securely, sustainably deliver more value for our customers, and bolster their trust in us.
As a Senior Security Compliance Engineer, you'll focus primarily on:
- Compliance operations & audits (for SOC 2, ISO 27001, ISO 27017, PCI, and SOX ITGCs)
- Continuous control monitoring
- GRC automation & tooling (e.g. compliance automation platforms, API integrations, scripted evidence collection and control validation)
How you'll have an impact
- Design, develop, and maintain automated compliance workflows using scripting, APIs, and GRC tooling to streamline evidence collection, control validation, and audit readiness across SOC 2, ISO 27001, ISO 27017, PCI, and SOX ITGCs
- Build and improve continuous control monitoring capabilities that provide real-time visibility into Klaviyo's compliance posture and proactively surface control gaps
- Partner with the Security Risk team to streamline end-to-end Security Compliance-to-Risk operations, ensuring compliance findings and control observations flow efficiently into risk management workflows
- Implement and customize compliance automation platforms (e.g. Drata, Vanta, Anecdotes) and integrate them with Klaviyo's internal systems, CI/CD pipelines, and cloud infrastructure
- Serve as a trusted advisor to Engineering and Product teams, embedding compliance-by-design into architecture decisions and helping teams understand and meet security control requirements
- Identify and drive high-value opportunities to use AI and automation to eliminate toil, improve compliance operations, and scale our programs alongside Klaviyo's growth
Who you are
- 3-5 years of experience in security compliance, GRC engineering, security engineering, or a closely related field with a strong emphasis on automation and scalable processes
- Understanding of modern cloud-native web application architectures and related security best practices, especially in the context of AWS, Kubernetes, and AI
- Experience implementing and operating Compliance Automation platforms, such as Drata, Vanta, Anecdotes, HyperProof, etc.
- Hands-on experience executing compliance programs for SOC 2, ISO 27001, ISO 27017, PCI, and/or SOX ITGCs
- Proficiency in one or more programming/scripting languages (e.g. Python, Go, SQL) with hands-on experience building automation for compliance workflows, integrating REST APIs, and working with GRC tooling
- Experience applying GRC Engineering principles and values in practice, especially with regard to automation, systems + design thinking, and threat-informed GRC
Everyone on our team must have
- A strong bias toward evidence, logic, math, and reason when communicating risk (instead of fear, uncertainty, and doubt)
- A strong bias toward "guardrails, not gates" and "paved security roads" philosophies (instead of rigid "centralized command-and-control" processes and operating styles)
- Excellent ability to plan, prioritize, and deliver results cross-functionally and in a timely fashion
- Proficiency discussing complex, nuanced topics with technical & non-technical audiences alike, especially software engineers
- Strong alignment with Klaviyo's core values
Ideally, you may also have any of the following:
- Experience implementing Identity Governance tools and processes, such as for user access reviews (UARs) and just-in-time access (JITA)
- Experience working in security operations, security engineering, and/or security architecture roles
- Experience with additional compliance frameworks such as ISO 27018, HIPAA, GDPR, CCPA, or NIS2
About Klaviyo
Sourced by ZipRecruiter
Industry
Marketing
Company size
1,001 - 5,000 Employees
Headquarters location
Boston, MA, US
Year founded
2012