Nintendo
GRC Engineer
Redmond, WA · Mid
No sponsorship$108k-$174kDetected 67 days ago
PythonBashCloud PlatformsCybersecurityNetwork SecurityComplianceTCP/IPDNSFirewall
About the role
- This role is within Nintendo of America (NOA)'s IT Security department.
- We are hiring a GRC Engineer to help modernize how Governance, Risk, and Compliance (GRC) operates across the organization.
- This role is focused on reducing compliance burden, improving scalability, and enabling sustainable compliance through thoughtful use of automation, tooling, and sound engineering judgment.
Responsibilities
- From the launch of the Nintendo Entertainment System™ more than 30 years ago, Nintendo's mission has been to create smiles through unique entertainment experiences.
- Support the development and maintenance of risk registers and risk treatment plans
- Support internal and external audits, including evidence collection and remediation tracking
- Help design, build, and maintain automation and tooling that reduces manual GRC effort and improves reliability
- Partner with IT, engineering, legal, privacy, and business teams to support effective and practical security control implementation
- Provide guidance and support to stakeholders to help them meet compliance requirements with minimal disruption
- Maintain awareness of emerging threats, regulatory changes, and industry best practices
Requirements
- Minimum of four (4) years of related experience in security development technologies and practices.
- Professional experience with an architectural understanding of network security and application security.
- Experience with work on complex issues where analysis of situations or data requires an in-depth evaluation of variable factors.
- Strong knowledge of networking concepts, protocols (TCP/IP, HTTP, DNS, TLS) and technologies including firewalls, TLS, IDS/IPS system, cryptographic systems, identity management systems, RADIUS, etc.
- Experience with programming/scripting (Python/Perl/bash/etc.).
- Strong understanding of networking topologies and protocols.
- Experience working in multiple security domains with a focus on risk-based analysis of anomalies, detection and response.
- Proven experience with work on complex security issues where analysis of situations or data requires an in-depth evaluation of variable factors.
- Undergraduate degree in Computer Science, a related field, or equivalent.
- Applicants must be legally eligible to work in the United States to be considered.
Nice to have
- Familiarity with compliance frameworks (NIST, PCI, JSOX).
- Familiarity with AI risk compliance frameworks (NIST AI RMF, ISO 42001) a plus
Skills
- Assist in ensuring compliance with applicable regulations, standards, and frameworks (e.g., NIST CSF, PCI DSS, J-SOX, etc.)
- Contribute to the development, review, and maintenance of information security policies, standards, and procedures
- Monitor and report on compliance posture, control effectiveness, and risk metrics
- Contribute to scalable approaches for evidence collection, control testing, risk tracking, and reporting
- Identify opportunities to reduce GRC toil and compliance friction for both the business and the security team
- Treat GRC capabilities as internal products, iteratively improving workflows, usability, and sustainability over time
Compensation
- $108,450 - $173,550 USD
Equal opportunity
- We are an equal opportunity employer offering a welcoming and inclusive environment in service to one another, our products, and the diverse consumers and communities we call home.
Visa & Work Authorization
- Visa sponsorship is not available for this role.
Apply directly at Nintendo →Create a free account for alerts like thisView Nintendo immigration profile
This listing is sourced directly from Nintendo's careers page and normalized into a canonical job model.