1

Grc Engineer Jobs (NOW HIRING)

Senior GRC Lead

Seattle, WA · On-site +1

$130K - $178K/yr

Engineering Engineering at Brex is about building systems that scale with speed and intention. Our ... As a Senior GRC Engineer, you will drive critical GRC processes that mitigate risk, keep us ...

Senior GRC Lead

San Francisco, CA · On-site +1

$134K - $185K/yr

Engineering Engineering at Brex is about building systems that scale with speed and intention. Our ... As a Senior GRC Engineer, you will drive critical GRC processes that mitigate risk, keep us ...

Senior GRC Lead

New York, NY · On-site +1

$125K - $171K/yr

Engineering Engineering at Brex is about building systems that scale with speed and intention. Our ... As a Senior GRC Engineer, you will drive critical GRC processes that mitigate risk, keep us ...

Sr. GRC Engineer (Government)

$117K - $160K/yr

We are seeking a Sr. GRC Engineer (Government) who is highly motivated, detail-oriented, and experienced with these compliance frameworks. The ideal candidate will have strong communication skills ...

Engineering Engineering at Brex is about building systems that scale with speed and intention. Our ... As a Senior GRC Engineer, you will drive critical GRC processes that mitigate risk, keep us ...

Engineering Engineering at Brex is about building systems that scale with speed and intention. Our ... As a Senior GRC Engineer, you will drive critical GRC processes that mitigate risk, keep us ...

Engineering Engineering at Brex is about building systems that scale with speed and intention. Our ... As a Senior GRC Engineer, you will drive critical GRC processes that mitigate risk, keep us ...

As a GRC Engineer, you'll be part of a cross-functional team whose mission is to lead IonQ on its journey to build the world's best quantum computers to solve the world's most complex problems.

next page

Showing results 1-20

Grc Engineer information

See salary details

$59.5K

$111.6K

$203K

How much do grc engineer jobs pay per year?

As of Jun 22, 2026, the average yearly pay for grc engineer in the United States is $111,632.00, according to ZipRecruiter salary data. Most workers in this role earn between $80,500.00 and $132,500.00 per year, depending on experience, location, and employer.

What are GRC Engineers?

GRC Engineers are professionals who specialize in Governance, Risk, and Compliance (GRC) within an organization’s information security and IT frameworks. They help ensure that a company’s policies and procedures meet regulatory requirements, manage risks, and align with business objectives. GRC Engineers often implement and maintain tools, conduct risk assessments, and ensure compliance through audits and reporting. Their role is critical in minimizing risks and protecting organizational assets from security threats.

What are the key skills and qualifications needed to thrive as a GRC Engineer, and why are they important?

To thrive as a GRC Engineer, you need a solid understanding of governance, risk management, and compliance frameworks, often supported by a degree in information security or a related field. Familiarity with GRC platforms (such as RSA Archer or ServiceNow GRC), risk assessment tools, and certifications like CISA or CISSP are highly valued. Strong analytical skills, attention to detail, and effective communication are crucial soft skills for collaborating across departments and translating complex requirements. These competencies ensure that organizations can effectively manage risk, maintain regulatory compliance, and safeguard critical information assets.

What engineers make $500,000?

Senior engineers in specialized fields such as software engineering, data engineering, or cybersecurity can earn $500,000 or more annually, especially with extensive experience, advanced skills, and in high-demand industries. Executive or leadership roles like engineering managers or directors may also reach this compensation level. Achieving this often requires advanced certifications, a strong track record, and working in competitive or high-paying markets.

What are some common challenges faced by GRC Engineers when implementing new compliance frameworks?

GRC Engineers often encounter challenges such as integrating new compliance requirements with existing IT systems, ensuring consistent documentation, and keeping up with evolving regulatory standards. Collaboration with various departments—like IT, legal, and operations—is essential to map processes accurately and address potential gaps. Proactive communication and a strong understanding of both technical and regulatory aspects help GRC Engineers overcome these hurdles and support organizational compliance effectively.

Is GRC high paying?

GRC (Governance, Risk, and Compliance) engineers typically earn competitive salaries due to their specialized skills in security frameworks, compliance standards, and risk management. Salaries vary based on experience, certifications, and location, but overall, GRC roles are considered well-paying within cybersecurity careers.

What is the difference between Grc Engineer vs Security Analyst?

AspectGrc EngineerSecurity Analyst
CertificationsISO 27001, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentPolicy development, compliance, risk managementMonitoring, incident response, threat analysis
Industry UsageCorporate governance, compliance teamsSecurity operations centers, IT departments

Grc Engineers focus on establishing and maintaining governance, risk, and compliance frameworks, ensuring organizations meet regulatory standards. Security Analysts primarily monitor security systems, analyze threats, and respond to incidents. While both roles require security certifications and work within the cybersecurity industry, Grc Engineers emphasize policy and compliance, whereas Security Analysts focus on threat detection and response.

What does a GRC engineer do?

A GRC engineer specializes in Governance, Risk, and Compliance (GRC) processes within an organization. They implement and manage security policies, conduct risk assessments, and ensure compliance with industry standards and regulations, often using tools like GRC software. Strong knowledge of cybersecurity, regulatory frameworks, and relevant certifications are essential for this role.

What jobs make $10,000 a month without a degree?

GRC (Governance, Risk, and Compliance) engineers typically require specialized knowledge and certifications rather than a traditional degree. High-paying roles in cybersecurity, sales, or entrepreneurship can also reach or exceed $10,000 monthly through experience, skills, and certifications like CISSP or cloud platform credentials. These positions often demand technical expertise, industry experience, and sometimes remote or flexible work environments.
More about Grc Engineer jobs
What cities are hiring for Grc Engineer jobs? Cities with the most Grc Engineer job openings:
What states have the most Grc Engineer jobs? States with the most job openings for Grc Engineer jobs include:
Infographic showing various Grc Engineer job openings in the United States as of June 2026, with employment types broken down into 43% Full Time, and 57% Contract. Highlights an 71% In-person, and 29% Remote job distribution, with an average salary of $111,632 per year, or $53.7 per hour.
Senior GRC Lead

Senior GRC Lead

Brex

Seattle, WA • On-site, Remote

$130K - $178K/yr

Other

Posted 14 days ago


Job description

Engineering

Engineering at Brex is about building systems that scale with speed and intention. Our teams span Software, Data, Security, and IT, and operate with high autonomy and deep collaboration. We tackle hard technical problems, own our outcomes, and push for excellence at every level - from architecture to deployment. It's an environment where engineering is a craft, and builders become leaders.

What you'll do

Brex's Governance, Risk, and Compliance function is at an exciting and pivotal point in our maturity journey and we're seeking a team member who can seamlessly bridge compliance expertise with technical execution. As a Senior GRC Engineer, you will drive critical GRC processes that mitigate risk, keep us compliant, and build trust with our customers and partners. You'll evolve the technical foundation of our Trust program by automating security controls, building integrations between security tools and GRC platforms, and creating scalable processes that enable Brex to maintain compliance efficiently as we expand into new markets. You'll work at the intersection of security, engineering, and compliance - translating regulatory requirements into technical solutions and building automation that eliminates manual toil.

You'll leverage your deep understanding of SOC 2, PCI DSS, ISO 27001, AI governance frameworks, and others to both design controls for emerging compliance requirements and mature existing programs through automation and continuous monitoring. You'll support Trust Assurance, Third Party Risk Management, and other Security Risk Management initiatives. Working with our Engineering, Infrastructure, and Product teams, you'll translate compliance frameworks into technical controls and build automated systems that help us achieve world-class security as Brex expands.

Your contributions will directly accelerate Brex's maturity. You'll design workflows using Tines, build integrations between security and GRC systems, and create dashboards for security metrics. You'll implement controls across the technology stack, support multiple audits (SOC 2, PCI DSS, SOX/ITGC, FINRA, ISO), and contribute to AI governance framework implementation (ISO 42001, NIST AI RMF, EU AI Act).

You'll have autonomy to build innovative solutions, collaborating cross-functionally to implement controls that enable growth while communicating technical concepts effectively across the organization.

Where you'll work

This role will be based in our Seattle office. We are a hybrid environment that combines the energy and connections of being in the office with the benefits and flexibility of working from home. We currently require a minimum of three coordinated days in the office per week, Monday, Wednesday and Thursday. As a perk, we also have up to four weeks per year of fully remote work!

Responsibilities

  • Manage and scale IT infrastructure, services and tooling
  • Work with a diverse group of  IT partners to optimize our provided services
  • Implement new services in support of Information Technologies vision
  • Scale our services by implementing configuration as code via Terraform providers or APIs
  • Operationalize and upskill IT and its partners by producing documentation and leading training sessions
  • Evangelize best practices both internally and externally facing

Requirements

  • 5+ years of experience in GRC, IT Governance, or Security Engineering with a strong track record of automating manual compliance workflows.
  • Deep experience with security frameworks such as SOC 2, PCI DSS, ISO 27001, and NIST CSF, specifically within cloud-native environments.
  • Technical proficiency in Python (or similar scripting languages) and experience building integrations using APIs to connect security tools with GRC systems. You can read code, design integrations, and understand technical implementations.
  • Builder mindset with the ability to design and implement automated control testing, continuous monitoring, and data-driven security metrics. You see manual processes and immediately think about how to automate them.
  • Exceptional cross-functional collaboration and communication skills. You can translate complex compliance requirements into technical specifications that engineering teams can actually implement and influence stakeholders across technical and non-technical domains.
  • Strong systems thinking. You have the ability to design scalable GRC architectures that grow with the company, rather than just solving for the immediate audit.
  • Bias for action. You're a self-starter who ships solutions quickly and iterates based on feedback. 

Bonus points

  • Previous experience in Fintech or banking environments navigating complex regulatory landscapes.
  • Hands-on experience with Tines or other SOAR platforms to automate security operations.
  • Familiarity with AI/ML governance frameworks (NIST AI RMF, ISO 42001) or securing agentic systems.
  • Deep knowledge of Cloud Security (AWS/GCP), infrastructure-as-code (Terraform), or DevSecOps practices.
  • Relevant industry certifications such as CISSP, CISA, or CCSP.
  • Experience building metrics dashboards for security visualization and reporting.
  • Active contributions to the GRC or Security community through open-source projects or public research.

Compensation

The expected salary range for this role is $153,600 - $192,000. However, the starting base pay will depend on a number of factors including the candidate's location, skills, experience, market demands, and internal pay parity. Depending on the position offered, equity and other forms of compensation may be provided as part of a total compensation package.

Brex LLC is a wholly owned subsidiary of Capital One, N.A.