Talent.com
Governance, Risk & Compliance (GRC) Engineer
Governance, Risk & Compliance (GRC) EngineerSmarsh • Atlanta, GA, US
Governance, Risk & Compliance (GRC) Engineer

Governance, Risk & Compliance (GRC) Engineer

Smarsh • Atlanta, GA, US
8 days ago
Job type
  • Full-time
Job description

Overview

Who are we?

Smarsh empowers its customers to manage risk and unleash intelligence in their digital communications. Our growing community of over 6500 organizations in regulated industries counts on Smarsh every day to help them spot compliance, legal or reputational risks in 80+ communication channels before those risks become regulatory fines or headlines. Relentless innovation has fueled our journey to consistent leadership recognition from analysts like Gartner and Forrester, and our sustained, aggressive growth has landed Smarsh in the annual Inc. 5000 list of fastest-growing American companies since 2008.

Summary

Smarsh is a global leader in digital communications capture, archiving, and oversight. Smarsh is committed to embedding security as a business enabler through governance process excellence and scalable control frameworks. As a GRC Engineer, you will play a critical role in advancing our governance, risk, and compliance programs. You'll be responsible for defining, implementing, and optimizing security controls and risk processes that support operational alignment across the organization. This role requires an understanding of how governance can scale through automation, control validation workflows, and "Policy as Code" principles. You'll collaborate closely with engineering, security, legal, and business teams to ensure our GRC practices mature in step with our growth.

Responsibilities

  • ISMS Governance & Controls Assurance : Lead the ongoing maintenance and enhancement of Smarsh's ISO 27001-aligned ISMS, ensuring policies, controls, and governance processes are clear, actionable, and aligned with business operations. Author and maintain security control narratives, working closely with technical teams to ensure controls are designed with enforceability and operational alignment in mind. Oversee the Control Assurance Program, ensuring effective evidence collection, control testing, and continuous monitoring practices. Coordinate internal and external audit readiness (SOC 2, ISO 27001, FedRAMP, customer audits) through structured governance workflows.
  • Risk Management & Governance : Manage the risk assessment lifecycle, ensuring comprehensive engagement across business, technical, and third-party risk domains. Facilitate risk acceptance workflows, maintaining governance rigor through well-defined documentation and approval processes. Ensure effective governance of risk treatment plans, enabling clear tracking and status reporting.
  • Regulatory, Contractual & Client Assurance : Translate emerging regulations (e.g., DORA, SEC Cyber Rules, UK AI Act) into internal governance requirements and operational processes. Manage customer security assessments and DDQs, utilizing standardized assurance artefacts to deliver efficient, high-quality responses. Ensure external assurance artefacts are maintained and accessible through the Smarsh Trust Center.
  • Third-Party & Supply Chain Risk : Lead third-party security reviews and ensure governance controls are extended across the vendor lifecycle. Partner with Procurement and Legal to align contractual security requirements and risk acceptance criteria.
  • Policy Lifecycle & Governance Metrics : Own the policy lifecycle process, ensuring policies are regularly reviewed, updated, and tracked for compliance. Develop governance reporting and dashboards that provide clear visibility into control effectiveness, risk posture, and audit readiness. Support governance forums and leadership committees with data-driven insights and structured governance reports.
  • GRC Operations & Enablement : Lead the continual refinement of GRC workflows, ensuring operational efficiency in documentation, evidence management, and status tracking. Collaborate with Engineering and Security teams to ensure controls are practically enforceable within operational workflows. Bring forward ideas and experience around scaling governance processes through automation and control validation techniques, supporting Smarsh's long-term governance maturity.

Requirements / What you will bring

  • 2–5 years' experience in information security, risk management, or compliance.
  • Working knowledge of security frameworks such as ISO 27001, SOC 2, GDPR, NIST CSF, or similar.
  • Familiarity with GRC platforms and evidence lifecycle management
  • Strong organizational skills with attention to detail in documentation and reporting.
  • Effective communication skills with both technical and non-technical stakeholders.
  • Curiosity and drive to grow into GRC Engineering with a focus on automation and scalability.
  • Compensation

    $93,000 - $105,000 a year

    The above salary range represents Smarsh's good faith and reasonable estimate of the range of possible base compensation at the time of posting. Any applicable bonus programs will be discussed during the recruiting process.

    The salary for this role will be set based on a variety of factors, including but not limited to, internal equity, experience, education, location, specialty and training.

    Local cost of living assessments are done for each new hire at the time of offer.

    About our culture

    Smarsh hires lifelong learners with a passion for innovating with purpose, humility and humor. Collaboration is at the heart of everything we do. We work closely with the most popular communications platforms and the world's leading cloud infrastructure platforms. We use the latest in AI / ML technology to help our customers break new ground at scale. We are a global organization that values diversity, and we believe that providing opportunities for everyone to be their authentic self is key to our success. Smarsh leadership, culture, and commitment to developing our people have all garnered Comparably.com Best Places to Work Awards. Come join us and find out what the best work of your career looks like.

    J-18808-Ljbffr

    Create a job alert for this search

    Governance Compliance • Atlanta, GA, US

    Related jobs
    Senior Power Risk Consultant Engineer

    Senior Power Risk Consultant Engineer

    Allianz Commercial • Alpharetta, GA, US
    Full-time
    Be among the first 25 applicants.Get AI-powered advice on this job and more exclusive features.Allianz Commercial specializes in providing comprehensive and customized insurance and inspection prod...Show more
    Last updated: 2 days ago • Promoted
    IT Governance, Risk and Compliance Analyst

    IT Governance, Risk and Compliance Analyst

    American Red Cross • Atlanta, GA, United States
    Full-time
    Please use Google Chrome or Mozilla Firefox when accessing Candidate Home.By joining the American Red Cross you will touch millions of lives every year and experience the greatness of the human spi...Show more
    Last updated: 9 days ago • Promoted
    Director of Risk Management

    Director of Risk Management

    TRC Talent Solutions • Buckhead, GA, US
    Full-time
    TRCTalent is working alongside a leading data center firm that is seeking a full time Risk Management Director for their corporate office. Position requires a bachelor's degree, extensive experi...Show more
    Last updated: 20 days ago • Promoted
    Highly Protected Risk Engineer

    Highly Protected Risk Engineer

    The Misch Group • Atlanta, GA, US
    Full-time
    We focus on delivering efficient risk management solutions directly to clients, specializing in property risk surveys for large commercial properties. Our technology-driven approach to field data co...Show more
    Last updated: 8 days ago • Promoted
    Senior Risk Management Consultant (Georgia-Metro Atlanta)

    Senior Risk Management Consultant (Georgia-Metro Atlanta)

    Founders Insurance • Duluth, GA, US
    Full-time
    Utica National Insurance Group, our 1,300 employees nationwide live our corporate promise every day : to make people feel secure, appreciated, and respected. We are an "A" rated, $1.B award...Show more
    Last updated: 2 days ago • Promoted
    Sr. Engineer, Regulatory Compliance Oglethorpe Power Corporation Location : Georgia Category : En[...]

    Sr. Engineer, Regulatory Compliance Oglethorpe Power Corporation Location : Georgia Category : En[...]

    Electricenergyonline • Tucker, GA, US
    Full-time
    The primary role of this position is to provide engineering and compliance expertise in connection with OPC's ERO Compliance Program, including CIP Standards. This will involve coordination with pla...Show more
    Last updated: 8 days ago • Promoted
    EHS Manager

    EHS Manager

    Wabash • Griffin, GA, United States
    Full-time
    As an EH&S Manager, you will work on a variety of risk reduction, continuous improvement, regulatory, and culture-based projects. Activities include, but are not limited to, daily interaction with a...Show more
    Last updated: 10 days ago • Promoted
    Development Inspector

    Development Inspector

    Coweta County • Newnan, GA, US
    Full-time
    Announcement Open Until Filled.Dept / Div : Community Development / N / A .Performs intermediate skilled technical work inspecting development construction sites for compliance with Federal, State and l...Show more
    Last updated: 30+ days ago • Promoted
    Cybersecurity Engineer - Viasat Government

    Cybersecurity Engineer - Viasat Government

    Viasat • Duluth, GA, United States
    Full-time
    At Viasat, we're on a mission to deliver connections with the capacity to change the world.For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries arou...Show more
    Last updated: 30+ days ago • Promoted
    System Safety Engineer - Level 3

    System Safety Engineer - Level 3

    Lockheed Martin • Marietta, GA, US
    Full-time
    You will be a system safety engineer for the AMMM System Safety Team and support System Safety Engineering efforts for Air Mobility and Maritime Missions aircraft. Our team is team is responsible fo...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Security Risk Management Engineer

    Cyber Security Risk Management Engineer

    Viasat • Duluth, GA, United States
    Full-time
    At Viasat, we're on a mission to deliver connections with the capacity to change the world.For more than 35 years, Viasat has helped shape how consumers, businesses, governments and militaries arou...Show more
    Last updated: 16 days ago • Promoted
    Consultant Engineer (Hiring Immediately)

    Consultant Engineer (Hiring Immediately)

    FM • Smyrna, GA, US
    Part-time
    FM is one of the worlds largest risk management and industrial property insurance organizations.With 76 office locations in over 60 countries worldwide, FM provides specialized property protection ...Show more
    Last updated: 1 day ago • Promoted
    Compliance Engineer

    Compliance Engineer

    Spectrum Plastics Group, A DuPont Business • Alpharetta, GA, US
    Full-time
    Spectrum Plastics Group, A DuPont Business.Spectrum Plastics Group, A DuPont Business.Essential Duties And Responsibilities. In collaboration with the Product Stewardship and Regulatory (PS&R) o...Show more
    Last updated: 8 days ago • Promoted
    Senior Risk Consultant II - Natural Resources & Construction

    Senior Risk Consultant II - Natural Resources & Construction

    Allianz Commercial • Alpharetta, GA, US
    Full-time
    Senior Risk Consultant II - Property Engineer.Base pay range : $98,700 – $169,800 per year.Allianz Commercial (AzC) provides risk consultancy, Property-Casualty insurance solutions, and alternative ...Show more
    Last updated: 5 days ago • Promoted
    Consultant Engineer

    Consultant Engineer

    FM • AUSTELL, Georgia, United States
    Full-time
    FM is one of the world’s largest risk management and industrial property insurance organizations.With 76 office locations in over 60 countries worldwide, FM provides specialized property protection...Show more
    Last updated: 27 days ago • Promoted
    Manager, Risk Financing and Analytics

    Manager, Risk Financing and Analytics

    MCKESSON • Alpharetta, GA, United States
    Full-time
    McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare.We are known for delivering insights, products, and services that make quality care more accessibl...Show more
    Last updated: 11 days ago • Promoted
    Governance Risk & Compliance Manager

    Governance Risk & Compliance Manager

    Georgia Tech • Atlanta, GA, United States
    Full-time +1
    Georgia Tech prides itself on its technological resources, collaborations, high-quality student body, and its commitment to building an outstanding and diverse community of learning, discovery, and...Show more
    Last updated: 3 days ago • Promoted
    Director of Risk and Controls Revitalization

    Director of Risk and Controls Revitalization

    Landis+Gyr • Alpharetta, GA, US
    Full-time
    Landis+Gyr empowers utilities and consumers to optimize energy usage through advanced metering, grid-edge intelligence, and powerful data analytics. Today, our global team of about.Landis+Gyr : Direc...Show more
    Last updated: 5 days ago • Promoted