Data Engineer – Cybersecurity, GRC & AI
B5 Recruiting
- Location
- Remote
- Employment
- Contract
- Level
- Mid Level
About the Role
B5 Recruiting is seeking a Data Engineer to build scalable data pipelines and AI-assisted solutions for a client's cybersecurity, GRC, and compliance workflows. The role focuses on delivering reliable production data models and integrations that support audit readiness and risk management in complex enterprise environments.
Skills
Perks
- Remote Work
Full job details
This is a remote position.
Data Engineer – Cybersecurity, GRC & AI
B5 Recruiting is seeking a hands-on Data Engineer for a client opportunity supporting cybersecurity, Governance, Risk, and Compliance (GRC), and AI-enabled automation.
This role will build and maintain the data pipelines, models, and integrations behind risk reporting, controls monitoring, compliance evidence, and AI-assisted security workflows. You will help deliver reliable production solutions with strong data governance, traceability, privacy protections, and audit readiness.
The ideal candidate combines practical data engineering and software development experience with an understanding of risk and compliance requirements in complex enterprise environments.
What You’ll Do
-
Develop scalable batch and streaming pipelines to collect, transform, and organize security data, control evidence, and compliance records within governed data platforms.
-
Create data models supporting risk indicators, issue tracking, risk acceptance, control testing, audit documentation, and policy exceptions. Make this information accessible through reporting, dashboards, and self-service analytics.
-
Establish data validation, metadata management, lineage tracking, and access controls to improve data reliability and support consistent, traceable audit evidence.
-
Build AI-assisted solutions for cyber and GRC teams, including evidence summaries, control testing support, policy search, security investigations, ticket routing, and exception analysis. Apply retrieval-augmented generation (RAG), agentic workflows, and orchestration where appropriate.
-
Connect data platforms with GRC tools and enterprise applications through APIs, event-driven integrations, and connectors. Implement monitoring and operational documentation to support production reliability.
-
Collaborate with cybersecurity, risk, compliance, privacy, and legal teams to turn business requirements into technical controls and clear implementation guidance.
What You Bring
-
Ability to take ownership of deliverables while working effectively across teams.
-
Clear written and verbal communication, including the ability to explain technical concepts to business stakeholders.
-
Strong attention to accuracy, documentation, and overall delivery quality.
-
Experience leading projects or workstreams and providing practical guidance to colleagues.
-
Ability to balance competing priorities, meet deadlines, and build productive stakeholder relationships.
About the Team
You will work with a cyber engineering team using modern data platforms and AI automation to strengthen security, operational resilience, and compliance. The team develops reusable architectures, implementation tools, and governance practices that help organizations expand and improve their cyber and GRC capabilities.
Required Qualifications
-
Bachelor’s degree or equivalent practical experience.
-
At least 4 years of experience in data engineering and software development, with hands-on Python and SQL skills.
-
Experience delivering production data pipelines and models for batch processing, streaming, or both.
-
Experience deploying solutions using cloud platforms, containers, infrastructure as code, APIs, and secure secrets management.
-
Practical experience applying data governance and security controls, including data classification, protection of personally identifiable information (PII), least-privilege access, encryption, retention policies, audit logs, and metadata or lineage management.
-
Experience supporting GRC processes such as risk reporting, audit requests, control monitoring and testing, compliance measurement, and integrations with GRC platforms.
-
Experience developing LLM-enabled applications using RAG, vector or hybrid search, tool or function calling, evaluation and monitoring, protections against prompt injection, and secure data access.
-
Willingness to travel up to 25%, depending on project needs.
-
Limited immigration sponsorship may be available for this opportunity.
Preferred Qualifications
-
Experience in consulting or supporting large enterprise clients.
-
Development experience with Java, Go, or JavaScript.
-
Experience connecting platforms such as ServiceNow GRC, Archer, OneTrust, or BigID and building evidence pipelines aligned with control requirements.
-
Experience processing data from SIEM, SOAR, vulnerability management, identity, or cloud security posture platforms.
-
Experience putting LLMOps or MLOps practices into production, including evaluation, monitoring, version control, and governance.
-
Relevant security or cloud certifications, such as CompTIA Security+, CISM, CISA, CISSP, or a cloud platform certification.