We are the first public safety operating system empowering over 2500 cities to eliminate crime.
Senior GRC Engineer
Location
United States
Posted
30 days ago
Salary
$130K - $150K / year
Seniority
Senior
Job Description
Senior GRC Engineer
Flock Safety
• Design and implement policy-as-code and compliance-as-code frameworks • Automate control testing and evidence collection using cloud and CI/CD telemetry • Integrate GRC processes with engineering tools and workflows • Develop reusable tooling and internal platforms for scalable, self-service compliance • Build and deploy production-grade automation leveraging LLMs and AI tooling (e.g., for control mapping, evidence analysis, and anomaly detection) • Own the design, development, and maintenance of core GRC automation systems and services • Develop KPIs and KRIs using engineering and cloud data • Support risk quantification efforts using frameworks such as FAIR • Maintain and improve the security risk register • Apply data modeling and AI techniques to identify emerging risks and reduce false positives • Build automated risk scoring and prioritization models using real-time engineering and security data • Lead and support audits including SOC 2, ISO 27001, ISO 27701, FedRAMP and CJIS • Build automated audit readiness and continuous compliance processes • Serve as a key point of contact for internal and external auditors • Work with Product and Engineering teams on security and privacy requirements • Support customer security reviews, RFIs, and trust center initiatives • Collaborate with Legal and Privacy teams on regulatory alignment • Automate vendor assessments using AI-assisted questionnaire analysis and response validation • Build workflows to ingest, analyze, and score third-party risk data at scale.
Job Requirements
- 5+ years in GRC, security engineering, or related roles
- Experience working in cloud-native environments, AWS is a must
- Experience supporting audits such as SOC 2, ISO 27001, or similar
- Relevant certifications such as CISA, CRISC, FAIR, AWS Security Specialty, ISO 27001/42001 Lead Auditor certifications a plus
- Experience integrating security and compliance into CI/CD pipelines
- Ability to work with APIs, automation tools, or scripting languages
- Experience implementing policy-as-code, compliance-as-code, or security-as-code frameworks
- Familiarity with tools such as Terraform, CloudFormation, or similar IaC frameworks
- Thinks in terms of systems and scale, not manual tasks—automating repetitive work wherever possible
- Curious about and experienced with applying AI to operational problems, especially in security or compliance
- Comfortable experimenting with emerging technologies and rapidly evolving tooling
- Strong understanding of frameworks such as SOC2 Type II, NIST 800-53, ISO 27001, and CJIS
- Ability to translate regulatory requirements into technical controls
- Automation-first thinking
- Strong problem-solving skills and ownership mentality
- Ability to balance security, compliance, and business needs
- Ability to collaborate effectively with engineering, security, and business stakeholders.
Benefits
- Flexible PTO: We offer non-accrual PTO, plus 11 company holidays.
- Fully-paid health benefits plan for employees: including Medical, Dental, and Vision and an HSA match.
- Family Leave: All employees receive 12 weeks of 100% paid parental leave. Birthing parents are eligible for an additional 6-8 weeks of physical recovery time.
- Fertility & Family Benefits: We have partnered with Maven, a complete digital health benefit for starting and raising a family. Flock will provide a $50,000-lifetime maximum benefit related to eligible adoption, surrogacy, or fertility expenses.
- Spring Health: Spring Health offers a variety of mental health benefits, including therapy, coaching, medication management, and digital tools, all tailored to each individual's needs.
- Caregiver Support: We have partnered with Cariloop to provide our employees with caregiver support.
- Carta Tax Advisor: Employees receive 1:1 sessions with Equity Tax Advisors who can address individual grants, model tax scenarios, and answer general questions.
- ERGs: We want all employees to thrive and feel like they belong at Flock. We offer four ERGs today - Women of Flock, Flock Proud, LEOs and Melanin Motion. If you are interested in talking to a representative from one of these, please let your recruiter know.
- WFH Stipend: $150 per month to cover the costs of working from home.
- Productivity Stipend: $300 per year to use on Audible, Calm, Masterclass, Duolingo and so much more.
- Home Office Stipend: A one-time $750 to help you create your dream office.
Related Guides
Related Categories
Related Job Pages
More Compliance Jobs
• Assist in maintaining and rolling out security and privacy policies, standards, and control frameworks aligned to ISO 27001, SOC 2, NIST, PCI DSS, GDPR, PIPEDA, FINTRAC, and other global regulations • Support policy exception management, attestation processes, and identify opportunities for process improvement • Assist with enterprise risk assessments, including vendor and process-level reviews • Support maintenance of the risk register, track remediation activities, and assist with risk treatment planning • Contribute to Benevity’s Third-Party Risk Management (TPRM) program, including vendor onboarding assessments, ongoing monitoring, and remediation tracking • Support audit readiness and response efforts for ISO 27001, SOC 2, PCI DSS, GDPR, PIPEDA, FINTRAC, and other frameworks • Assist with evidence gathering, control validation, and auditor engagement • Leverage GRC platforms to support audit, privacy, and compliance workflows • Support the sales process by responding to client inquiries related to security, privacy, and compliance • Complete customer security questionnaires, RFPs, and third-party risk management (TPRM) requests • Partner with sales and client success teams to provide timely, accurate responses that build client trust • Support privacy-related initiatives across jurisdictions (GDPR, PIPEDA, CCPA/CPRA, and others) • Collaborate with legal and data governance teams to help ensure compliance with data protection and financial crime regulations • Assist with FINTRAC-related compliance requirements, including reporting and risk assessments related to AML/ATF obligations • Monitor regulatory changes (privacy, AML, financial crime) and help align internal processes accordingly • Partner with business and technical teams to support the embedding of risk and compliance into projects and initiatives • Assist in delivering reporting and insights (dashboards, risk metrics, summaries) for leadership • Contribute to Benevity’s Security Awareness & Training program, including awareness campaigns, training modules, and phishing simulations • Contribute to training, documentation, and awareness activities that strengthen Benevity’s security, privacy, and compliance culture
IT Compliance Analyst
Owlet Baby CareFounded in 2013, Owlet Baby Care was established to provide products that keep babies safe and provide parents with the peace of mind to "find more joy in the parenthood journey."
- Execute and document ITGC control testing across Owlet's key systems and platforms. - Collect, organize, and maintain control evidence in accordance with audit requirements. - Track control deficiencies and remediation items to closure under IT Director oversight. - Support SOX readiness activities and auditor walkthroughs, including preparing materials and responding to auditor requests. - Coordinate evidence collection and auditor access for internal audit, external financial audit, and SOC report engagements. - Maintain the audit evidence repository and ensure documentation is current, organized, and audit-ready throughout the year. - Serve as a reliable point of contact for auditor information requests, escalating to the IT Director as needed. - Maintain Owlet's IT policy library: version control, review tracking, and attestation coordination. - Support annual policy review cycles by flagging outdated content and drafting proposed updates for IT Director review and approval. - Assist with communicating policy updates and awareness initiatives across the organization. - Maintain the IT compliance risk register: keeping entries current, tracking status, and flagging items that need IT Director attention. - Support IT change management processes to preserve audit trail integrity and separation of duties controls. - Assist with the IT component of third-party vendor compliance documentation as directed.
Director, Compliance
Pearce ServicesProviding mission-critical infrastructure solutions to create a more connected and sustainable future.
• Lead and manage compliance with NERC, FERC, and other federal electric regulatory requirements, as well as state and ISO/RTO requirements, with a focus on NERC 693 requirements and EIA submissions. • Oversee compliance matters for NERC-registered entities and assets within X-ELIO NA. • Prepare and submit timely and accurate NERC, FERC, ERCOT, PUCT, and EIA filings. • Lead the preparation for audits, self-certifications, spot checks, data submittals, and self-reports. • Develop, implement, and maintain compliance procedures, internal controls, and preventive measures. • Maintain documentation and evidence supporting compliance with all applicable requirements. • Monitor and analyze regulatory developments at NERC, ERCOT, ISO/RTOs, and other authorities, ensuring timely adaptation to new or changing rules. • Collaborate with internal stakeholders to assess the impact of regulatory changes and coordinate compliance strategies. • Participate in regulatory and reliability forums, representing the company in outreach activities. • Assist in coordinating and delivering compliance training to internal contributors and stakeholders. • Partner with internal groups and SMEs to resolve compliance issues and track corrective actions.
Engagement & Volunteer Advisor
Oxfam AmericaWe’re fighting global inequality to end poverty and injustice, so that everyone can thrive, not just survive. Join us.
Role Description The Engagement & Volunteer Advisor supports the implementation of Oxfam America’s Brand & Engagement strategy by helping deliver volunteer-powered engagement experiences and brand activation initiatives. This role operates under the leadership of the Senior Manager, Brand & Engagement, who sets the strategic direction for flagship programs including all cultural outreach, the Oxfam Hunger Banquet, and many broader brand activation initiatives. This position plays a key role in delivering a consistent and high-quality volunteer experience across brand initiatives and connecting participation opportunities to broader engagement and organizing pathways. The Advisor plays a key role in translating strategic brand and engagement priorities into actionable volunteer experiences that can scale across markets. This role contributes to activation efforts nationally, with a focus for the next few years on priority markets including Los Angeles, Austin, Philadelphia, Chicago, and the San Francisco Bay Area. Primary Responsibilities - Oxfam Hunger Banquet Program Delivery & Experience - Support the implementation and continuous improvement of Oxfam America’s Hunger Banquet program. - Maintain and strategically update Oxfam Hunger Banquet toolkits, training materials, facilitation guides, and brand assets. - Serve as primary point of contact for Oxfam Hunger Banquet hosts and facilitators. - Track and analyze participation, engagement, and feedback to inform program improvements and scalability. - Brand Activation & Community Engagement - Support the execution and delivery of volunteer-integrated brand and community activation initiatives. - Ensure brand activations include clear volunteer roles, timelines, communications, and follow-up steps. - Partner with Organizing, Events, Music Outreach, and Strategic Partnerships colleagues. - Contribute to the adaptation and scaling of activation models across priority markets. - Volunteer Experience & Communications - Support the delivery of clear, timely, and engaging communications to volunteers. - Facilitate volunteer onboarding, scheduling, and readiness for in-person and virtual activation. - Help ensure volunteers receive timely information, clear expectations, and follow-up communications. - Contribute to pathways that move volunteers from initial participation into deeper engagement and organizing opportunities. - Cross-Team Collaboration & Supporter Experience - Work closely with the Engagement & Organizing Advisor and team to align volunteer roles and messaging. - Support data tracking, reporting, and CRM hygiene related to volunteer participation. - Share feedback from volunteers to inform learning and program improvement. - Contribute to a positive, inclusive, and values-aligned volunteer experience. - Learning & Continuous Improvement - Assist with tracking engagement metrics related to Hunger Banquets and other brand activations. - Support collection of volunteer and participant feedback. - Contribute to iterative improvements to tools, trainings, and activation workflows. Qualifications - Bachelor’s degree or equivalent combination of work experience, education, and training. - 3 - 5 years of experience in volunteer coordination, community engagement, events, organizing, or brand activation. - 2+ years project management experience required. - Experience running and/or systematizing volunteer-led or community-based programs. - Experience delivering and implementing brand and engagement activations. - Proficiency in digital tools for engagement and communication. - Excellent interpersonal, writing, and facilitation skills. - Strong organizational skills with ability to manage multiple projects simultaneously. - Ability to represent Oxfam in a variety of settings and with diverse audiences. - Good judgment, initiative, and ability to anticipate problems. - Ability to work independently and as part of a cross-functional remote team. - Commitment to equity, inclusion, and social justice values. Preferred Qualifications - Experience organizing experiential, immersive, educational, or facilitation-based programs. - Familiarity with digital communications, CRM systems, and volunteer engagement tools. - Experience in nonprofit or advocacy settings. - Multilingual skills a plus. Position Expectations - Will stay abreast of professional standards, trends, and issues affecting this set of responsibilities. - Will work effectively and collaboratively in support of building a team-based, problem-solving work culture. - Will have a fundamental understanding of gender justice and diversity within key areas of responsibility. - Will have a commitment to and be accountable for activities contributing towards a safe and accountable workplace environment. - Helps advance brand and engagement priorities through grassroots mobilization, volunteer leadership development, and strategic community activation. - Willing to travel domestically; occasional evening and weekend work is required. Additional Information - Oxfam America is a Gender Just organization and an equal opportunity employer. - We welcome all qualified applicants and do not discriminate on the basis of race, color, gender, national origin, age, religion, creed, disability, veteran status, sexual orientation, gender identity, or gender expression. - We provide reasonable accommodations to applicants with disabilities upon request.




