Description
Brex is seeking a Senior GRC Lead to drive critical GRC processes that mitigate risk, keep the company compliant, and build trust with customers and partners.
The successful candidate will evolve the technical foundation of Brex's Trust program by automating security controls, building integrations between security tools and GRC platforms, and creating scalable processes that enable Brex to maintain compliance efficiently as it expands into new markets.
Responsibilities:
- Drive critical GRC processes that mitigate risk and keep Brex compliant
- Evolve the technical foundation of the Trust program by automating security controls and building integrations
- Create scalable processes that enable Brex to maintain compliance efficiently
- Leverage deep understanding of SOC 2, PCI DSS, ISO 27001, AI governance frameworks, and others to design controls and mature existing programs
- Support Trust Assurance, Third Party Risk Management, and other Security Risk Management initiatives
- Translate regulatory requirements into technical solutions and build automation that eliminates manual toil
- Design workflows using Tines, build integrations between security and GRC systems, and create dashboards for security metrics
- Implement controls across the technology stack, support multiple audits, and contribute to AI governance framework implementation
Requirements:
- 5+ years of experience in GRC, IT Governance, or Security Engineering
- Deep experience with security frameworks such as SOC 2, PCI DSS, ISO 27001, and NIST CSF
- Technical proficiency in Python and experience building integrations using APIs
- Builder mindset with the ability to design and implement automated control testing and continuous monitoring
- Exceptional cross-functional collaboration and communication skills
- Strong systems thinking and ability to design scalable GRC architectures
- Bias for action and ability to ship solutions quickly
Nice to have:
- Previous experience in Fintech or banking environments
- Hands-on experience with Tines or other SOAR platforms
- Familiarity with AI/ML governance frameworks or securing agentic systems
- Deep knowledge of Cloud Security, infrastructure-as-code, or DevSecOps practices
- Relevant industry certifications
- Experience building metrics dashboards for security visualization and reporting
Compensation: The expected salary range for this role is $153,600 - $192,000.
This listing is enriched and indexed by YubHub. To apply, use the employer's original posting:
https://job-boards.greenhouse.io/brex/jobs/8378840002