Yabot Jobs

Motion Recruitment

GRC Engineer (Hybrid NYC)

New York, New York, United States

Motion Recruitment is hiring a GRC Engineer (Hybrid NYC) in New York, New York, United States. Posted October 8, 2026.

Apply on Yabot Jobs Save this job Sign in free to get the application link, save the job, or tailor your resume to it.

Job at a glance

Company
Motion Recruitment
Location
New York, New York, United States
Pay
$140,000 – $175,000
Workplace
On-site
Employment
Full-time
Sector
Engineering & Technology
Posted
October 8, 2026
First scanned
October 9, 2026
Apply by
December 12, 2026

About the job

Job Title: GRC Engineer (Hybrid NYC)

Location: New York, NY (Hybrid): 4 days in office, 1 day remote

This highly successful Managed Service Provider (MSP) based in Midtown Manhattan acts as the dedicated technology backbone for top-tier VC firms and high-growth startups. Currently in an aggressive growth phase, they are launching a brand-new cybersecurity service line to meet the high demand from their exclusive client base. Led by two highly involved founders, this firm offers a fast-paced, collaborative environment where you will partner face-to-face with the next generation of tech innovators.

As the GRC Engineer, you will serve as the founding leader of this new cybersecurity division. This rare, highly visible role perfectly bridges Governance, Risk, and Compliance (GRC) with hands-on technical engineering. You will take total ownership of client security programs end-to-end, guiding startups through compliance paperwork while actively implementing the technical controls to keep them up to code. You must be an exceptional, client-facing communicator capable of translating complex cyber concepts into clear, actionable advice for non-technical founders.

Requirements

  • 5 to 7+ years of experience bridging Information Security, IT operations, and hands-on GRC implementation.

  • Exceptional communication skills with the ability to confidently explain technical cyber risks to non-technical audiences.

  • Hands-on experience managing a full audit cycle utilizing platforms like Vanta, Drata, or Secureframe.

  • Technical background administering EDR (e.g., SentinelOne) and MDM (e.g., Mosyle, Jamf, Intune).

  • Deep understanding of identity and access management tools like Okta or Entra ID, alongside major cloud platforms.

  • Strong command of compliance frameworks, including SOC 2, NIST CSF, and ISO 27001.

Responsibilities

  • Build and lead a brand-new cybersecurity and GRC service line from the ground up for high-growth startup clients.

  • Travel to client sites to conduct assessments, acting as the authoritative face of the cybersecurity division.

  • Take end-to-end ownership of client security programs, managing audit readiness, gap analysis, and auditor liaison.

  • Translate compliance documentation into action by deploying, tuning, and hardening endpoint security, MDM fleets, and identity solutions.

  • Create, manage, and enforce comprehensive security policies while ensuring all technical implementations strictly meet compliance codes.

This position offers a competitive base salary of $150,000 to $170,000, depending on experience. Operating on a strict hybrid schedule (4 days onsite, 1 day remote) out of a Midtown Manhattan office, this role requires a highly driven individual ready to thrive alongside a dedicated team. If you are an autonomous security expert looking to build a critical business unit from scratch and make a massive impact, this is the opportunity for you.