Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy, and consent to receive emails from Rise
Jobs / Job page
Founding Security Engineer – Governance, Risk & Compliance (GRC) image - Rise Careers
Job details

Founding Security Engineer – Governance, Risk & Compliance (GRC)

At Sift, we're redefining how modern machines are built, tested, and operated. Our platform gives engineers real time observability over high frequency telemetry, eliminating bottlenecks and enabling faster, more reliable development.

Sift was born from our work at SpaceX on Dragon, Falcon, Starlink, and Starship, where scaling telemetry, debugging flight systems, and ensuring mission reliability demanded new infrastructure. Founded by a team from SpaceX, Google, and Palantir, Sift is built for mission critical systems where precision and scalability are non-negotiable.

As Sift’s first dedicated Security Engineer, you will not just maintain a security checklist, you will define the posture, architecture, and practices that keep our products and infrastructure secure in the most demanding environments. You will be both hands on and strategic, building controls, automating compliance, and working directly with customers, auditors, and internal teams to inspire confidence in our platform.

About the Role

The Security Engineer – GRC will own Sift’s security posture end to end, blending technical security engineering with governance, risk, and compliance leadership. You will set the standard for how we protect our systems and data, ensuring we are ready to meet and exceed the expectations of aerospace, defense, and enterprise customers.

Your Impact:

  • Set the Standard: Establish a best in class security posture across our product and infrastructure. Make security a competitive advantage, not just a compliance checkbox.

  • Lead Compliance by Design: Translate frameworks like SOC 2, NIST 800 171, CMMC, and FedRAMP into actionable engineering and operational practices. Oversee our Risk Management Framework (RMF) lifecycle and apply security standards across cloud, on prem, and air gapped environments.

  • Engineer the Controls: Architect and deploy security tooling, secure CI/CD pipelines, and observability systems. Implement zero trust networking, encryption, and access control across environments.

  • Enable the Team: Provide approachable, relevant training to engineers and operations teams. Guide secure procurement and use of third party tools and libraries.

  • Earn Trust Externally: Represent Sift’s security posture clearly and credibly to customers, partners, auditors, and government stakeholders.

In This Role, You’ll

  • Design, implement, and maintain secure cloud native infrastructure (AWS GovCloud, Kubernetes, OpenShift, on prem, and air gapped)

  • Build secure CI/CD pipelines with integrated scanning and policy enforcement

  • Deploy and manage observability and security tooling (SIEM, EDR, Datadog, ELK, Prometheus, Grafana)

  • Implement zero trust networking, VPNs, and encryption best practices

  • Maintain policies, procedures, and documentation that withstand customer and auditor scrutiny

  • Lead security readiness for customer and government requirements

  • Provide security awareness training for internal teams and be the point of contact for all security questions

The Skillset You’ll Bring

  • 5+ years in cybersecurity, product security, or cloud security roles, ideally in high assurance or regulated industries

  • Hands on experience securing AWS and Kubernetes based environments, with strong infrastructure as code practices

  • Proven track record leading or supporting compliance initiatives such as SOC 2, NIST 800 171, CMMC, FedRAMP, or ISO 27001

  • Deep understanding of network, endpoint, and identity security principles

  • Experience with security tooling and integration into operational workflows

  • Ability to translate compliance requirements into clear, actionable engineering work

  • Strong communication skills, able to represent security posture to technical and non technical audiences

  • Excited to operate as a team of one early on, with the vision to build and lead a security function over time

What We’re Looking For

  • Someone motivated by the responsibility of securing technology that supports national security and high stakes engineering programs

  • A builder who can balance pragmatism with rigor in a fast moving startup environment

  • A collaborator who can partner across engineering, operations, and go to market teams to make security part of the culture

  • Someone comfortable engaging directly with customers, auditors, and partners to explain and advocate for our security posture

Location:

The Sift team is based in El Segundo. We collaborate in person two times per week, Monday and Thursday. We work closely with hardware companies, many of which are based in LA, building everything from autonomous vehicles to spacecraft. As a customer-centric company, being nearby for site visits and collaboration is essential. Sift is open to relocating you to LA.

Salary range: $170,000 - $220,000 per year. Plus equity and benefits.

Eligibility:

US Person Required: Must be a U.S. Citizen or Green Card Holder due to ITAR (International Traffic in Arms Regulations) / EAR (Export Administration Regulations) compliance requirements.

Average salary estimate

$195000 / YEARLY (est.)
min
max
$170000K
$220000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

Similar Jobs
Photo of the Rise User

A remote contract IT Analyst role at Connection specializing in Tenable Vulnerability Management and cross-team remediation coordination.

Photo of the Rise User

Senior Director of Identity Management at Fannie Mae to lead enterprise-wide identity strategy and operations in support of secure and compliant access management.

Photo of the Rise User
CVS Health Hybrid Work At Home-Georgia
Posted 1 hour ago

Provide hands-on Level 1-2 IT support for CVS Health clinics in the Atlanta area as a Field Technician working remotely with frequent onsite visits.

Posted 52 minutes ago

Provide hands-on Level 1 and Level 2 IT support at Mach Industries to keep workstations, networks, and enterprise services running smoothly for a fast-growing defense technology team.

Photo of the Rise User

Capital One is hiring a Senior Director, Information Security Officer to lead product security advisory services and integrate cyber risk management into a major line of business.

godirect Hybrid United States-Remote
Posted 13 hours ago

Voya Financial seeks a detail-oriented IT Auditor to perform testing of internal IT controls, support audit execution across business lines, and help improve control effectiveness while working remotely with occasional office travel.

Photo of the Rise User
City of New York On-Site United States, New York, Manhattan, 7th Ave, New York English Academy
Posted 24 hours ago
Photo of the Rise User
Inclusive & Diverse
Growth & Learning
Mission Driven
Diversity of Opinions

Drive and lead the Identity and Access Management function remotely at Included Health, securing enterprise access and guiding a high-performing team.

Photo of the Rise User
Rea Hybrid No location specified
Posted 4 hours ago

Experienced information security professional needed to lead Rea’s security program, manage risk and compliance, and drive continuous improvement across cloud, on-prem, and hybrid environments.

Peter Millar LLC Hybrid Research Triangle Park, NC
Posted 22 hours ago

An IT Systems Administrator role in a growth-focused company seeking a skilled professional to manage and support network and server environments in a hybrid work setting.

Photo of the Rise User
Medical Home Network Hybrid 180 N Stetson Ave Ste 600-1, Chicago, IL 60601
Posted 19 hours ago

As Director of Enterprise IT at Medical Home Network, you will lead IT strategy, operations, and security to enable digital transformation and compliance across a growing healthcare-focused organization.

Photo of the Rise User
Posted 10 hours ago

Guardant Health seeks a Senior Network Infrastructure Engineer to design and operate secure, scalable network infrastructure across campus, data center, and cloud environments that power its precision oncology platform.

Posted 12 hours ago

CGS is hiring a mid-level ServiceNow Developer to implement HR Service Delivery features, build ServiceNow applications, and support Agile delivery for a major federal client.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
August 14, 2025
Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!