Back to results

Xai

Sr. Security Engineer - GRC Fintech & Financial Services

Salary not disclosed8+ yearsOnsite

  • London
  • Today
Newly posted

About the role

We are seeking an experienced Governance, Risk, and Compliance Engineer to scale compliance for SpaceXAI and xMoney within the EU and UK markets. You will architect systems and processes that automate trust, balancing rigorous regulatory standards with the velocity of a high-growth company. The role involves deep partnership with engineering to design controls directly into the platform using Compliance-as-Code and continuous evidence collection.

Responsibilities

  • Own and evolve EU/UK financial services and digital operational resilience posture across DORA and complementary regulatory guidance.
  • Build and maintain Compliance-as-Code capabilities, including automated control validation and monitoring integrated into CI/CD.
  • Operate and extend GRC platforms to serve as the backbone for control mapping and evidence management.
  • Partner with Architects and Engineering Leads to integrate security and regulatory requirements into design early.
  • Design, implement, and validate technical information security controls relevant to regulated EU/UK environments.
  • Operate the cybersecurity and compliance risk register to identify, quantify, and track risks.
  • Lead information security risk assessments and compliance reviews for new products, features, and vendors.
  • Liaise with the Data Privacy team on security-relevant intersections and cultivate relationships with external auditors and supervisory contacts.

Required skills

  • Information Security
  • GRC
  • DORA
  • EU AI Act
  • NIS2
  • Compliance-as-Code
  • Vanta
  • GDPR
  • Risk Management

Nice to have

  • ISO 27001
  • SOC 2
  • IAM
  • Encryption
  • CI/CD
  • AI Governance
  • FCA Consumer Duty

Qualifications

  • Bachelor's degree in computer science, Information Security, Cybersecurity, or in an engineering/STEM field
  • 8+ years of experience in GRC, information security compliance, or technology audit roles in regulated environments

Certifications

  • CISSP
  • CISA
  • CISM
  • CRISC
  • ISO 27001 Lead Implementer
  • ISO 27001 Lead Auditor

About the Company

SpaceXAI’s mission is to create AI systems that can accurately understand the universe and aid humanity in its pursuit of knowledge. The team is small, highly motivated, and operates with a flat organizational structure.

Sr. Security Engineer - GRC Fintech & Financial Services at Xai · Grasshire