Chainalysis logo

Senior GRC Engineer, Trust

Chainalysis

MassachusettsFull-timePosted 3mo agoStill listed 4 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
No compensation found
Location
Massachusetts
Schedule
Full-time
Work Authorization
US work authorization required

Olive lists jobs from US employers, including remote roles you can work from the United States.

Job overview

Chainalysis is hiring a Senior GRC Engineer, Trust. The Senior GRC Engineer will lead technical control implementation, remediation work, and improve evidence gathering for Chainalysis's InfoSec organization. This role focuses on strengthening the control environment, supporting customer and regulatory expectations, and enabling business growth. The engineer will operate as a senior individual contributor, influencing cross-functional teams to build security and compliance into company operations.

Key focus areas include Partner with teams to implement and operationalize security and compliance controls., Own end-to-end remediation of compliance and security findings., and Build scalable evidence collection and control-testing workflows..

Successful candidates bring US Citizenship Required. Important skills include Cloud Security Controls, SaaS Security Controls, Regulated Technology Environment Security Controls, Repeatable Evidence Collection, Control Testing, and Remediation Workflows. Preferred (not required): AI Fluency, Trust Center Operations, Customer-facing Security And Compliance Request Workflows, and Identity And Access Management Controls.

Skills & qualifications

RequiredNice to have

Skills

Cloud Security ControlsSaaS Security ControlsRegulated Technology Environment Security ControlsRepeatable Evidence CollectionControl TestingRemediation WorkflowsCollaborationTranslating Control RequirementsCommunicationExplaining RiskExplaining TradeoffsExplaining Remediation PlansSOC 2ISO 27001Customer Security ReviewsInfluencing Cross-Functional WorkProviding GuidanceSystems-Minded ApproachAI FluencyTrust Center OperationsCustomer-Facing Security and Compliance Request WorkflowsIdentity and Access Management ControlsOktaMFA EnforcementGRC AutomationWorkflow ToolingBlockchainFintechAWSCloud ArchitectureTerraformInfrastructure as Code (IaC)VantaTrust Center WorkflowsJira

Qualifications

US Citizenship

Full job description

The InfoSec organization at Chainalysis helps protect the company, its products, and its customers as the business grows. The team works across security engineering, trust, governance, risk, and compliance to strengthen our control environment, support customer and regulatory expectations, and enable the business to move quickly with confidence. We partner closely across Product, Engineering, IT, Legal, and other cross-functional teams to build security and compliance into how Chainalysis operates. This role will contribute to that mission by improving the systems, processes, and technical controls that support a scalable security and compliance program.

We’re looking for a Senior GRC Engineer to lead technical control implementation, own remediation work end to end, and improve how evidence is gathered and maintained across the business. You’ll operate as a senior individual contributor at the Senior level, leading work of moderate scope through influence, cross-functional collaboration, and guidance rather than people management. Success in this role means reducing manual articulation, improving control effectiveness, and making it easier for Chainalysis to meet customer, audit, and security commitments at scale.

In this role, you’ll:

  • Partner with Product, R&D Engineering, Security Engineering and adjacent teams to implement and operationalize security and compliance controls across Chainalysis products.

  • Own end-to-end remediation of compliance and security findings, from gap identification through validation and closure.

  • Build scalable evidence collection and control-testing workflows that improve audit readiness and reduce manual effort.

  • Drive continuous control improvement across a segmented product suite, including pass-through security and compliance requirements where applicable.

  • Support product and risk review processes by helping teams translate requirements into practical technical and operational actions.

  • Advocate for a durable, scalable control environment that keeps pace with business growth and customer expectations.

  • Help shape GRC automation and stronger operating rhythms across the Trust organization.

We’re looking for candidates who have:

  • Experience implementing and operating security or compliance controls in a cloud, SaaS, or otherwise regulated technology environment.

  • Built repeatable evidence collection, control testing, or remediation workflows that improved audit readiness and reduced manual work.

  • Experience partnering cross-functionally with engineering, security, and business stakeholders to move control work from requirement to implementation.

  • The ability to translate customer, audit, or internal control requirements into clear technical actions for delivery teams.

  • Strong written and verbal communication skills, including the ability to explain risk, tradeoffs, and remediation plans to both technical and non-technical audiences.

  • Experience supporting assurance or compliance programs such as SOC 2, ISO 27001, customer security reviews, or similar control frameworks.

  • A track record of influencing cross-functional work, collaborating broadly, and providing guidance in a senior IC role.

  • A practical, systems-minded approach to improving controls without creating unnecessary friction for the business.

Nice to have experience:

  • Experience with Trust Center operations or customer-facing security and compliance request workflows.

  • Familiarity with identity and access management controls such as Okta and MFA enforcement.

  • Experience with GRC automation or workflow tooling that improves evidence collection, remediation tracking, or control monitoring.

  • Exposure to blockchain, fintech, or other high-trust environments where customer assurance and technical controls are tightly coupled.

Technologies we use:

  • AWS, Cloud Architecture

  • Terraform, Infrastructure as Code (IaC)

  • Vanta

  • Trust Center workflows

  • Jira

  • Okta

Please note: This position is ineligible for visa sponsorship. US Citizenship is required.

AI at Chainalysis AI is not a feature at Chainalysis - it is a new way of working. One that turns instructions into work done, and helps us move faster than the threats we're built to counter, and we expect our employees to take ownership of the output and ensure quality. As the world's most trusted blockchain analytics platform, Chainalysis sits at a rare intersection of proprietary data, regulatory relationships and crypto expertise that makes it uniquely placed to shape and lead the next era of AI-driven intelligence - and we expect everyone here, regardless of role, to be an active part of it.

AI fluency is tied directly to how we measure performance and how we plan to win. There is no substitute for your own curiosity. We provide the tools, workflows, and space to experiment - but the expectation is that you develop these capabilities yourself, bring ideas, and collaborate across teams to reinvent the way work gets done. We are not using AI to do less. We are using it to do what was never possible before.

About Chainalysis

Chainalysis is the blockchain data platform, making it easy to connect the movement of digital assets to real-world services. Powered by deep blockchain data and AI, organizations can investigate illicit activity, manage risk exposure, and develop innovative market solutions built on the industry's most trusted blockchain intelligence. Our mission is to build trust in blockchains, blending safety and security with an unwavering commitment to growth and innovation.

You belong here.

At Chainalysis, we believe that diversity of experience and thought makes us stronger. With both customers and employees around the world, we are committed to ensuring our team reflects the unique communities around us. We’re ensuring we keep learning by committing to continually revisit and reevaluate our diversity culture.

We encourage applicants across any race, ethnicity, gender/gender expression, age, spirituality, ability, experience and more. If you need any accommodations to make our interview process more accessible to you due to a disability, don't hesitate to let us know. You can learn more here . We can’t wait to meet you.

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.