Nintendo

Nintendo

GRC Engineer

Redmond, WA · Mid

No sponsorship$108k-$174kDetected 67 days ago
PythonBashCloud PlatformsCybersecurityNetwork SecurityComplianceTCP/IPDNSFirewall

About the role

  • This role is within Nintendo of America (NOA)'s IT Security department.
  • We are hiring a GRC Engineer to help modernize how Governance, Risk, and Compliance (GRC) operates across the organization.
  • This role is focused on reducing compliance burden, improving scalability, and enabling sustainable compliance through thoughtful use of automation, tooling, and sound engineering judgment.

Responsibilities

  • From the launch of the Nintendo Entertainment System™ more than 30 years ago, Nintendo's mission has been to create smiles through unique entertainment experiences.
  • Support the development and maintenance of risk registers and risk treatment plans
  • Support internal and external audits, including evidence collection and remediation tracking
  • Help design, build, and maintain automation and tooling that reduces manual GRC effort and improves reliability
  • Partner with IT, engineering, legal, privacy, and business teams to support effective and practical security control implementation
  • Provide guidance and support to stakeholders to help them meet compliance requirements with minimal disruption
  • Maintain awareness of emerging threats, regulatory changes, and industry best practices

Requirements

  • Minimum of four (4) years of related experience in security development technologies and practices.
  • Professional experience with an architectural understanding of network security and application security.
  • Experience with work on complex issues where analysis of situations or data requires an in-depth evaluation of variable factors.
  • Strong knowledge of networking concepts, protocols (TCP/IP, HTTP, DNS, TLS) and technologies including firewalls, TLS, IDS/IPS system, cryptographic systems, identity management systems, RADIUS, etc.
  • Experience with programming/scripting (Python/Perl/bash/etc.).
  • Strong understanding of networking topologies and protocols.
  • Experience working in multiple security domains with a focus on risk-based analysis of anomalies, detection and response.
  • Proven experience with work on complex security issues where analysis of situations or data requires an in-depth evaluation of variable factors.
  • Undergraduate degree in Computer Science, a related field, or equivalent.
  • Applicants must be legally eligible to work in the United States to be considered.

Nice to have

  • Familiarity with compliance frameworks (NIST, PCI, JSOX).
  • Familiarity with AI risk compliance frameworks (NIST AI RMF, ISO 42001) a plus

Skills

  • Assist in ensuring compliance with applicable regulations, standards, and frameworks (e.g., NIST CSF, PCI DSS, J-SOX, etc.)
  • Contribute to the development, review, and maintenance of information security policies, standards, and procedures
  • Monitor and report on compliance posture, control effectiveness, and risk metrics
  • Contribute to scalable approaches for evidence collection, control testing, risk tracking, and reporting
  • Identify opportunities to reduce GRC toil and compliance friction for both the business and the security team
  • Treat GRC capabilities as internal products, iteratively improving workflows, usability, and sustainability over time

Compensation

  • $108,450 - $173,550 USD

Equal opportunity

  • We are an equal opportunity employer offering a welcoming and inclusive environment in service to one another, our products, and the diverse consumers and communities we call home.

Visa & Work Authorization

  • Visa sponsorship is not available for this role.

This listing is sourced directly from Nintendo's careers page and normalized into a canonical job model.