1

Grc Engineer Jobs in Oregon (NOW HIRING)

Senior Risk & Compliance Engineer - Data

OR · Remote

$105K - $143K/yr

Overview Instacart's Governance, Risk and Compliance (GRC) team sits at the intersection of security, data, and business impact - and we're building an automated, engineering-grade risk program that ...

Partner with Security Architecture and GRC to translate security and compliance requirements into ... Support and mentor engineering teams on best practices for infrastructure, automation, and platform ...

Senior DevSecOps Engineer

Portland, OR · On-site

$121K - $166K/yr

Senior DevSecOps Engineer (Remote-based role that requires US-citizenship) About us Hyperproof is on a mission to transform the Governance, Risk, and Compliance (GRC) world with a powerful new ...

Senior DevSecOps Engineer

Portland, OR · Remote

$121K - $166K/yr

Senior DevSecOps Engineer (Remote-based role that requires US-citizenship) About us Hyperproof is on a mission to transform the Governance, Risk, and Compliance (GRC) world with a powerful new ...

... engineering, operations, legal, and business teams. Qualifications * 7-10 years of experience in information security, risk, GRC, or compliance operations, with meaningful ownership and a preference ...

Engage vendors, Infrastructure, IT, GRC, Cloud, and Application Security teams as required to ... Mentor engineers across Information Security to drive security controls and risk remediation

CMMC Compliance Analyst

OR · Remote

$105K - $141K/yr

Leverage GRC tools to manage controls, track compliance status, and maintain evidence * Collaborate with system owners, engineers, and ISSOs to ensure proper control implementation and sustainment

The ServiceNow Developer is part of the Enterprise Solutions Team and plays a crucial role in ... Expertise in GRC/IRM is highly preferred * College Degree or equivalent work experience preferred ...

Senior Account Executive

$125K - $150K/yr

Partner with solutions engineers to execute tailored product demonstrations that propel deals ... CMMC, GRC). * The ideal candidate will have strong presentation and communication skills, and a ...

The ServiceNow Developer is part of the Enterprise Solutions Team and plays a crucial role in ... Expertise in GRC/IRM is highly preferred * College Degree or equivalent work experience preferred ...

Senior Account Executive

$125K - $150K/yr

Partner with solutions engineers to execute tailored product demonstrations that propel deals ... CMMC, GRC). * The ideal candidate will have strong presentation and communication skills, and a ...

Staff IT Security

OR · On-site +1

Clear communication across engineering, security, and business stakeholders * High ownership ... Familiarity with GRC platforms and compliance automation tooling * Experience supporting CMMC Level ...

... risks in GRC tool. Present them to Director IT Security and management. * Amalgamate industry best practices and organization specifics into security solutions. * Assist developers with the ...

Showing results 21-40

Grc Engineer information

See Oregon salary details

$62.9K

$118K

$214.6K

How much do grc engineer jobs pay per year?

As of Aug 8, 2026, the average yearly pay for grc engineer in Oregon is $118,027.00, according to ZipRecruiter salary data. Most workers in this role earn between $85,100.00 and $140,100.00 per year, depending on experience, location, and employer.

What is a GRC engineer?

GRC Engineers are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization’s information security and IT frameworks. They help ensure that a company’s policies and procedures meet regulatory requirements, manage risks, and align with business objectives. GRC Engineers often implement and maintain tools, conduct risk assessments, and ensure compliance through audits and reporting. Their role is critical in minimizing risks and protecting organizational assets from security threats.

What are the key skills and qualifications needed to thrive as a GRC engineer?

To thrive as a GRC Engineer, you need a solid understanding of governance, risk management, and compliance frameworks, often supported by a degree in information security or a related field. Familiarity with GRC platforms (such as RSA Archer or ServiceNow GRC), risk assessment tools, and certifications like CISA or CISSP are highly valued. Strong analytical skills, attention to detail, and effective communication are crucial soft skills for collaborating across departments and translating complex requirements. These competencies ensure that organizations can effectively manage risk, maintain regulatory compliance, and safeguard critical information assets.

What are some common challenges faced by GRC engineers when implementing new compliance frameworks?

GRC Engineers often encounter challenges such as integrating new compliance requirements with existing IT systems, ensuring consistent documentation, and keeping up with evolving regulatory standards. Collaboration with various departments—like IT, legal, and operations—is essential to map processes accurately and address potential gaps. Proactive communication and a strong understanding of both technical and regulatory aspects help GRC Engineers overcome these hurdles and support organizational compliance effectively.

How much do GRC engineers make?

GRC (Governance, Risk, and Compliance) engineers typically earn between $80,000 and $130,000 annually, depending on experience, certifications, and location. Senior roles or those with specialized skills in cybersecurity tools and frameworks can earn higher salaries, often exceeding $150,000.

What is the difference between Grc Engineer vs Security Analyst?

AspectGrc EngineerSecurity Analyst
CertificationsISO 27001, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentPolicy development, compliance, risk managementMonitoring, incident response, threat analysis
Industry UsageCorporate governance, compliance teamsSecurity operations centers, IT departments

Grc Engineers focus on establishing and maintaining governance, risk, and compliance frameworks, ensuring organizations meet regulatory standards. Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require security certifications and work within the cybersecurity industry, Grc Engineers emphasize policy and compliance, whereas Security Analysts focus on threat detection and response.

Is GRC engineer an entry-level job?

A GRC (Governance, Risk, and Compliance) engineer is typically an intermediate to senior role that requires relevant experience and knowledge of security frameworks, compliance standards, and risk management tools. Entry-level positions in GRC may be available but usually require foundational skills, certifications, or internships to qualify for more advanced roles.
What job categories do people searching Grc Engineer jobs in Oregon look for? The top searched job categories for Grc Engineer jobs in Oregon are:
What cities in Oregon are hiring for Grc Engineer jobs? Cities in Oregon with the most Grc Engineer job openings:
Infographic showing various Grc Engineer job openings in Oregon as of August 2026, with employment types broken down into 92% Full Time, 2% Part Time, and 6% Contract. Highlights an 87% Physical, 4% Hybrid, and 9% Remote job distribution, with an average salary of $118,027 per year, or $56.7 per hour.

Senior Risk & Compliance Engineer - Data

Instacart

OR • Remote

$105K - $143K/yr

Full-time

Posted 9 days ago


Instacart rating

7.1

Company rating: 7.1 out of 10

Based on 31 frontline employees who took The Breakroom Quiz

27th of 64 rated delivery companies


Job description

Overview

Instacart's Governance, Risk and Compliance (GRC) team sits at the intersection of security, data, and business impact - and we're building an automated, engineering-grade risk program that produces real-time risk scoring, quantified exposure models, and ROI-linked investment decisions that reach the CISO, executive leadership, and the board.

We're looking for a Senior Risk & Compliance Engineer to help us get there. This is an engineering role with a data science expertise needed. You'll write production-level code, build signal ingestion pipelines, and develop probabilistic risk models that give our security organization a quantified, confidence-backed view of our risk posture - all in service of protecting Instacart's customers and products at scale.

If you're energized by the challenge of transforming a manual, reactive discipline into a data-driven, automated program - providing value  across security, engineering, and executive stakeholders while doing it - this role was built for you.

About the Job
  • Build automated signal ingestion pipelines that pull real-time data from security tooling - normalizing, enriching, and scoring raw findings into actionable, ranked risk intelligence that drives remediation decisions across the organization
  • Develop probabilistic risk models that express security exposure as probability distributions, giving leadership a quantified, confidence-backed view of breach likelihood and expected losses - connecting model outputs directly to investment decisions and board-level reporting
  • Identify systemic choke points across the attack surface - high-leverage remediation paths where a single fix eliminates risk at scale - and prioritize them by expected impact to maximize the efficiency of our security program
  • Build dashboards and data-driven insights that cascade risk visibility across security, engineering, and executive stakeholders, translating complex model outputs into language that resonates at every level of the organization
  • Support risk quantification efforts that express security exposure in financial terms, connecting model outputs to investment decisions and board-level reporting
About You

Minimum Qualifications

  • 5+ years of experience in data engineering, with demonstrated ability to write production-level code in Python and SQL (PostgreSQL, Presto, or SparkSQL) - you write production level code for internal tools and infrastructure
  • 3+ years of experience building and deploying machine learning or probabilistic models (e.g., Bayesian models) in a production environment
  • Experience building data pipelines that ingest real-time or near-real-time data across multiple formats, handling both stream and batch processing at scale
  • Experience with data modeling for classification, normalization, and risk or anomaly detection signal development
  • Experience developing metrics that inform security and business decisions

Preferred Qualifications

  • Familiarity with security risk concepts including threat intelligence enrichment pipelines, EPSS, or CISA KEV
  • Familiarity with quantitative risk frameworks such as FAIR
  • Exposure to security frameworks such as NIST CSF, SOC 2 as context for what controls the data is measuring
  • Demonstrated ability to translate risk model outputs into executive or board-level narratives
  • A genuine passion for building systems that protect customers and products, and a track record of operating effectively in fast-paced, ambiguous environments where the program is still being shaped

#LI-Remote


What Instacart employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Instacart logo

About Instacart

Sourced by ZipRecruiter

Instacart, based in San Francisco, CA, US, operates within the retail industry, specifically grocery delivery and pick-up service. It is recognized as a pioneer in this field, delivering fresh groceries from local stores directly to customers' doors. The company, which launched its services in 2012, continues to pioneer change in the online grocery shopping sector through its commitment to cutting-edge technology, new business ideas, and dedicated service.

Industry

Technology, communication and media

Company size

10,000+ Employees

Headquarters location

San Francisco, CA, US

Year founded

2012