Security GRC Engineer
About Us
CWILL a fast-growing Shopify SaaS startup company serving global (primarily US/EU) merchants. With strong product-market fit and expanding US operations, we are building our local security and compliance capabilities to meet global data privacy standards.
Role Overview
We are looking for a Security GRC (Governance, Risk, and Compliance) Engineer to drive data compliance governance and audit execution.
This role focuses on building practical, enforceable, and auditable controls around data access, data lifecycle, product data usage, and cross-border data flows.
This is a hands-on, execution-focused role working directly with data systems and audit processes (not a policy-only role).
Responsibilities
1. Data Compliance Governance
- Support US data compliance requirements (e.g., CCPA, EO 14117)
- Perform gap analysis and define remediation plans
- Design and implement controls for: sensitive data classification, access governance, data lifecycle management
- Build processes for data subject rights (deletion, access, portability)
- Participate in product and engineering reviews (e.g., DPIA)
- Support compliance for new features, data use cases, and vendor/cross-border scenarios
2. Compliance & Audit Execution
- Support SOC 2 readiness and audit execution
- Conduct access reviews, log validation, and anomaly detection
- Maintain audit records and generate compliance reports
- Build or improve automated evidence collection (e.g., scripting)
- Work with internal teams and external auditors to provide audit evidence
Requirements
This is a hands-on, execution-focused role working directly with data systems and audit processes (not a policy-only role).
1. Must-have:
- Authorized to work in the United States
- Mandarin preferred for day-to-day collaboration
- Bachelor’s degree or above in Computer Science, Information Security, or a related technical field
- 3–5 years of experience in Security, GRC, Data Security, or Data Compliance
- Hands-on experience with at least one compliance framework (e.g., SOC 2, CCPA, GDPR, 14117), beyond policy or documentation
- Practical experience in data compliance governance, including: sensitive data identification and classification, access control and access governance, data lifecycle management (storage, usage, deletion, portability)
- Ability to work with data systems (e.g., databases, data flows, APIs) and translate compliance requirements into technical implementations
- Basic technical capability (e.g., Python, Golang, or scripting) to support audit automation, data validation, or tooling
- Strong cross-functional communication skills, with the ability to work closely with engineering, product, data, and infra teams
2. Nice-to-have:
- Relevant certifications such as CISSP, CISM, or CIPP/US
- Experience in SaaS / e-commerce platforms (e.g., Shopify ecosystem) or third-party integrations
- Background in data governance, data platforms, or analytics
- Familiarity with cross-border data transfer compliance
- Understanding of web accessibility standards (e.g., WCAG, ADA) and related privacy/security considerations
Language:
- Mandarin (Required)
Benefits
Pay: $120,000.00 - $160,000.00 per year
- 401(k) matching
- Flexible schedule
- Health insurance
- Paid time off
- Vision insurance
Recommended Jobs
Occupational Therapy Assistant / COTA / OTA
Certified Occupational Therapy Assistant / COTA / OTA/L / OTA - Weaverville, NC - NORTH CAROLINA Broad River Rehab is seeking a Certified Occupational Therapy Assistant to join our skilled nursing…
Sonographer - Carmel OB/GYN
What We Offer: At Novant Health Carmel OB/Gyn , we offer competitive pay and a comprehensive benefits package designed to support our team members personally and professionally. Benefits begin on d…
Team Member
Job Description Job Description This job posting is for a position in a restaurant owned and operated by an independent franchisee, not Jack in the Box Inc. This means the independent franchisee,…
Chief Operations Officer
About VisionPoint Marketing VisionPoint Marketing is on a mission to become higher education’s most trusted enrollment marketing partner. As a full-service agency, we collaborate with colleges and…
CNC Machinist Programmer 2nd shift
Job Description Job Description Job Title: CNC Machinist Location: Gastonia, NC Job Type: Full-Time Job Overview: The CNC Programmer Machinist is responsible for programming, settin…
Field Diesel Mechanic - CES
Great company. Great people. Great opportunities. If you’d like the chance to make your mark with the world’s largest equipment rental provider, come build your future with United Rentals! …
Associate Veterinarian
Beattie Pet Hospital, a trusted name in veterinary care in Burlington, is looking for a dedicated Associate Veterinarian to join our growing team. If you have a passion for animal health and well-bei…
Travel Nurse RN - Medical-Surgical - $1,840 per week in Charlotte, NC
Registered Nurse (RN) | Medical-Surgical Location: Charlotte, NC Agency: Advantis Medical Staffing Pay: $1,840 per week Shift Information: Nights - 3 days x 12 hours Contract D…
General Application
Job Description Job Description Description: Please apply if you are interested in working for JF Petroleum Group! Requirements:
Front of House Team Member
Job Description Job Description Overview At Piada Italian Street food we are passionate about food and hospitality. A leader in the fast casual movement, Piada combines fresh, modern Itali…