# Sr. GRC Engineer at Pendo

- Company: Pendo
- What the company does: Backed by Battery and Sapphire.
- Company website: http://www.pendo.io/
- Type: Startups
- Level: Senior
- Location: Raleigh, NC
- Work setup: On-site
- Pay: $133K to $160K base salary per year (USD)
- Posted: 2026-09-24
- Apply by: 2026-11-08
- Apply: https://job-boards.greenhouse.io/pendo/jobs/8822007002
- Page: https://www.1752.vc/careers/jobs/pendo-sr-grc-engineer/

## About the role

Pendo's Information Security team protects the data entrusted to Pendo and helps ensure our products are built with security and privacy by design. The team spans Security Operations, Product Security, and Compliance and Risk. With a small team and broad scope, the work directly supports the security, resilience, and trust of Pendo's products and operations.

## What they're looking for

- 3 to 5 years of hands-on security experience with demonstrated ownership of compliance programs or security operations work, rather than participation alone
- Deep working knowledge of at least two of the following frameworks: SOC 2, ISO 27001, PCI-DSS, FedRAMP, GovRAMP, or the NIST 800-series
- Demonstrated ability to independently own auditor relationships and manage an audit cycle end-to-end, including responding directly to auditor questions
- Experience leading incident response investigations from triage through root cause analysis and producing post-incident documentation that engineering teams can act on
- Demonstrated ability to translate security risk into business-risk language that enables leaders to make investment and prioritization decisions
- Active, demonstrated use of AI tools to accelerate security workflows such as evidence collection, policy drafting, regulatory research, or detection analysis

Tags: Information Security
