2

Remote Governance Risk Compliance Jobs in Seattle, WA

Remote {#LI-Remote} This role is contributing to the Country Trade Compliance group in the United ... Governance & Internal Controls * Monitor compliance performance through Annual Trade Reviews ...

Engineer RQ00904

Edmonds, WA ยท On-site +1

$100 - $140/hr

Edmonds, BC (preferred) | Fully Remote Option Available Organization: BC Hydro Duration: 12 months ... Assurance & Governance Conduct compliance assessments, control reviews, and testing activities.

... governance, employment, commercial contracts, privacy, enterprise compliance and risk. You will ... Remote What You'll Do * Legal Operating Model & Outside Counsel Spend: Lead a structured review of ...

New

next page

Showing results 1-20

Remote Governance Risk Compliance information

See Seattle, WA salary details

$112.7K

$218.2K

$437K

How much do remote governance risk compliance jobs pay per year?

As of Aug 31, 2026, the average yearly pay for remote governance risk compliance in Seattle, WA is $218,231.00, according to ZipRecruiter salary data. Most workers in this role earn between $191,800.00 and $216,800.00 per year, depending on experience, location, and employer.

What is a remote Governance Risk Compliance (GRC) professional?

A Remote Governance Risk Compliance (GRC) professional is responsible for ensuring that an organization adheres to legal, regulatory, and internal policies related to risk management and corporate governance, all while working from a remote location. They assess risks, implement compliance programs, and develop policies that help prevent violations and mitigate risks. These professionals use digital tools to monitor compliance, conduct audits, and report findings to management or regulatory bodies, ensuring that the organization operates ethically and within the law, regardless of where they are physically located.

What are the key skills and qualifications needed to thrive as a remote Governance Risk Compliance (GRC) professional?

To succeed as a Remote Governance Risk Compliance professional, you need a strong understanding of regulatory frameworks, risk management principles, and compliance standards, often backed by a relevant degree and certifications such as CISA, CISSP, or CRISC. Familiarity with GRC platforms (like RSA Archer or LogicGate), data analytics tools, and documentation systems is crucial for effective monitoring and reporting. Outstanding analytical thinking, attention to detail, and clear communication set top candidates apart in remote environments. These competencies ensure regulatory adherence, minimize organizational risks, and maintain a robust compliance posture even from a distance.

What are some common challenges faced by professionals in remote Governance Risk Compliance (GRC) roles, and how can they be effectively managed?

One common challenge in remote GRC roles is maintaining clear communication and coordination with cross-functional teams, as GRC professionals often work with IT, legal, and operations departments. Staying updated on regulatory changes and ensuring timely compliance across distributed teams can also be complex. To manage these challenges, it's important to leverage collaboration tools, establish regular check-ins, and use centralized documentation systems. Building strong virtual relationships and setting clear expectations with stakeholders can further support effective risk management and compliance.

Can remote governance risk compliance jobs be remote?

Remote governance risk compliance jobs are commonly available, especially as many organizations adopt flexible work arrangements. These roles often require skills in risk management, compliance frameworks, and familiarity with remote collaboration tools, making remote work feasible for qualified candidates.

How to get into remote governance risk compliance?

To enter remote governance risk compliance roles, candidates typically need a bachelor's degree in fields like business, law, or cybersecurity, along with knowledge of regulatory frameworks and risk management practices. Gaining certifications such as Certified in Risk and Information Systems Control (CRISC) or Governance, Risk, and Compliance (GRC) certifications can enhance prospects. Strong analytical skills, familiarity with compliance tools, and experience working remotely are also valuable for success in this field.

Is remote governance risk compliance a good career?

Remote governance risk compliance is a growing field that involves ensuring organizations adhere to regulations and manage risks effectively, often requiring knowledge of compliance frameworks and risk management tools. It offers opportunities for remote work, career advancement, and specialization in areas like cybersecurity and data privacy. The role typically requires relevant certifications and strong analytical skills.

What are the most commonly searched types of Governance Risk Compliance jobs in Seattle, WA?

The most popular types of Governance Risk Compliance jobs in Seattle, WA are:

What are popular job titles related to Remote Governance Risk Compliance jobs in Seattle, WA?

For Remote Governance Risk Compliance jobs in Seattle, WA, the most frequently searched job titles are:

What job categories do people searching Remote Governance Risk Compliance jobs in Seattle, WA look for?

The top searched job categories for Remote Governance Risk Compliance jobs in Seattle, WA are:

What cities near Seattle, WA are hiring for Remote Governance Risk Compliance jobs?

Cities near Seattle, WA with the most Remote Governance Risk Compliance job openings:

Infographic showing various Remote Governance Risk Compliance job openings in Seattle, WA as of August 2026, with employment types broken down into 1% As Needed, 83% Full Time, 12% Part Time, and 4% Contract. Highlights an 93% Physical, 2% Hybrid, and 5% Remote job distribution, with an average salary of $218,231 per year, or $104.9 per hour.

Engineering Manager - Security Engineering

Aircall.io, Inc.

Seattle, WA โ€ข Remote

Full-time

Re-posted 8 days ago


Job description

Aircall is a unicorn, AI-powered customer communications platform used by 22,000+ companies worldwide to drive revenue, resolve issues faster, and scale customer-facing teams. We're redefining customer communications by bringing voice, SMS, WhatsApp, and AI together into one seamless workspace.

Our momentum comes from a simple idea: help teams work smarter, not harder. Aircall's AI Voice Agent automates routine calls, AI Assist streamlines post-call work, and AI Assist Pro delivers real-time guidance so people can do their best work. The result is higher revenue, faster resolutions, and teams that scale with confidence.

Aircall is headquartered in Paris, our European HQ, with a strong North American presence anchored in Seattle, our North American HQ, and teams across Madrid, London, Berlin, San Francisco, New York City, Sydney, and Mexico City. We've built a product customers love and a business that's scaling quickly, backed by world-class investors and driven by rapid AI innovation across multiple product lines.

At Aircall, you'll join a company in motion. We're ambitious, product-driven, and execution-focused, with visible impact, fast decisions, and real growth.

How we work at Aircall: We're customer-obsessed, data-driven, and focused on delivering meaningful outcomes. We value ownership, continuous learning, and thoughtful speed. If you thrive in a collaborative, fast-moving environment where trust and impact matter, you'll feel at home here.

We are looking for a seasoned Engineering Manager to lead Aircall's Security Engineering organisation. This is a high-impact leadership role spanning four pillars: Product Security, Infrastructure Security, Detection & Response, and Governance, Risk & Compliance (GRC). You will grow an established team of security engineers, set the technical direction, and partner closely with Engineering, Product, Legal, IT and Finance to embed security deeply across the company. You'll scale the team through high impact AI engineering across all 4 pillars.

You will be both a skilled people manager and a credible technical leader — someone who can roll up their sleeves when needed but who ultimately scales their impact through their team. You bring empathy, clear communication, and a bias for pragmatic security outcomes over security theatre.

Scope of Responsibility:
Product Security
  • Own the Secure Software Development Lifecycle (SSDLC) from threat modelling through to production deployment.
    Secure Agentic development practices by automating threat modeling, code reviews, internal pentesting and vulnerability remediation by building in-house security AI agents.
  • Partner with engineering to embed security reviews, static analysis (SAST), dependency scanning (SCA), and secrets detection into CI/CD pipelines.
  • Lead the Aircall Bug Bounty and Vulnerability Disclosure Program (VDP), triaging and remediating reports with engineering teams.
  • Drive regular penetration testing cycles for web, mobile, and API surfaces; oversee remediation tracking.
  • Champion a developer-centric security culture through security champions, training, and tooling that makes the secure path the easy path.

Infrastructure Security

  • Define and maintain the security architecture of Aircall's cloud infrastructure (AWS), with a strong emphasis on zero-trust, least privilege, and defence in depth.
  • Own, maintain and expand security observability through CSPM, CNAPP and CWPP tools like Wiz.
  • Enable agentic auto-remediations for security vulnerabilities.
  • Own network segmentation, secrets management, certificate lifecycle, identity & access management (IAM), and workload isolation, and secure hosting of internal AI applications
  • Lead infrastructure hardening programs: CIS benchmarks, container security, Kubernetes policy enforcement (OPA), and immutable infrastructure practices.
  • Manage the security posture of third-party SaaS tools and vendor risk assessments.
  • Collaborate with Infrastructure engineering and Product Engineering on shared security responsibilities and runbooks.

Detection & Response

  • Build and mature Aircall's threat detection capability — SIEM tuning, alert triage playbooks, and investigation workflows.
    Own incident response: develop and test the IR plan, lead tabletop exercises, and act as incident commander for significant security events.
  • Drive threat intelligence and threat hunting programs to stay ahead of adversaries targeting the cloud communications sector.
  • Establish and track key security metrics: MTTD, MTTR, alert-to-incident conversion rates, and coverage gaps.
  • Ensure 24×7 detection coverage through tooling, automation, and on-call rotations, balancing reliability and engineer wellbeing.
Governance, Risk & Compliance (GRC / Information Security)
  • Own and continuously improve Aircall's information security management program, aligned to SOC 2 Type II, and applicable data-protection regulations (GDPR, CCPA).
  • Lead audit preparation and evidence collection for external certifications and customer security questionnaires.
  • Maintain the corporate risk register for information security, presenting findings and remediation plans to senior leadership and the board as required.
  • Define and enforce security policies, standards, and exception processes across the organisation.
  • Act as the primary security liaison for enterprise customers, prospects, and partners conducting security due diligence.

People Leadership

  • Lead, mentor, and grow a multi-disciplinary security team of 6–10 engineers across the four pillars.
  • Run structured 1:1s, career-development conversations, and quarterly goal-setting aligned to company OKRs.
  • Hire and onboard exceptional security talent; contribute to employer-branding initiatives in the security community.
  • Create an environment where engineers feel psychologically safe to raise concerns, experiment, and learn from failures.
  • Balance hands-on technical involvement with delegation — staying close enough to the work to be credible, but trusting the team to execute.
  • Partner cross-functionally with Engineering leadership, Legal, People Ops, and Finance to align security initiatives with business priorities.
What We're Looking For:
  • 7+ years of professional experience in security engineering.
  • 3+ years in an engineering management or technical lead role with direct reports.
  • Proven track record of building and scaling security teams in a cloud-native, SaaS environment.
  • Deep technical fluency across at least two of the four pillars (Product Security, Infrastructure Security, D&R, GRC).
  • Hands-on experience with major cloud platforms (AWS strongly preferred, GCP or Azure a plus) and infrastructure-as-code (Terraform, CDK, or equivalent).
  • Experience owning or contributing to SOC 2 Type II, ISO 27001, or equivalent compliance programmes.
  • Demonstrated ability to communicate security risk clearly to non-technical executives and board members.
  • Experience running security incident response — from detection through containment, eradication, and post-mortem.
Preferred / Nice to Have:
  • Background in a high-growth B2B SaaS or cloud-communications company.
  • Familiarity with VoIP, real-time communications, or telephony security considerations.
  • Experience embedding Agentic AI practices into security engineering workflows and securing internal AI tooling and implementation.
  • Relevant certifications: CISSP, CISM, AWS Security Specialty, GIAC (GWAPT, GCIA, GCIH), or equivalent.
  • Experience running a Bug Bounty programme (HackerOne, Bugcrowd, or similar).
  • Contributions to the open-source security community, conference speaking, or published research.
  • Familiarity with DORA metrics and the relationship between deployment frequency and security posture.
Base salary range:
$200,000—$260,000 USD

Why join us?

???? Key moment to join Aircall in terms of growth and opportunities

????‍♀️ Our people matter, work-life balance is important at Aircall

???? Fast-learning environment, entrepreneurial and strong team spirit

???? 45+ Nationalities: cosmopolite & multi-cultural mindset

???? Competitive salary package & benefits

DE&I Statement: 

At Aircall, we believe diversity, equity and inclusion – irrespective of origins, identity, background and orientations – are core to our journey. 

We pride ourselves on promoting active inclusion within our business to foster a strong sense of belonging for all. We're working to create a place filled with diverse people who can enrich and learn from one another. We're committed to ensuring that everyone not only has a seat at the table but is valued and respected at it by providing equal opportunities to develop and thrive.  

We will constantly challenge ourselves to make sure that we live up to our ambitions around diversity, equity and inclusion, and keep this conversation open. Above all else, we understand and acknowledge that we have work to do and much to learn.

Want to know more about candidate privacy? Find our Candidate Privacy Notice here.

We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.