GRC Engineer

Bumble Inc. is a company that prioritizes the security of its customers and operates in the online dating and social networking space.
Security
Mid-Level Software Engineer
Hybrid
Cybersecurity

Description For GRC Engineer

At Bumble Inc., the security of our customers is a top priority. As a GRC (Governance, Risk, and Compliance) Engineer, you will play a crucial role in assuring the controls that protect our users' data, company infrastructure, and global operations. We aim to achieve the highest levels of security through a strong program of controls assurance, process governance, and risk management.

We're looking for someone with an engineering-led mindset to build out GRC frameworks, automation, and integration with our security and privacy portfolios. You should be tenacious in your curiosity about security risks, both technically and organizationally, and work cross-functionally to resolve any uncertainties.

In this role, you'll be responsible for finding innovative ways to collect, normalize, analyze, and report on our security posture. We want to become a trusted source for risk management, providing data-driven insights to internal stakeholders and executives. You'll champion automation in control design for frameworks such as SOX, ISO27001, PCI-DSS, and NIST.

Key responsibilities include designing and implementing automation for partner trust and compliance activities, improving reporting and metrics within GRC, and integrating GRC systems with cross-functional stakeholder systems. You'll be the subject matter expert for control validation in the Security team.

The ideal candidate will have experience with scripting languages like Python and Go, familiarity with RESTful APIs, and knowledge of security data and BI tooling. You should have a strong understanding of various regulations and controls, and a passion for risk management and information security.

Join us at Bumble Inc., where you'll work in a hybrid environment, contributing to the security of a leading online dating and social networking platform. If you're excited about developing and growing our GRC Engineering capabilities, we want to hear from you!

Last updated 4 months ago

Responsibilities For GRC Engineer

  • Design and implement automation for partner trust, assurance, compliance, and regulatory activities
  • Improve reporting, metrics and assurance within GRC and with stakeholders
  • Promote and demonstrate the relevance and importance of security controls
  • Be the source of automation and engineering-led thinking for security control assessment, evidence collection, and summary reporting
  • Engage stakeholders in a frictionless, empathetic way
  • Integrate GRC systems with cross-functional stakeholder systems
  • Be the subject matter expert for control validation in the Security team

Requirements For GRC Engineer

Python
Go
  • Can develop scripts in various scripting languages (Python, Go, etc.) and peer review code / implementation / automation scripts
  • Familiarity with RESTful APIs
  • Experience with security data and BI tooling such as Bigquery, Snowflake, Looker, Tableau, etc.
  • Knowledge of integrations with Slack, Jira
  • Strong and demonstrable practical experience in visualising security control information
  • Knowledge of various regulations and controls (SOX, PCI, GDPR, ISO27001, NIST etc)
  • Passion for risk management, information security, metrics, efficient security operations, and effective control designs
  • Excellent analytical, problem solving and interpersonal skills

Interested in this job?

Jobs Related To Bumble Inc. GRC Engineer

Threat Detection Engineer

Threat Detection Engineer position at Bumble Inc., focusing on security event monitoring, threat investigation, and response to protect user data and company infrastructure.

Application Security Engineer

Application Security Engineer position at Bumble Inc., focusing on protecting user data and securing applications for millions of users worldwide.

Software Development Engineer, AWS Route 53 Resolver, Cloud Security Service Development

Mid-level Software Development Engineer role at AWS Route 53 team, focusing on zero trust network access and cloud security service development.

Field Quality Engineer, Advanced Engineering Support Team

Field Quality Engineer position at Ring focusing on technical support, quality assurance, and troubleshooting for smart home security products.

Software Dev Engineer II, Ads Security

Software Engineer II position at Amazon's Ads Security team, focusing on building secure, scalable solutions for Amazon's advertising platform.