Payabli Logo

Payabli

GRC Engineer

Posted 8 Days Ago
Remote
Hiring Remotely in USA
Mid level
Remote
Hiring Remotely in USA
Mid level
Operate and improve Payabli's GRC program: maintain Drata, map controls across SOC 2/PCI/ISO/NIST, perform risk and vendor assessments, manage access reviews, support audits, and automate evidence collection and compliance reporting.
The summary above was generated by AI

Payabli is a next-generation Payments Infrastructure and Monetization Platform purpose-built for vertical software companies. Through a single, developer-friendly API with low-code embedded payment components, Payabli enables platforms to seamlessly embed, monetize, and operationalize payments—making payments a core part of their platform and business model.

By unifying payment acceptance, payment issuance, and advanced payment operations tooling, Payabli empowers software companies to manage and move money through a single infrastructure stack that delivers total control over the payments experience. Built to scale with PCI DSS 4.0 and SOC 2-compliant security, Payabli’s infrastructure delivers enterprise-grade reliability and trust while leveraging AI-driven intelligence to enhance visibility, streamline operations, and drive revenue growth.

Backed by leading fintech investors including QED Investors, Fika Ventures, TTV Capital, and Bling Capital, Payabli is setting the standard for embedded payments infrastructure powering the next generation of vertical SaaS.

Role Summary

Payabli is seeking a GRC Engineer to drive our governance, risk, and compliance program by implementing, operating, and continuously improving controls aligned with SOC 2, PCI DSS, ISO, and NIST frameworks. This role partners closely with Security, Engineering, and IT to ensure compliance requirements are operationalized, scalable, and audit ready in a modern cloud and serverless environment.

Key Responsibilities:
  • Own and maintain the compliance platform (Drata), including control mapping, evidence collection, continuous monitoring, and audit workflows

  • Manage control documentation, policies, procedures, and supporting artifacts across multiple compliance frameworks

  • Perform risk assessments, vendor security reviews, and control gap analyses, and track remediation through to completion

  • Partner with Security, IT, and Engineering teams to ensure technical and administrative controls align with documented policies and compliance requirements

  • Support internal and external audits, including SOC 2, PCI DSS, and customer security reviews

  • Conduct periodic user access reviews and assist with access governance and RBAC validation

  • Develop and maintain compliance reporting, metrics, and executive ready summaries

  • Identify and implement automation opportunities to streamline evidence collection, access reviews, and policy lifecycle management

Required Qualifications:
  • Hands on experience operating and maintaining a compliance platform such as Drata or similar

  • Strong understanding of GRC fundamentals, including control design, evidence management, and audit readiness

  • Experience performing user access reviews and supporting identity and access governance processes

  • Working knowledge of security and compliance frameworks such as PCI DSS, SOC 2, ISO 27001 or ISO 42001, and NIST

  • Experience collaborating with technical teams to validate cloud, application, and security controls

  • Strong documentation skills with the ability to translate technical controls into clear compliance narratives

Preferred Qualifications:
  • Experience using Wiz or similar cloud security posture management tools

  • Familiarity with cloud native and serverless architectures

  • Security certification such as Security+, CISSP, CISM, or similar is a plus

  • Prior experience in fintech, payments, or regulated SaaS environments

Why Payabli
  • Build and shape a modern GRC program in a fast growing fintech

  • Work closely with security and engineering in a cloud native environment

  • High ownership role with visibility across the organization

  • Competitive compensation and benefits with a strong remote first culture

What we can offer you

  • Competitive base

  • Equity package

  • 100% remote (US-based)

  • Medical, dental, and vision

  • 401(k) program (eligible after 3 months)

Unlimited PTO

We build technology that gets noticed and a workplace where people want to grow their careers.. Our work has been recognized by some of the industry’s most respected organizations, including the 2026 Forbes Fintech 50 list, which highlights the most innovative private companies in financial technology, Inc.’s 2025 Best Workplaces, and Built In’s 2026 Best Places to Work in Miami.

Payabli Is an equal opportunity employer and value a diverse, inclusive workplace.


Principals only. No external agency submissions. Candidates must apply directly; We will not accept submissions from third-party recruiters or staffing agencies.

Top Skills

Drata,Wiz,Cloud Native,Serverless,Rbac,Identity And Access Governance,Pci Dss,Soc 2,Iso 27001,Iso 42001,Nist,Cspm

Similar Jobs

14 Days Ago
Easy Apply
In-Office or Remote
2 Locations
Easy Apply
148K-175K Annually
Senior level
148K-175K Annually
Senior level
Healthtech • Pharmaceutical • Telehealth
Lead audit readiness and continuous compliance automation: manage Vanta, perform risk assessments and vendor reviews, support SOC 2/HIPAA/HITRUST audits, maintain cyber risk register, and build GRC reporting dashboards with BI tools.
Top Skills: Vanta,Drata,Secureframe,Aws,Azure,Gcp,Looker,Hex,Python,Javascript,Apis,Tines,Soc 2,Hipaa,Hitrust,Nist,Pci
3 Days Ago
Remote
United States
83K-138K Annually
Mid level
83K-138K Annually
Mid level
Retail • Sports
The Sr. Systems Engineer will design, implement, and maintain GRC technology, collaborate with security teams, develop software, and support privacy initiatives while ensuring compliance with regulations.
Top Skills: ArcherAWSAzureGCPOnetrustServicenow
3 Days Ago
Remote
2 Locations
147K-184K Annually
Senior level
147K-184K Annually
Senior level
Information Technology
As a Senior GRC Engineer, you will develop and implement GRC frameworks, automate compliance processes, and collaborate with cross-functional teams to enhance security and compliance in products.
Top Skills: AWSAzureGoGCPPythonSIEM

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account