Demo

Security GRC Engineer

CWILL
Cary, NC Full Time
POSTED ON 5/30/2026
AVAILABLE BEFORE 7/30/2026

About Us

CWILL a fast-growing Shopify SaaS startup company serving global (primarily US/EU) merchants. With strong product-market fit and expanding US operations, we are building our local security and compliance capabilities to meet global data privacy standards.

Role Overview

We are looking for a Security GRC (Governance, Risk, and Compliance) Engineer to drive data compliance governance and audit execution.

This role focuses on building practical, enforceable, and auditable controls around data access, data lifecycle, product data usage, and cross-border data flows.

This is a hands-on, execution-focused role working directly with data systems and audit processes (not a policy-only role).

Responsibilities

1. Data Compliance Governance

  • Support US data compliance requirements (e.g., CCPA, EO 14117)
  • Perform gap analysis and define remediation plans
  • Design and implement controls for: sensitive data classification, access governance, data lifecycle management
  • Build processes for data subject rights (deletion, access, portability)
  • Participate in product and engineering reviews (e.g., DPIA)
  • Support compliance for new features, data use cases, and vendor/cross-border scenarios

2. Compliance & Audit Execution

  • Support SOC 2 readiness and audit execution
  • Conduct access reviews, log validation, and anomaly detection
  • Maintain audit records and generate compliance reports
  • Build or improve automated evidence collection (e.g., scripting)
  • Work with internal teams and external auditors to provide audit evidence

This is a hands-on, execution-focused role working directly with data systems and audit processes (not a policy-only role).

1. Must-have:

  • Authorized to work in the United States
  • Mandarin preferred for day-to-day collaboration
  • Bachelor’s degree or above in Computer Science, Information Security, or a related technical field
  • 3–5 years of experience in Security, GRC, Data Security, or Data Compliance
  • Hands-on experience with at least one compliance framework (e.g., SOC 2, CCPA, GDPR, 14117), beyond policy or documentation
  • Practical experience in data compliance governance, including: sensitive data identification and classification, access control and access governance, data lifecycle management (storage, usage, deletion, portability)
  • Ability to work with data systems (e.g., databases, data flows, APIs) and translate compliance requirements into technical implementations
  • Basic technical capability (e.g., Python, Golang, or scripting) to support audit automation, data validation, or tooling
  • Strong cross-functional communication skills, with the ability to work closely with engineering, product, data, and infra teams

2. Nice-to-have:

  • Relevant certifications such as CISSP, CISM, or CIPP/US
  • Experience in SaaS / e-commerce platforms (e.g., Shopify ecosystem) or third-party integrations
  • Background in data governance, data platforms, or analytics
  • Familiarity with cross-border data transfer compliance
  • Understanding of web accessibility standards (e.g., WCAG, ADA) and related privacy/security considerations

Language:

  • Mandarin (Required)

Pay: $120,000.00 - $160,000.00 per year

  • 401(k) matching
  • Flexible schedule
  • Health insurance
  • Paid time off
  • Vision insurance

Salary : $120,000 - $160,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security GRC Engineer?

Sign up to receive alerts about other jobs on the Security GRC Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$83,010 - $104,507
Income Estimation: 
$105,259 - $133,442
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at CWILL

  • CWILL Pomona, CA
  • About Us CWILL a fast-growing Shopify SaaS startup company serving global (primarily US/EU) merchants. With strong product-market fit and expanding US oper... more
  • 4 Days Ago


Not the job you're looking for? Here are some other Security GRC Engineer jobs in the Cary, NC area that may be a better fit.

  • Deloitte Raleigh, NC
  • Cyber - SAP Security and GRC Manager Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our... more
  • 4 Days Ago

  • Deloitte Raleigh, NC
  • Cyber - SAP Security and GRC Access Consultant Our Deloitte Cyber team understands the unique challenges and opportunities businesses face in cybersecurity... more
  • 23 Days Ago

AI Assistant is available now!

Feel free to start your new journey!