Senior Security Engineer GRC Frameworks and AI Governance
SpaceXAI builds frontier AI models and products including the Grok conversational assistant and a multimodal developer API.
Funding history
About SpaceXAI
SpaceXAI is a US-based AI company focused on accelerating scientific discovery and understanding the universe through reasoning, voice, image, video, and generative AI systems. Formerly xAI, it was acquired by SpaceX effective February 2, 2026, while continuing to operate the x.ai site and services.
Skills
Candidate Availability
Required and preferred rules are kept separate and reflect the wording in the original posting.
About the Role
You will own and scale security and AI-governance compliance. You will implement controls, automate compliance evidence, manage GRC systems and risk assessments, embed requirements in architecture and CI/CD, and coordinate with engineers, auditors, regulators, legal, and product stakeholders.
Requirements
- Bachelor's degree in computer science, information security, cybersecurity, engineering, or a STEM field.
- 8+ years of GRC, security compliance, or technology audit experience with hands-on GRC engineering responsibilities.
- Experience implementing security compliance frameworks in AWS, GCP, or Azure environments.
- Expert working knowledge of multiple listed security and AI frameworks.
- Experience with Compliance-as-Code and GRC automation tooling.
- Ability to assess control objectives against IT and cloud configurations and collaborate on remediation.
- U.S. citizenship, nationality, lawful permanent residency, refugee or asylee status, or eligibility for required U.S. Department of State authorizations.
Responsibilities
- Execute security compliance implementation and audits across core security and AI frameworks.
- Build Compliance-as-Code, continuous compliance, evidence pipelines, and workflow monitoring.
- Operate and extend GRC platforms such as Vanta.
- Embed compliance requirements into engineering designs.
- Maintain corporate policies, standards, and procedures.
- Identify, assess, and prioritize AI, cybersecurity, privacy, intellectual-property, and cloud risks.
- Lead risk assessments and compliance reviews for products, models, features, and architectural changes.
- Manage relationships with auditors, assessors, and regulators.
- Educate teams on security and compliance controls.
Benefits
- Equity
- Medical coverage
- Vision coverage
- Dental coverage
- 401(k) retirement plan
- Short-term disability insurance
- Long-term disability insurance
- Life insurance
- Discounts and perks
