Senior Compliance Engineer

Posted 8 Days Ago
Be an Early Applicant
Hiring Remotely in United States
Remote
Senior level
Blockchain
The Role
As a Senior Compliance Engineer, you will own compliance initiatives at TRM, developing processes for audits and controls, managing compliance certifications, and overseeing risk assessments while ensuring alignment with regulatory standards.
Summary Generated by Built In

TRM is on a mission to build a safer financial system for billions of people. We deliver a blockchain intelligence data platform to financial institutions, crypto companies, and governments to fight cryptocurrency fraud and financial crime. We consider our business — and our profit — as a way to move towards our mission sustainably and at scale. 

The Security Team is responsible for and committed to securing all things at TRM. From our customers to our code, and everything in between, the security team is involved in all aspects of the business. We are looking for a Senior Compliance Engineer to own TRM’s compliance and GRC initiatives that ensure we continue to deliver best-in-class security and trust for our customers.

The impact you will have here:

  • Develop scalable and sustainable processes and tools for normalized controls, collecting audit evidence, monitoring controls, and conducting gap analyses.
  • Manage TRM’s existing security compliance and certification lifecycle (e.g., SOC 2 Type II) while planning for and prioritizing future compliance needs.
  • Develop a compliance program to achieve FedRAMP certification.
  • Manage customer due diligence requests including developing and maintaining security collateral for customers (e.g., SIG, CAIQ).
  • Conduct enterprise risk assessments and manage the risk registry.
  • Develop a vendor risk management program.
  • Identify areas for improvement based on input from customers, the go-to-market teams, and overall business objectives. Anticipate customer needs with respect to compliance and due diligence.

What we’re looking for:

  • Develop automation to programmatically implement controls validations and evidence collections. Experience with Python or other programming and scripting languages is required.
  • Work to align advanced technologies and Privacy by Design principles from the first stages of development and ensure that the data use meets established regulatory compliance needs.
  • Strong understanding of Public Sector compliance security standards including NIST 800-53, SOC 2, CMMC, ISO, CyberEssentials UK, and other common compliance frameworks.
  • Experience with leading a cloud-first SaaS company through the FedRAMP Moderate certification process.
  • Strong focus on normalizing controls across frameworks and standards, with an eye toward improving maturity, scalability, and consistency over time, while looking beyond just “checking the box”.
  • Privacy and GDPR experience is a plus.
  • Security certifications (e.g., CISSP, CISM) are a plus.

About the Team

  • The culture of our team is built on mutual respect, where everyone's opinion is valued and heard.
  • We prioritize flexibility and efficiency, always seeking smarter ways to work without compromising quality.
  • Transparency is at the heart of how we operate, both within the team and with the business, as we focus on clearly communicating and addressing cyber risks.
  • Our collaborative approach ensures that we not only mitigate these risks but also align our efforts with business goals to protect and drive success.

Time Zones:

  • Eastern Standard Time (EST - GMT-4)
  • Pacific Standard Time (PST - GMT-7)
  • Central European Summer Time (CET - GMT+2)

Learn about TRM Speed in this position:

  • Automate Repetitive Compliance Checks - Manually verifying compliance across systems or reviewing logs can be time-intensive. At TRM, we build custom integrations through scripts, SOAR platforms, or compliance management software (e.g. Drata) to automate routine tasks like generating compliance reports, tracking or collecting audit evidence, and monitoring control effectiveness.
  • Build and leverage APIs for Cross-System Data Integration - Gathering compliance data from multiple systems can lead to delays and data silos. At TRM, we build and leverage automation and API's to pull real-time compliance data from critical systems into a centralized GRC tool or dashboard.
  • Shift Left in Compliance - Detecting non-compliance late in a project lifecycle often requires rework and delays. At TRM, we embed compliance checks early in the development lifecycle. We integrate security and compliance standards directly into CI/CD pipelines to flag issues before they reach production.
Life at TRM Labs

Leadership Principles

Our Leadership Principles are foundational element of our strategy, guiding how we make decisions, how we treat each other, and how we behave day-to-day.

  • Impact-Oriented Trailblazer: We put customers first, driving for speed, focus, and adaptability.
  • Master Craftsperson: We prioritize speed, high standards, and distributed ownership.
  • Inspiring Colleague: We value humility, candor, and a one-team mindset.

Build a Career 

Joining TRM means being part of a mission-driven team comprised of industry leaders. At TRM, you'll experience:

  • Purpose and Mission: Have a real-world impact, from disrupting terrorist networks to returning stolen funds.
  • Inspiring Colleagues: Collaborate with industry leaders and learn something new daily.
  • Personal Growth: We're not just using technology; we're inventing it and taking category-defining products to market.

Work Environment

  • Remote First: Our HQ is online. Tools like Zoom and Slack ensure seamless collaboration, but we also value in-person interactions, organizing regular meetups and offsites for team bonding. Clear communication is key in our decentralized setup. With tools like Slack, Loom, and voice notes, we document meetings and decisions, promoting transparency and efficiency.
  • Ownership & TRM Speed: Small teams drive big goals at TRM. Every team member has significant ownership and responsibility, fostering an environment of initiative and direct impact. While there's no strict clocking in or out, we expect team members to balance personal schedules and team needs. We move “surprisingly fast” while maintaining a high bar in service of our customers and mission. This can feel both intense and rewarding. Our unique approach to projects emphasizes quick wins, rapid iterations, and constant feedback.
  • Diversity and Inclusion: Diversity at TRM encompasses backgrounds, experiences, and perspectives. Every day is an opportunity to learn from a colleague, whether they're a law enforcement expert or a tech pioneer.
  • Annual Company Offsite: Once a year, TRMers come together from around the world to attend a 1-week mandatory company offsite. This is designed to foster in-person relationships, creativity, and strategic alignment. Employee attendance is required of all TRMers.  

Join Us

We're looking for team members who love building from the ground up and want to work hard in a fast-paced and ambitious environment. We are remote-first, with exceptionally talented team members located around the world. If you like solving tough problems quickly and seeing your work improve the lives of billions of people, we want you at TRM.

We encourage you to reach out even if your experience doesn't precisely match the job description. Don't worry about picking exactly the right job; we can always explore other options after starting the conversation. Your passion and interests will set you apart, especially if your background or career is unconventional.  

To all recruitment agencies: TRM Labs does not accept unsolicited agency resumes. Please do not forward resumes to TRM Labs employees. TRM Labs is not responsible for any fees related to unsolicited resumes and will not pay fees to any third-party agency or company that does not have a signed agreement with the Company.

Top Skills

Python
The Company
HQ: San Francisco, CA
175 Employees
On-site Workplace
Year Founded: 2018

What We Do

TRM Labs is a blockchain intelligence company that helps financial institutions, crypto businesses and government agencies detect and investigate crypto-related financial crime and fraud. Every day, we tackle challenges in data engineering, data science, and threat intelligence to advance our mission to build a safer financial system for billions of people.

We have raised over $79M from JPMorgan Chase, Visa, Citi, PayPal, Block, Initialized Capital, Tiger Global, Bessemer, and Y Combinator.

Gallery

Gallery

Similar Jobs

Block Logo Block

Senior Software Engineer, Bitcoin Compliance

Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
Remote
Hybrid
7 Locations
12000 Employees
168K-297K Annually

Block Logo Block

Senior Software Engineer, Compliance Engineering, Tooling Engineering

Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
Remote
Hybrid
Denver, CO, USA
12000 Employees
139K-245K Annually

Block Logo Block

Senior Software Engineer, Compliance Program Engineering

Blockchain • eCommerce • Fintech • Payments • Software • Financial Services • Cryptocurrency
Remote
Hybrid
7 Locations
12000 Employees
Remote
United States
3000 Employees
248K-315K Annually

Similar Companies Hiring

Alchemy Thumbnail
Web3 • Software • Information Technology • Cryptocurrency • Blockchain
San Francisco, CA
200 Employees
SmartMedia Technologies Thumbnail
Web3 • NFT • Machine Learning • eCommerce • Digital Media • Blockchain • AdTech
Carbondale, CO
120 Employees
Block Thumbnail
Software • Payments • Fintech • Financial Services • eCommerce • Cryptocurrency • Blockchain
Oakland, CA
12000 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account