Payabli Logo

Payabli

GRC Engineer

Posted Yesterday
Be an Early Applicant
Remote
Hiring Remotely in USA
Mid level
Remote
Hiring Remotely in USA
Mid level
Operate and improve Payabli's GRC program: maintain Drata, map controls across SOC 2/PCI/ISO/NIST, perform risk and vendor assessments, manage access reviews, support audits, and automate evidence collection and compliance reporting.
The summary above was generated by AI

Payabli is a next-generation Payments Infrastructure and Monetization Platform purpose-built for vertical software companies. Through a single, developer-friendly API with low-code embedded payment components, Payabli enables platforms to seamlessly embed, monetize, and operationalize payments—making payments a core part of their platform and business model.

By unifying payment acceptance, payment issuance, and advanced payment operations tooling, Payabli empowers software companies to manage and move money through a single infrastructure stack that delivers total control over the payments experience. Built to scale with PCI DSS 4.0 and SOC 2-compliant security, Payabli’s infrastructure delivers enterprise-grade reliability and trust while leveraging AI-driven intelligence to enhance visibility, streamline operations, and drive revenue growth.

Backed by leading fintech investors including QED Investors, Fika Ventures, TTV Capital, and Bling Capital, Payabli is setting the standard for embedded payments infrastructure powering the next generation of vertical SaaS.

Role Summary

Payabli is seeking a GRC Engineer to drive our governance, risk, and compliance program by implementing, operating, and continuously improving controls aligned with SOC 2, PCI DSS, ISO, and NIST frameworks. This role partners closely with Security, Engineering, and IT to ensure compliance requirements are operationalized, scalable, and audit ready in a modern cloud and serverless environment.

Key Responsibilities:
  • Own and maintain the compliance platform (Drata), including control mapping, evidence collection, continuous monitoring, and audit workflows

  • Manage control documentation, policies, procedures, and supporting artifacts across multiple compliance frameworks

  • Perform risk assessments, vendor security reviews, and control gap analyses, and track remediation through to completion

  • Partner with Security, IT, and Engineering teams to ensure technical and administrative controls align with documented policies and compliance requirements

  • Support internal and external audits, including SOC 2, PCI DSS, and customer security reviews

  • Conduct periodic user access reviews and assist with access governance and RBAC validation

  • Develop and maintain compliance reporting, metrics, and executive ready summaries

  • Identify and implement automation opportunities to streamline evidence collection, access reviews, and policy lifecycle management

Required Qualifications:
  • Hands on experience operating and maintaining a compliance platform such as Drata or similar

  • Strong understanding of GRC fundamentals, including control design, evidence management, and audit readiness

  • Experience performing user access reviews and supporting identity and access governance processes

  • Working knowledge of security and compliance frameworks such as PCI DSS, SOC 2, ISO 27001 or ISO 42001, and NIST

  • Experience collaborating with technical teams to validate cloud, application, and security controls

  • Strong documentation skills with the ability to translate technical controls into clear compliance narratives

Preferred Qualifications:
  • Experience using Wiz or similar cloud security posture management tools

  • Familiarity with cloud native and serverless architectures

  • Security certification such as Security+, CISSP, CISM, or similar is a plus

  • Prior experience in fintech, payments, or regulated SaaS environments

Why Payabli
  • Build and shape a modern GRC program in a fast growing fintech

  • Work closely with security and engineering in a cloud native environment

  • High ownership role with visibility across the organization

  • Competitive compensation and benefits with a strong remote first culture

What we can offer you

  • Competitive base

  • Equity package

  • 100% remote (US-based)

  • Medical, dental, and vision

  • 401(k) program (eligible after 3 months)

Unlimited PTO

We build technology that gets noticed and a workplace where people want to grow their careers.. Our work has been recognized by some of the industry’s most respected organizations, including the 2026 Forbes Fintech 50 list, which highlights the most innovative private companies in financial technology, Inc.’s 2025 Best Workplaces, and Built In’s 2026 Best Places to Work in Miami.

Payabli Is an equal opportunity employer and value a diverse, inclusive workplace.


Principals only. No external agency submissions. Candidates must apply directly; We will not accept submissions from third-party recruiters or staffing agencies.

Top Skills

Drata,Wiz,Cloud Native,Serverless,Rbac,Identity And Access Governance,Pci Dss,Soc 2,Iso 27001,Iso 42001,Nist,Cspm

Similar Jobs

7 Days Ago
Easy Apply
In-Office or Remote
2 Locations
Easy Apply
148K-175K Annually
Senior level
148K-175K Annually
Senior level
Healthtech • Pharmaceutical • Telehealth
Lead audit readiness and continuous compliance automation: manage Vanta, perform risk assessments and vendor reviews, support SOC 2/HIPAA/HITRUST audits, maintain cyber risk register, and build GRC reporting dashboards with BI tools.
Top Skills: Vanta,Drata,Secureframe,Aws,Azure,Gcp,Looker,Hex,Python,Javascript,Apis,Tines,Soc 2,Hipaa,Hitrust,Nist,Pci
4 Days Ago
Remote
United States
Senior level
Senior level
Artificial Intelligence • Information Technology • Software
Lead FedRAMP and CMMC compliance engagements: perform readiness assessments, author SSPs/POA&Ms, coordinate with 3PAOs, define authorization boundaries, manage continuous monitoring, and mentor delivery teams to achieve and sustain federal compliance.
Top Skills: 3PaoAws GovcloudAzure GovernmentC3PaoCmmc 2.0DfarsFedrampGcc HighNist Sp 800-171Nist Sp 800-53Poa&MSAPSarSprsSsp
19 Days Ago
Remote
U.S.
Senior level
Senior level
Software
The Staff Design Engineer at Vanta will develop user-centric features, enhance collaboration between teams, and advocate for quality in design and code while mentoring others.
Top Skills: CSSHTMLJavaScriptReactTypescript

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account