Back to all jobs
G

Principal Security Engineer - GRC

GoDaddy
United States8h ago
Seniority
Staff

About the role

<p><strong>Location Details:</strong><strong> </strong>United States - Remote</p> <p>At GoDaddy the future of work looks different for each team. Some teams work in the office full-time, others have a hybrid arrangement (they work remotely some days and in the office some days) and some work entirely remotely.</p> <p>This is a remote position, so you’ll be working remotely from your home. You may occasionally visit a GoDaddy office to meet with your team for events or meetings. &nbsp;</p> <p>This position is not eligible to be performed in Alaska, Mississippi, North Dakota, or the Virgin Islands.</p> <p>GoDaddy is not currently considering candidates for this role in California, Seattle, or NYC.</p> <p><strong>Join our team</strong></p> <p>The Governance, Risk, and Compliance team helps GoDaddy&nbsp;identify, assess, and address security risk across the business. We lead regulatory and compliance audits, manage risk acceptances and exception workflows, support third-party risk activities, and define security standards and policies that guide teams across the company. This role is a strong fit for someone who wants to build a durable audit and controls program from the ground up, influence security strategy, and work directly with senior leaders on risk-based decision-making. The ideal candidate will gain the opportunity to shape a long-term security governance initiative, partner broadly across engineering and security teams, and drive meaningful improvements in how GoDaddy manages risk and audit readiness.<span data-ccp-props="{}">&nbsp;</span></p> <p><strong>What you'll get to do...</strong></p> <ul> <li>Build and manage a unified security controls framework that supports regulatory and industry compliance requirements</li> <li><span data-contrast="auto"> Perform targeted gap assessments across business units, withan initial&nbsp;focus on hosting environments and audit readiness</span><span data-ccp-props="{&quot;134245417&quot;:false,&quot;469777462&quot;:[220,720],&quot;469777927&quot;:[0,0],&quot;469777928&quot;:[1,1]}">&nbsp;</span></li> <li><span data-contrast="auto"> Partner with engineering, product, legal, and other security teams toidentify&nbsp;control gaps, evaluate compensating controls, and reduce risk</span><span data-ccp-props="{&quot;134245417&quot;:false,&quot;469777462&quot;:[220,720],&quot;469777927&quot;:[0,0],&quot;469777928&quot;:[1,1]}">&nbsp;</span></li> <li><span data-contrast="auto"> Support internal and external audits across frameworks such asPCI DSS,&nbsp;SOC&nbsp;2,&nbsp;ISO&nbsp;27001, and other applicable regulations</span><span data-ccp-props="{&quot;134245417&quot;:false,&quot;469777462&quot;:[220,720],&quot;469777927&quot;:[0,0],&quot;469777928&quot;:[1,1]}">&nbsp;</span></li> <li><span data-contrast="auto"> Develop reporting and present security risks, audit status, and remediation priorities to senior leadership, including the Chief Information Security Officer</span><span data-ccp-props="{&quot;134245417&quot;:false,&quot;469777462&quot;:[220,720],&quot;469777927&quot;:[0,0],&quot;469777928&quot;:[1,1]}">&nbsp;</span></li> <li><span data-contrast="auto"> Drive scalable risk-based processes for exception management, risk acceptanceworkflows, and broader governance initiatives</span><span data-ccp-props="{&quot;134245417&quot;:false,&quot;469777462&quot;:[220,720],&quot;469777927&quot;:[0,0],&quot;469777928&quot;:[1,1]}">&nbsp;</span></li> </ul> <p><strong>Your experience should include...</strong></p> <ul> <li>10+ years of professional experience in information security, information technology, information technology audit, or related fields</li> <li><span data-contrast="auto"><span data-ccp-parastyle="p1">&nbsp;6+ years of professional experience managing information security programs, audits, or formal assessment activities</span></span></li> <li><span data-contrast="auto"><span data-ccp-parastyle="p1"> Experience building unified security controls frameworks across multiple compliance and regulatory standards</span></span></li> <li><span data-contrast="auto"><span data-ccp-parastyle="p1"> Experience managing or performing audits using frameworks such asPCI DSS<span data-ccp-parastyle="p1">,</span>&nbsp;NIST&nbsp;Cybersecurity Framework,&nbsp;NIST SP&nbsp;800-53,&nbsp;ISO&nbsp;27001, and&nbsp;SOC&nbsp;2</span></span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true}">&nbsp;</span></li> <li><span data-contrast="auto"><span data-ccp-parastyle="p1"> Experience assessing cloud environments such as AWS and applying core security engineering concepts such as threat modeling, architecture reviews, access management, and encryption</span></span></li> <li><span data-contrast="auto"><span data-ccp-parastyle="p1"> Experience presenting audit results, risk posture, and remediation priorities to executivestakeholders</span></span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true}">&nbsp;</span></li> </ul> <p><strong>You might also have...</strong></p> <ul> <li>Certifications like PCI ISA, CISA, CRISC, ISO Lead Assessor, CISSP, etc.</li> <li>Experience working at a Big 4 Audit firm(s)</li> </ul> <p><em>We encourage you to apply even if your experience or skillset doesn’t align perfectly with every requirement. We value a wide range of backgrounds and transferable skills, and we are excited to support learning and growth.<br></em><br><strong>About us...&nbsp; </strong><span data-contrast="auto">GoDaddy is empowering everyday entrepreneurs around the world by providing the help and tools to succeed online, </span><span data-contrast="none">making opportunity more inclusive for all.</span><span data-contrast="auto"> GoDaddy is the place people come to name their idea, build a professional website, attract customers, sell their products and services, and manage their work. Our mission is to give our customers the tools, insights, and people to transform their ideas and personal initiative into success. To learn more about the company, visit </span><a href="https://nam10.safelinks.protection.outlook.com/?url=https%3A%2F%2Faboutus.godaddy.net%2Fabout-us%2Foverview%2Fdefault.aspx&amp;data=05%7C01%7Cklilas%40godaddy.com%7C4a7c273441f14a72548908dab30d54f3%7Cd5f1622b14a345a6b069003f8dc4851f%7C0%7C0%7C638019167147789183%7CUnknown%7CTWFpbGZsb3d8eyJWIjoiMC4wLjAwMDAiLCJQIjoiV2luMzIiLCJBTiI6Ik1haWwiLCJXVCI6Mn0%3D%7C3000%7C%7C%7C&amp;sdata=JKqNxY8z5E%2BjfKXCtVVYGLmGXuv31qCpLmWP960VLzo%3D&amp;reserved=0"><span data-contrast="none">About Us</span></a><span data-contrast="auto">.</span><span data-ccp-props="{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;335559738&quot;:0,&quot;335559739&quot;:0}">&nbsp;</span></p> <p><span data-contrast="auto">At GoDaddy, we know diverse teams build better products—period. Our people and culture reflect and celebrate that sense of diversity and inclusion in ideas, experiences and perspectives. But we also know that’s not enough to build true equity and belonging in our communities. That’s why we prioritize integrating diversity, equity, inclusion and belonging principles into the core of how we work every day—focusing not only on our employee experience, but also our customer experience and operations. It’s the best way to serve our mission of empowering entrepreneurs everywhere, and making opportunity more inclusive for all. To read more about these commitments, as well as our representation and pay equity data, check out our Diversity and Pay Parity annual report which can be&nbsp;</span><span data-contrast="auto">found on our </span><a href="https://careers.godaddy/diversity" target="_blank"><span data-contrast="auto">Diversity Careers page</span></a><span data-contrast="auto">.</span></p> <p><span data-contrast="auto">We also embrace our diverse culture and offer a range of Employee Resource Groups (<a href="https://careers.godaddy/culture" target="_blank">Culture</a>). Have a side hustle? No problem. We love entrepreneurs! Most importantly, come as you are and make your own way.&nbsp;</span></p> <p><em>GoDaddy is proud to be an equal opportunity employer. GoDaddy will consider for employment qualified applicants with criminal histories in a manner consistent with local and federal requirements.</em> <em><span data-contrast="none">Refer to our full</span></em> <em><a href="https://www.godaddy.com/legal/agreements/equal-opportunity-employment-statement">EEO policy.</a></em></p> <p>Our recruiting team is available to assist you in completing your application. If they could be helpful, please reach out to <a href="mailto:myrecruiter@godaddy.com">myrecruiter@godaddy.com</a>.&nbsp;</p> <p><strong>Colorado Residents:</strong>&nbsp;In any materials you submit, you may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.</p> <p><strong>GoDaddy doesn’t accept unsolicited resumes from recruiters or employment agencies.</strong></p><div class="content-pay-transparency"><div class="pay-input"><div class="description"><p><strong><span data-contrast="auto">Compensation &amp; Benefits:</span></strong><span data-ccp-props="{}">&nbsp;</span></p> <p><strong><span data-contrast="auto">What We Offer:</span></strong><span data-ccp-props="{}">&nbsp;</span></p> <p><span data-contrast="auto">Working at GoDaddy offers many benefits, including competitive pay, generous time off,&nbsp;parental and wellness leave, healthcare,&nbsp;retirement&nbsp;savings program, and much more. Offerings vary by location.</span><span data-ccp-props="{}">&nbsp;</span></p> <p><span data-contrast="auto">This&nbsp;role is eligible for a comprehensive benefits package, which includes&nbsp;medical, dental, and vision insurance, a 401(k)-retirement&nbsp;plan, paid sick time, paid&nbsp;flexible&nbsp;time off, paid parental leave, life insurance, short- and long-term disability, AD&amp;D insurance, mental health&nbsp;or EAP programs, remote or hybrid work options,&nbsp;paid&nbsp;holidays, paid Wellness days, tuition assistance, adoption, surrogacy, and fertility benefits, dependent daycare and backup care benefits,&nbsp;Employee&nbsp;stock purchase plan, financial education and advice; and other benefits in accordance with GoDaddy’s benefit plans and applicable law.</span><span data-ccp-props="{}">&nbsp;</span></p> <p><span data-contrast="auto">Actual compensation and&nbsp;benefits&nbsp;eligibility will be&nbsp;determined&nbsp;based on permissible, non-discriminatory factors such as skills, experience, and geographic location.</span><span data-ccp-props="{}">&nbsp;</span></p> <p><strong><span data-contrast="auto">Compensation:</span></strong><span data-ccp-props="{}">&nbsp;</span></p> <p><span data-contrast="auto">The estimated pay ranges for this role are listed below. In addition to base pay, this role may be eligible for other forms of compensation, which may include a corporate bonus and/or equity awards, subject to the terms of applicable plans and individual eligibility.</span></p></div><div class="title">Bay Area (Santa Clara, San Francisco) and Los Angeles:</div><div class="pay-range"><span>$182,000</span><span class="divider">&mdash;</span><span>$273,000 USD</span></div></div><div class="pay-input"><div class="title">Austin, D.C. Metro, CA (non-Bay Area), HI, IL, MA, NH, OR, VA, WA:</div><div class="pay-range"><span>$157,000</span><span class="divider">&mdash;</span><span>$235,000 USD</span></div></div><div class="pay-input"><div class="title">New York City Metro, Kirkland/Seattle:</div><div class="pay-range"><span>$166,800</span><span class="divider">&mdash;</span><span>$250,200 USD</span></div></div><div class="pay-input"><div class="title">All other US locations not previously listed:</div><div class="pay-range"><span>$140,000</span><span class="divider">&mdash;</span><span>$210,000 USD</span></div></div></div>

Perks & benefits

  • 401k
  • Vision Insurance
  • Equity Compensation

731,000+ hidden jobs like this

GoDaddy and thousands of companies post here first — often days before LinkedIn or Indeed. Your first 5 applications are free; go Pro to apply without limits.

Everything Pro unlocks:

  • Unlimited applications — free stops at 5
  • Track every application in one place
  • Apply straight to the source, one click
  • Save & organize roles you love
  • Roles pulled from company boards before the big sites

Weekly

$9.99
$4.99/week

For an active search. Cancel anytime.

Most popular

Monthly

$24.99
$12.99/month

The smart pick. Save 35% vs weekly.

Lifetime

$99
$49.99once

Pay once. Every future feature, forever.