Skip to content
NEXTMOVEFDE careers · United States

Sr. Security Engineer - GRC Frameworks & AI Governance

No longer in the current catalog. Last included 2026-09-09. Check the employer’s posting for availability.

Technologies

ISO 27001 · ISO 42001 · SOC2 · FedRAMP HIGH · DoD Cloud Computing SRG IL5/IL6 · NIST 800-53 · NIST 800-171 · CMMC · Risk Management Framework · STIG

About xAI

Builds Grok foundation models and ships them through a consumer assistant, developer/enterprise API, and the X platform, pairing frontier AI with owned social distribution and real-time data.

Private Late

Job description

The full responsibilities and requirements are on the employer’s site.

Read the job description
Source and classification

Internal deployment & tooling · Evidence for this classification:

compliance posture as SpaceXAI grows. You will set the standards the organization builds to, design and implement controls, and automate the unglamorous parts of compliance so a fast-moving team can ship safely. The ideal candidate combines deep fluency across modern security and AI frameworks with GRC engineering skills: you translate control requirements into technical implementations, partner with engineers to bake compliance into architecture and CI/CD, and replace point-in-time checklist work with continuous, engineered assurance. You will collaborate across engineering, legal, product, and leadership to keep our AI systems audit-ready across enterprise, commercial, and public-sector environments. This role may also include additional tasks and responsibilities as needed to support the team and evolving business priorities. RESPONSIBILITIES: Own and execute security compliance
More from the job description

SpaceXAI’s mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. Our team is small, highly motivated, and focused on engineering excellence. This organization is for individuals who appreciate challenging themselves and thrive on curiosity. We operate with a flat organizational structure. All employees are expected to be hands-on and to contribute directly to the company’s mission. Leadership is given to those who show initiative and consistently deliver excellence. Work ethic and strong prioritization skills are important. All employees are expected to have strong communication skills. They should be able to concisely and accurately share knowledge with their teammates. ABOUT THE ROLE: We are seeking an experienced Governance, Risk, and Compliance (GRC) Engineer to own and scale our security and AI governance compliance posture as SpaceXAI grows. You will set the standards the organization builds to, design and implement controls, and automate the unglamorous parts of compliance so a fast-moving team can ship safely. The ideal candidate combines deep fluency across modern security and AI frameworks with GRC engineering skills: you translate control requirements into technical implementations, partner with engineers to bake compliance into architecture and CI/CD, and replace point-in-time checklist work with [... source excerpt omitted ...] , legal, product, and leadership to keep our AI systems audit-ready across enterprise, commercial, and public-sector environments. This role may also include additional tasks and responsibilities as needed to support the team and evolving business priorities. RESPONSIBILITIES: Own and execute security compliance implementation and audits across core frameworks including SOC 2, NIST CSF, NIST SP 800-53, ISO 27001, ISO 42001, and the EU AI Act, including control design, mapping, gap assessment, evidence collection, and remediation tracking. Build and maintain Compliance-as-Code and continuous compliance capabilities — policy-as-code, automated control validation, continuous evidence [... source excerpt omitted ...] , evidence, and audit readiness; integrate them with cloud, identity, and engineering tooling to reduce manual toil. Partner with engineering and architecture to embed compliance requirements early in design reviews; translate framework obligations into clear technical control narratives that satisfy auditors without slowing delivery. Develop, maintain, and continuously improve corporate policies, standards, and procedures that support the company's governance and AI management system posture. Identify, assess, and prioritize risks related to AI/ML operations, cybersecurity, regulatory compliance, data privacy, intellectual property, and cloud deployments; distinguish meaningful b

How jobs are selected

Employer postings · Data from · Sources