2

Remote Rmf Jobs in San Jose, CA (NOW HIRING)

Senior GRC Lead

San Francisco, CA ยท On-site +1

$134K - $185K/yr

... RMF, EU AI Act). You'll have autonomy to build innovative solutions, collaborating cross ... As a perk, we also have up to four weeks per year of fully remote work! Responsibilities * Manage ...

Senior C++ Robotics Engineer

Mountain View, CA ยท Remote

$198K - $225K/yr

Knowledge of Open-RMF middleware framework * Experience with telematics data processing and ... Monthly meal and tech allowances for remote employees *Please note salary range is for Bay Area ...

Information Security Analyst

San Francisco, CA ยท Remote

$1.7K - $2.1K/wk

Remote Role Responsibilities * Review and evaluate AI-generated outputs related to threat analysis, vulnerability assessment, and security architecture recommendations. * Create realistic scenarios ...

Cyber Security Program Manager

Sunnyvale, CA ยท On-site +1

$130K - $176K/yr

Open to Remote candidates. Preferred * Industry-recognized certifications such as CISA, CISSP, or PMP. * Experience with security and monitoring tools such as Jira, Splunk, Tenable, and Trend Micro.

Cyber Detection & Response Analyst

Fremont, CA ยท Remote

$120K - $140K/yr

... and remote working. * Control Risks offers a competitively positioned compensation and benefits package that is transparent and summarized in the full job offer. * Medical Benefits, Prescription ...

Cyber Security Program Manager

San Jose, CA ยท On-site +1

$144K - $195K/yr

Open to Remote candidates. Preferred * Industry-recognized certifications such as CISA, CISSP, or PMP. * Experience with security and monitoring tools such as Jira, Splunk, Tenable, and Trend Micro.

Remote Rmf information

See San Jose, CA salary details

$34.6K

$111.3K

$199.8K

How much do remote rmf jobs pay per year?

As of Jul 20, 2026, the average yearly pay for remote rmf in San Jose, CA is $111,252.00, according to ZipRecruiter salary data. Most workers in this role earn between $58,000.00 and $149,400.00 per year, depending on experience, location, and employer.

What is a Remote RMF job?

A Remote RMF (Risk Management Framework) job involves managing cybersecurity risk and compliance for an organization while working remotely. Professionals in this role ensure that IT systems align with federal security standards, such as those outlined by NIST. Responsibilities may include conducting risk assessments, implementing security controls, and maintaining compliance documentation. Remote RMF specialists often work with government agencies, contractors, or private companies handling sensitive data. This position requires expertise in cybersecurity policies, risk management, and regulatory compliance.

What are the typical daily responsibilities of a Remote RMF Specialist?

As a Remote RMF Specialist, your daily responsibilities often include conducting security assessments, preparing and reviewing authorization packages, and ensuring ongoing compliance with federal information security standards. You'll collaborate with cross-functional teams to identify risks, develop mitigation strategies, and document security control implementations. Regular communication with stakeholders, participation in virtual meetings, and continual monitoring of systems and processes to ensure compliance are also core aspects of the job. This role leverages remote work tools to collaborate effectively with cybersecurity, IT, and compliance professionals across multiple locations.

What are the key skills and qualifications needed to thrive in the Remote Rmf position, and why are they important?

To thrive as a Remote RMF (Risk Management Framework) Specialist, you need a strong understanding of information security principles, federal risk management frameworks (such as NIST SP 800-37), and relevant cybersecurity policies, typically backed by a degree in information security or related field. Familiarity with security assessment tools, governance, risk, and compliance (GRC) software, as well as certifications like CISSP, CAP, or CISM, is highly valued. Excellent organizational skills, attention to detail, and the ability to communicate complex security concepts clearly are important soft skills. These capabilities are critical to ensure regulatory compliance and robust information system security in a remote work context.

What are popular job titles related to Remote Rmf jobs in San Jose, CA? For Remote Rmf jobs in San Jose, CA, the most frequently searched job titles are:
What cities near San Jose, CA are hiring for Remote Rmf jobs? Cities near San Jose, CA with the most Remote Rmf job openings:
Infographic showing various Remote Rmf job openings in San Jose, CA as of July 2026, with employment types broken down into 85% Full Time, 13% Part Time, and 2% Contract. Highlights an 40% Physical, 3% Hybrid, and 57% Remote job distribution, with an average salary of $111,252 per year, or $53.5 per hour.
Senior GRC Lead

Senior GRC Lead

Brex

San Francisco, CA โ€ข On-site, Remote

$134K - $185K/yr

Other

Posted 4 days ago


Job description

Engineering

Engineering at Brex is about building systems that scale with speed and intention. Our teams span Software, Data, Security, and IT, and operate with high autonomy and deep collaboration. We tackle hard technical problems, own our outcomes, and push for excellence at every level - from architecture to deployment. It's an environment where engineering is a craft, and builders become leaders.

What you'll do

Brex's Governance, Risk, and Compliance function is at an exciting and pivotal point in our maturity journey and we're seeking a team member who can seamlessly bridge compliance expertise with technical execution. As a Senior GRC Engineer, you will drive critical GRC processes that mitigate risk, keep us compliant, and build trust with our customers and partners. You'll evolve the technical foundation of our Trust program by automating security controls, building integrations between security tools and GRC platforms, and creating scalable processes that enable Brex to maintain compliance efficiently as we expand into new markets. You'll work at the intersection of security, engineering, and compliance - translating regulatory requirements into technical solutions and building automation that eliminates manual toil.

You'll leverage your deep understanding of SOC 2, PCI DSS, ISO 27001, AI governance frameworks, and others to both design controls for emerging compliance requirements and mature existing programs through automation and continuous monitoring. You'll support Trust Assurance, Third Party Risk Management, and other Security Risk Management initiatives. Working with our Engineering, Infrastructure, and Product teams, you'll translate compliance frameworks into technical controls and build automated systems that help us achieve world-class security as Brex expands.

Your contributions will directly accelerate Brex's maturity. You'll design workflows using Tines, build integrations between security and GRC systems, and create dashboards for security metrics. You'll implement controls across the technology stack, support multiple audits (SOC 2, PCI DSS, SOX/ITGC, FINRA, ISO), and contribute to AI governance framework implementation (ISO 42001, NIST AI RMF, EU AI Act).

You'll have autonomy to build innovative solutions, collaborating cross-functionally to implement controls that enable growth while communicating technical concepts effectively across the organization.

Where you'll work

This role will be based in our San Francisco office. We are a hybrid environment that combines the energy and connections of being in the office with the benefits and flexibility of working from home. We currently require a minimum of three coordinated days in the office per week, Monday, Wednesday and Thursday. As a perk, we also have up to four weeks per year of fully remote work!

Responsibilities

  • Manage and scale IT infrastructure, services and tooling
  • Work with a diverse group ofย  IT partners to optimize our provided services
  • Implement new services in support of Information Technologies vision
  • Scale our services by implementing configuration as code via Terraform providers or APIs
  • Operationalize and upskill IT and its partners by producing documentation and leading training sessions
  • Evangelize best practices both internally and externally facing

Requirements

  • 5+ years of experience in GRC, IT Governance, or Security Engineering with a strong track record of automating manual compliance workflows.
  • Deep experience with security frameworks such as SOC 2, PCI DSS, ISO 27001, and NIST CSF, specifically within cloud-native environments.
  • Technical proficiency in Python (or similar scripting languages) and experience building integrations using APIs to connect security tools with GRC systems. You can read code, design integrations, and understand technical implementations.
  • Builder mindset with the ability to design and implement automated control testing, continuous monitoring, and data-driven security metrics. You see manual processes and immediately think about how to automate them.
  • Exceptional cross-functional collaboration and communication skills. You can translate complex compliance requirements into technical specifications that engineering teams can actually implement and influence stakeholders across technical and non-technical domains.
  • Strong systems thinking. You have the ability to design scalable GRC architectures that grow with the company, rather than just solving for the immediate audit.
  • Bias for action. You're a self-starter who ships solutions quickly and iterates based on feedback.ย 

Bonus points

  • Previous experience in Fintech or banking environments navigating complex regulatory landscapes.
  • Hands-on experience with Tines or other SOAR platforms to automate security operations.
  • Familiarity with AI/ML governance frameworks (NIST AI RMF, ISO 42001) or securing agentic systems.
  • Deep knowledge of Cloud Security (AWS/GCP), infrastructure-as-code (Terraform), or DevSecOps practices.
  • Relevant industry certifications such as CISSP, CISA, or CCSP.
  • Experience building metrics dashboards for security visualization and reporting.
  • Active contributions to the GRC or Security community through open-source projects or public research.

Compensation

The expected salary range for this role is $153,600 - $192,000. However, the starting base pay will depend on a number of factors including the candidate's location, skills, experience, market demands, and internal pay parity. Depending on the position offered, equity and other forms of compensation may be provided as part of a total compensation package.

Brex LLC is a wholly owned subsidiary of Capital One, N.A.