Назад
23 часа назад

Security Engineer (Fintech GRC)

152 000 - 228 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Security Engineer (Fintech GRC): Architecting and scaling compliance systems for financial services and AI products with an accent on Compliance-as-Code, automated control validation, and regulatory frameworks. Focus on integrating PCI DSS, NYDFS, and FFIEC requirements directly into engineering pipelines to ensure audit readiness in a high-growth environment.

Location: Must be based in New York, NY; Palo Alto, CA; or Washington, DC. Role requires U.S. work authorization (ITAR compliant).

Salary: $152,000 - $228,000 USD

Company

xAI is an AI research and product company focused on creating systems that understand the universe and aid humanity.

What you will do

  • Evolve financial services compliance posture across PCI DSS, NYDFS, and FFIEC guidance.
  • Build and maintain Compliance-as-Code capabilities, including automated control validation and continuous evidence collection.
  • Operate and extend GRC platforms to reduce administrative bottlenecks and integrate with engineering systems.
  • Partner with engineering leads to bake compliance and privacy requirements into platform architecture.
  • Design and validate technical controls for fintech environments, including segmentation, access control, and encryption.
  • Manage the cybersecurity risk register and lead risk assessments for new products and features.

Requirements

  • Bachelor's degree in computer science, Information Security, or related STEM field.
  • 8+ years of experience in GRC, security compliance, or technology audit within fintech or banking.
  • Hands-on experience with PCI DSS and at least one of NYDFS (23 NYCRR 500) or FFIEC guidance.
  • Technical fluency in cloud architecture (AWS/GCP/Azure) and security engineering.
  • Must be a U.S. citizen, permanent resident, or eligible for ITAR-related authorizations.
  • Strong communication skills to translate regulatory requirements for engineering and executive teams.

Nice to have

  • Experience supporting SOC 2 or ISO 27001 programs.
  • Knowledge of data privacy frameworks like GDPR and CCPA.
  • Familiarity with securing AI features in regulated fintech products.
  • Relevant certifications such as CISSP, CISA, CISM, or CIPP.

Culture & Benefits

  • Comprehensive medical, vision, and dental coverage.
  • 401(k) retirement plan with company contributions.
  • Equity participation in a high-growth AI organization.
  • Short and long-term disability insurance and life insurance.
  • Flat organizational structure with a focus on individual initiative and engineering excellence.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →