Skip to content

Security Engineer

Security Engineer focused on GRC automation to design and implement automation, dashboards, and integrations that power Governance, Risk, and Compliance operations using platforms like Drata.

123k – 172kUnited StatesSecurity EngineeringRemote3+ YOE

About the role

What we're looking for

  • 3+ years of experience in security engineering, DevSecOps, solutions engineering, GRC automation, or compliance roles
  • Experience working with GRC, compliance, or audit teams to support automation for evidence collection, control testing, or security monitoring
  • Hands-on experience working with GRC platforms (e.g., Drata, Vanta, Tines, JupiterOne) — configuration, integration, or implementation experience
  • Scripting and integration skills using Python, JavaScript, APIs, webhooks, or workflow automation tools
  • Ability to work cross-functionally with security, compliance, legal, and infrastructure teams to translate policies into scalable technical systems
  • Familiarity with compliance frameworks such as SOC 2, ISO 27001, or NIST 800-53
  • Organizational and delivery skills — manage workstreams with clear milestones, communicate progress proactively
  • Curiosity and experience with AI-assisted workflows — experimented with LLMs, agentic tools, or automation pipelines in a GRC or compliance context
  • Comfortable in auditor-facing settings

Bonus points for

  • Hands-on experience with event-driven automation platforms like Tines
  • Experience building evidence pipelines, tagging telemetry, or creating compliance dashboards
  • Familiarity with cloud-native security architecture (e.g., AWS IAM, encryption, logging)
  • Experience in customer trust, privacy engineering, or supporting sales/GTM teams with compliance assurance content
  • Familiarity with EU AI Act, NIST AI RMF, or emerging AI governance frameworks
  • CISA, Security+, or equivalent certification

What you can expect

  • Contribute to the implementation and integration of our GRC platform, executing on integrations and automations that connect Drata to key systems and workflows
  • Build and maintain automated workflows for control testing, evidence collection, and audit readiness
  • Help design and deploy AI-assisted compliance workflows — including evidence collection automation, vendor questionnaire support, and control narrative drafting — with validation steps built in
  • Develop and maintain integrations between the GRC platform and systems of record (e.g., ticketing systems, IAM, asset inventories, configuration management)
  • Manage project workstreams with clear scope and milestones
  • Build dashboards and reporting to track control health, trust signals, and audit performance
  • Collaborate with teams across Security, GRC, and Engineering to embed compliance into operational processes like employee onboarding, change management, and incident response
  • Contribute to the roadmap for automated, resilient internal assurance infrastructure

Compensation

  • USA: $123,000 - $172,000 USD base + benefits, equity, PTO
  • Canada: $111,000 - $155,000 CAD base + benefits, equity, PTO

Skills

PythonJavaScriptAPIsDrataVantaTinesJupiteroneSOC 2ISO 27001Nist 800-53Aws IamWebhooks

Security Software Engineer II, Security Operations

Builds and improves security tooling, automations, and workflows for Security Operations at Pinterest. Partners with engineering teams on cloud security, access management, and infrastructure using AWS, Terraform, and AI-assisted development. Requires cloud/security engineering experience and bachelor's degree.

124k – 255kChicago, ILSecurity EngineeringRemoteAIAWS

Security Software Engineer II, Detection and Response

Builds detection and response systems, manages logging pipelines, develops internal security tools, and hunts threats in a cloud environment. Requires strong incident response experience, SIEM querying, scripting, and AI utilization skills.

124k – 255kSan Francisco, CASecurity EngineeringRemoteGoAI

Security Software Engineer II, Corporate Security

Develops automation tools, secure software systems, and integrates security into CI/CD pipelines for corporate security. Collaborates with teams on threat detection using AI-assisted workflows, Linux/UNIX/macOS/Windows internals, and secure engineering practices. Requires bachelor's in CS or equivalent.

124k – 255kSan Francisco, CASecurity EngineeringRemoteAIUnix

Security Engineer - Threat Detection

Builds and deploys AI-assisted threat detections, automates security workflows, and improves detection quality using modern engineering practices at cloud scale. Requires security expertise, coding proficiency in Python/Go/SQL, cloud experience, and automation mindset.

122k – 175kUnited StatesSecurity EngineeringRemoteGoSQL

Corporate Security Lead

Builds and leads corporate IT security operations including helpdesk, endpoint management, SIEM deployment, and team hiring for a space communications company. Requires 5+ years in IT/security/DevSecOps, hands-on tools like Okta and AWS, and compliance knowledge.

125k – 206kLos Angeles, CA +1Security EngineeringOn-site5+ YOEAWSOkta