Senior Security Engineer GRC Fintech and Financial Services
You will scale financial-services compliance for SpaceXAI and xMoney. You will engineer automated controls and evidence collection, manage GRC platforms and risk registers, assess products and vendors, implement technical safeguards, and work with engineering, auditors, and regulators.
Responsibilities
- Own financial-services and payments compliance across PCI DSS, NYDFS, FFIEC, and related regulations.
- Build Compliance-as-Code, automated control validation, continuous evidence collection, and CI/CD monitoring.
- Operate and extend GRC platforms such as Vanta.
- Embed compliance and privacy requirements into technical implementations.
- Design, implement, and validate fintech security controls.
- Operate the cybersecurity and compliance risk register.
- Lead risk assessments and compliance reviews for products, payment flows, vendors, and architectural changes.
- Manage relationships with auditors, assessors, and regulators.
- Maintain policies, standards, and procedures.
- Prioritize material security and business risks.
Requirements
- Bachelor's degree in computer science, information security, cybersecurity, engineering, or a STEM field.
- 8+ years of GRC, security compliance, or technology audit experience in regulated financial environments.
- Hands-on experience with PCI DSS and NYDFS or FFIEC controls.
- Experience with Compliance-as-Code and GRC automation tooling.
- Technical fluency in cloud platforms and security architecture.
- U.S. citizenship, nationality, lawful permanent residency, refugee or asylee status, or eligibility for required U.S. Department of State authorizations.
Benefits
- Equity
- Medical coverage
- Vision coverage
- Dental coverage
- 401(k) retirement plan
- Short-term disability insurance
- Long-term disability insurance
- Life insurance
- Discounts and perks