xAI
Security Engineer - GRC Fintech & Financial Services
About this role
SpaceXAI seeks an experienced GRC Engineer to design and operate compliance infrastructure for fintech and financial services operations. You'll architect automated compliance systems, manage regulatory relationships, and embed controls into engineering practices across PCI DSS, NYDFS, and FFIEC frameworks.
What you'll do
- Own and evolve financial services compliance posture across PCI DSS, NYDFS, FFIEC, and related banking regulations
- Build Compliance-as-Code capabilities with policy automation, continuous evidence collection, and CI/CD integration
- Operate and extend GRC platforms like Vanta for control mapping, evidence management, and continuous monitoring
- Partner with engineering and architecture teams to translate regulatory requirements into concrete technical implementations
- Design and validate technical controls for fintech environments including segmentation, access control, logging, and encryption
- Lead risk assessments for new products, payment flows, vendors, and architectural changes affecting compliance posture
What they're looking for
- PCI DSS and fintech regulatory compliance (NYDFS, FFIEC)
- Compliance-as-Code and GRC automation tools (Vanta, similar platforms)
- Technical control implementation (IAM, logging, encryption, network segmentation)
- Cloud infrastructure knowledge (AWS, GCP, Azure)
- Security architecture and risk assessment
- GDPR and CCPA data privacy frameworks
- Auditor relations and regulatory communication
- Security policy and standards development
Opens the application — the Jobs AI extension fills it for you. Set up autofill
Opens the official application on the employer’s site. No login required.
xAI
xAI builds advanced AI infrastructure and systems, including the Grok model inference platform and Colossus GPU cluster. The company is hiring Mechanical, Electrical, and Facilities Engineers to design and maintain its data center operations, as well as Software Engineers to optimize high-performance inference systems and datacenter networking.
View all jobs at xAILikely interview questions
- Walk us through your experience implementing PCI DSS controls in a production fintech environment—what were the most complex segmentation or scoping challenges you faced?
- Describe a Compliance-as-Code initiative you've led: what tools did you use, how did you reduce manual evidence collection, and what adoption barriers did you overcome?