onsite
Senior Security Engineer - GRC - 6sense
Security Engineer
Lead security governance, risk, and compliance initiatives, designing frameworks, policies, and controls to protect enterprise assets while ensuring regulatory adherence across cloud and on‑prem environments.
About the role
Key Responsibilities
- Develop and maintain comprehensive GRC programs, including risk assessments, control frameworks, and policy documentation.
- Lead the design, implementation, and continuous improvement of security controls across cloud and on‑prem infrastructures.
- Collaborate with cross‑functional teams to ensure compliance with industry regulations (GDPR, CCPA, SOC 2, ISO 27001).
- Conduct security audits, penetration tests, and vulnerability assessments, translating findings into actionable remediation plans.
- Provide expert guidance on incident response, threat intelligence, and security incident management.
Requirements
- 5+ years of experience in security engineering with a focus on GRC.
- Deep knowledge of risk assessment methodologies and compliance frameworks.
- Hands‑on experience with security tools (SIEM, SOAR, vulnerability scanners) and cloud platforms (AWS, Azure).
- Strong analytical, communication, and stakeholder management skills.
- Relevant certifications (CISSP, CISM, CRISC, or equivalent) preferred.