Engineering Manager, Grc

Anthropic Anthropic · AI Frontier · New York, NY +2 · Security

This role leads a team to build the technical foundation for scaling risk and compliance programs by designing and implementing automated workflows, data pipelines, and integrations. It involves solving data integration problems across various systems and leveraging AI, specifically Claude, to automate tasks like evidence collection, data interpretation, and risk assessment. The goal is to translate compliance requirements into policy-as-code and build systems that combine traditional automation with AI capabilities.

What you'd actually do

  1. Lead the team that establishes foundational GRC processes and architecture. Design and build automated workflows for risk management and compliance, creating scalable systems that enable continuous monitoring as Anthropic grows.
  2. Build data pipelines that aggregate risk, control, and asset information from across our technology stack. This means solving hard data integration problems: mapping disparate schemas, handling inconsistent data quality, and creating unified views of compliance posture through dashboards and reporting tools.
  3. Inform GRC platform strategy and implementation: in partnership with other programs, evaluate, select, and deploy tooling that meets our compliance requirements.
  4. Translate written policies and compliance requirements into policy-as-code—working with Engineering and Security teams to express requirements as enforceable rules, automated checks, and continuous validation rather than static documents.
  5. Design and deploy agentic AI workflows that extend team capacity, using Claude to serve as a virtual GRC analyst to automate evidence analysis, monitor control effectiveness, draft audit responses, interpret policy documents, and handle other tasks that require reasoning over unstructured information.

Skills

Required

  • managing technical individual contributors or systems-focused teams
  • building or scaling small teams
  • designing automated workflows, data pipelines, or system integrations
  • data integration
  • APIs and integration patterns
  • REST APIs
  • webhooks
  • authentication flows
  • polling vs. push architectures
  • independent work with minimal guidance
  • ownership of complex problems
  • managing ambiguity
  • analytical and problem-solving skills
  • attention to detail
  • pragmatism about risk-based prioritization

Nice to have

  • Experience designing or implementing AI-powered automation

What the JD emphasized

  • SOC 2
  • ISO
  • HIPAA
  • FedRAMP

Other signals

  • designing systems that bring it together, normalize it, and make it actionable
  • design AI-powered workflows where Claude acts as an extension of your team
  • translate compliance and regulatory requirements into solutions that support audit programs including SOC 2, ISO, HIPAA, and FedRAMP