# Senior GRC Engineer

**Company:** [Square](https://hotfix.jobs/companies/square)
**Location:** Remote
**Role:** Security Engineering
**Salary:** $185k – $327k/yr
**Experience:** 7+ years
**Skills:** Python, Java, Kotlin, Go, LLM APIs, Model Context Protocol, REST APIs, gRPC, Protocol Buffers, SQL, Snowflake, AWS, GCP, Kubernetes, Terraform
**Posted:** 2026-09-01

> Build data pipelines, integrations, policy-as-code, and agentic AI workflows that automate security governance and continuous compliance. The role requires 7+ years of production software engineering experience plus expertise in LLMs, APIs, distributed data, and cloud infrastructure.

## Job Description

## Responsibilities
- Build and operate pipelines and integrations that aggregate, normalize, and join risk, control, and asset signals from source control, service registries, identity providers, ticketing, data platforms, and CI/CD systems.
- Translate security standards and compliance requirements into versioned, tested policy-as-code rules.
- Design agentic AI workflows combining LLM reasoning with deterministic, auditable decision layers for evidence analysis, control monitoring, classification, and assessment.
- Build evaluation, benchmarking, and calibration harnesses for automated governance systems.
- Automate evidence collection and continuous control monitoring.
- Define technical approaches for ambiguous, cross-team problem spaces and carry them across team boundaries.
- Partner with Security Governance, Compliance, and Engineering teams to productize manual processes.
- Help govern the company's AI systems by assessing agent autonomy and safety.
- Contribute to technical design discussions and evaluate platform security and reliability.

## Requirements
- 7+ years building production software in backend, platform, data, or security engineering.
- Multi-year ownership of a production system, including on-call, SLOs, and post-launch maintenance.
- Proficiency in Python, Kotlin, Java, or Go, with the ability to read unfamiliar codebases.
- Hands-on experience building with LLMs, including prompting, tool use, agents, or LLM-backed features.
- Experience with REST APIs, webhooks, authentication flows, and event-driven architectures.
- Experience pulling, normalizing, and joining data from multiple imperfect sources.
- Experience defining technical direction for ambiguous problems and coordinating across teams.
- Strong attention to detail and pragmatic, risk-based prioritization.

## Nice to Have
- Knowledge of PCI DSS, SOX, SOC 2, ISO 27001, or NIST.
- Production-scale LLM or agentic systems experience.

## Technologies
- Python
- Java
- Kotlin
- Go
- LLM APIs
- Model Context Protocol
- REST APIs
- gRPC
- Protocol Buffers
- SQL
- Snowflake
- AWS
- Google Cloud
- Kubernetes
- Terraform
- CI/CD

## Compensation
- Annual base salary range: $185,200–$326,800 USD, depending on location and market zone.
- Benefits include remote work, medical insurance, flexible time off, retirement savings plans, and family planning benefits.

## Similar jobs

- [Senior AI Platform Security Engineer](https://hotfix.jobs/jobs/be3e0b84-8694-4a8e-9de2-2c078316c6b0) - Front - San Francisco, CA - $187k – $250k/yr
- [Senior Security Engineer, Detection & Response](https://hotfix.jobs/jobs/37a7b1d8-92a0-48d2-8ee3-02ab2a21f5ae) - Flexport - San Francisco, CA - $183k – $229k/yr
- [Senior GRC Analyst](https://hotfix.jobs/jobs/e5ffc43b-dac8-4c0a-be09-d1fa4e9cd8c5) - Gusto - San Francisco, CA - $183k – $205k/yr
- [Senior Software Engineer, Security](https://hotfix.jobs/jobs/9e9fbefb-bbfa-4328-b66f-77a8736b4499) - Harvey - San Francisco, CA - $188k – $282k/yr
- [Senior Security GRC Analyst](https://hotfix.jobs/jobs/b54fb115-3bb7-4d88-8fdc-b7901d26d90d) - Monarch - Remote - $180k – $215k/yr

**Apply:** https://hotfix.jobs/jobs/d697c300-f74b-4139-a767-9387816d3aa4
**Canonical:** https://hotfix.jobs/jobs/d697c300-f74b-4139-a767-9387816d3aa4