remote
Senior Security Engineer, GRC Automation - 1Password
Security Engineer
Senior Security Engineer focused on Governance, Risk, and Compliance automation, driving secure infrastructure and policy enforcement across cloud environments using Python, AWS, and advanced IAM solutions.
About the role
Key Responsibilities
- Design, develop, and maintain automated GRC workflows that enforce security policies across multi‑cloud environments.
- Integrate IAM and compliance tooling with existing CI/CD pipelines to ensure continuous security validation.
- Collaborate with product, engineering, and operations teams to embed security controls into new features and releases.
- Analyze security incidents, conduct root‑cause investigations, and implement remediation automation.
- Document security architecture, policies, and procedures for internal and external audits.
Requirements
- 5+ years of experience in security engineering with a focus on GRC and automation.
- Proficiency in Python, AWS services (IAM, CloudTrail, Config), and infrastructure‑as‑code tools.
- Deep understanding of compliance frameworks (SOC 2, ISO 27001, GDPR) and risk assessment methodologies.
- Strong scripting and automation skills, with experience building reusable security tooling.
- Excellent communication skills and ability to translate technical concepts to non‑technical stakeholders.