Left arrow iconBack to search

Data Engineer – Cybersecurity, GRC & AI

B5 Recruiting
Posted 15 days ago, valid for 22 days
Salary

Competitive

Contract type

Contract

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.

This is a remote position.

Data Engineer – Cybersecurity, GRC & AI

B5 Recruiting is seeking a hands-on Data Engineer for a client opportunity supporting cybersecurity, Governance, Risk, and Compliance (GRC), and AI-enabled automation.

This role will build and maintain the data pipelines, models, and integrations behind risk reporting, controls monitoring, compliance evidence, and AI-assisted security workflows. You will help deliver reliable production solutions with strong data governance, traceability, privacy protections, and audit readiness.

The ideal candidate combines practical data engineering and software development experience with an understanding of risk and compliance requirements in complex enterprise environments.

What You’ll Do

  • Develop scalable batch and streaming pipelines to collect, transform, and organize security data, control evidence, and compliance records within governed data platforms.

  • Create data models supporting risk indicators, issue tracking, risk acceptance, control testing, audit documentation, and policy exceptions. Make this information accessible through reporting, dashboards, and self-service analytics.

  • Establish data validation, metadata management, lineage tracking, and access controls to improve data reliability and support consistent, traceable audit evidence.

  • Build AI-assisted solutions for cyber and GRC teams, including evidence summaries, control testing support, policy search, security investigations, ticket routing, and exception analysis. Apply retrieval-augmented generation (RAG), agentic workflows, and orchestration where appropriate.

  • Connect data platforms with GRC tools and enterprise applications through APIs, event-driven integrations, and connectors. Implement monitoring and operational documentation to support production reliability.

  • Collaborate with cybersecurity, risk, compliance, privacy, and legal teams to turn business requirements into technical controls and clear implementation guidance.

What You Bring

  • Ability to take ownership of deliverables while working effectively across teams.

  • Clear written and verbal communication, including the ability to explain technical concepts to business stakeholders.

  • Strong attention to accuracy, documentation, and overall delivery quality.

  • Experience leading projects or workstreams and providing practical guidance to colleagues.

  • Ability to balance competing priorities, meet deadlines, and build productive stakeholder relationships.

About the Team

You will work with a cyber engineering team using modern data platforms and AI automation to strengthen security, operational resilience, and compliance. The team develops reusable architectures, implementation tools, and governance practices that help organizations expand and improve their cyber and GRC capabilities.

Required Qualifications

  • Bachelor’s degree or equivalent practical experience.

  • At least 4 years of experience in data engineering and software development, with hands-on Python and SQL skills.

  • Experience delivering production data pipelines and models for batch processing, streaming, or both.

  • Experience deploying solutions using cloud platforms, containers, infrastructure as code, APIs, and secure secrets management.

  • Practical experience applying data governance and security controls, including data classification, protection of personally identifiable information (PII), least-privilege access, encryption, retention policies, audit logs, and metadata or lineage management.

  • Experience supporting GRC processes such as risk reporting, audit requests, control monitoring and testing, compliance measurement, and integrations with GRC platforms.

  • Experience developing LLM-enabled applications using RAG, vector or hybrid search, tool or function calling, evaluation and monitoring, protections against prompt injection, and secure data access.

  • Willingness to travel up to 25%, depending on project needs.

  • Limited immigration sponsorship may be available for this opportunity.

Preferred Qualifications

  • Experience in consulting or supporting large enterprise clients.

  • Development experience with Java, Go, or JavaScript.

  • Experience connecting platforms such as ServiceNow GRC, Archer, OneTrust, or BigID and building evidence pipelines aligned with control requirements.

  • Experience processing data from SIEM, SOAR, vulnerability management, identity, or cloud security posture platforms.

  • Experience putting LLMOps or MLOps practices into production, including evaluation, monitoring, version control, and governance.

  • Relevant security or cloud certifications, such as CompTIA Security+, CISM, CISA, CISSP, or a cloud platform certification.






Learn more about this Employer on their Career Site

Apply now in a few quick clicks

By applying, a Sonicjobs account will be created for you. Sonicjobs's Privacy Policy and Terms & Conditions will apply.

SonicJobs' Terms & Conditions and Privacy Policy also apply.