We are looking for a sharp, automation-first Compliance Engineer to join our Governance, Risk & Compliance (GRC) team. In this role, you will own the technical side of our compliance programme — designing and operating systems that continuously verify our security controls, collect evidence automatically, and keep us audit-ready at all times.
You will work at the intersection of security engineering and regulatory compliance, leveraging AI-powered and agentic tooling to replace manual, point-in-time audit work with real-time, scalable assurance. If you love turning compliance from a periodic scramble into an always-on engineering discipline, this role is built for you.
Key Responsibilities
Compliance Automation & Continuous Assurance
- Design, build, and maintain automated pipelines for controls testing across
- Develop scripts, integrations, and workflows that continuously collect, validate, and store compliance evidence from cloud infrastructure, SaaS tools, CI/CD pipelines, and endpoint systems.
- Implement AI and agentic tools (e.g., LLM-based classification, autonomous agents) to interpret data, flag control deviations, and draft audit narratives — reducing manual effort.
- Build and maintain a compliance-as-code library so controls are versioned, testable, and auditable.
Frameworks & Audit Readiness
- Serve as an internal SME for SOC 2
- Maintain a continuously updated control inventory and evidence repository ready for external auditor review at any point in the year.
- Coordinate with external auditors during annual assessments; own the evidence pack preparation and auditor Q&A.
- Identify control gaps through automated gap assessments and drive remediation with engineering and product teams.
GRC Programme Development
- Contribute to the design and evolution of the company’s internal assurance programme, including risk assessment methodologies and control effectiveness metrics.
- Develop dashboards and executive-level reporting that show real-time compliance posture across all frameworks.
- Advise on vendor and third-party risk assessments, including security questionnaire automation.
- Stay current on emerging regulations and integrate new requirements into the automation stack.
Required Qualifications
Experience
- 5+ years of experience in information security, with a minimum of 3 years focused, compliance engineering, or security assurance.
- Demonstrable experience designing or operating compliance programme, including evidence collection and audit support.
- Hands-on experience writing automation scripts (Python, NodeJS, or similar) to interact with cloud APIs (AWS, GCP, or Azure), SaaS platforms, or SIEM/log aggregation tools.
- Experience integrating AI or ML tooling into operational workflows — including working with LLM APIs, prompt engineering, or building agentic pipelines using frameworks.
-
Are you interested in this position?
Apply by clicking on the “Apply Now” button below!
#AlbionarcJobs#FintechJobs
#AsiaJobs#MiddleEastCareers
#TechTalent#FintechRecruitment
#FinanceOpportunities#
