GRC Careers: AI Governance, Risk and Compliance JobsConnecting Talent and Trust. Post a Job Log in

JobsCaliforniaSan Francisco Bay AreaSoftware Engineer II - Insider Risk

Software Engineer II - Insider Risk

Abnormalsecurity
RiskOn-siteFull-timeHybrid - San Francisco, CA$149,200

Abnormalsecurity is hiring for the job of Software Engineer II - Insider Risk, Hybrid - San Francisco, CA (On-site). This is a Risk job in the governance, risk, and compliance field, with a posted range of $149,200. Review the full details below and apply directly with Abnormalsecurity.

Organization: AbnormalsecurityLocation: Hybrid - San Francisco, CAWorkplace: On-siteFocus: RiskSalary: $149,200Posted: Sep 19, 2026
Abnormalsecurity is hiring for this Risk job in Hybrid - San Francisco, one of the metros GRC Careers tracks for governance, risk, and compliance hiring. See other GRC jobs in Hybrid - San Francisco →

About the Role

As organizations face increasingly sophisticated social engineering and insider threats, the very foundation of trust, the employee identity, is under attack. Abnormal’s Identity Security team is building a groundbreaking product to detect and prevent fraudulent employee identities, specifically targeting high-stakes threats like infiltrators seeking to funnel funds through deceptive employment. We use advanced behavioral intelligence to scrutinize candidate details, from resumes and application metadata like IP addresses, email addresses, and phone numbers, to identify suspicious patterns and prevent malicious actors from entering the workforce. We are extending Abnormal’s leadership in AI-native security to protect the integrity of the modern enterprise at the point of hire.

What you will do

Build identity verification and fraud detection systems to scrutinize candidate data during the application process.
Develop sophisticated correlation engines that match candidate details (IPs, phone numbers, email history, resume metadata) against known indicators of fraudulent or state-sponsored activity.
Create high-availability pipelines that ingest and analyze signals from application tracking systems (ATS), identity providers, and external risk intelligence.
Ship automated guardrails that flag high-risk candidates in real-time, enabling security teams to act before an infiltrator is onboarded.
Drive 0→1 iteration: prototype quickly, test fraud detection assumptions, learn from emerging threat patterns, and scale simple, effective solutions.
Collaborate across security, platform, and data teams; write and review technical designs; and participate in core SDLC rituals.

Must Haves

strong 2+ years building software applications.
Experience productionizing large-scale, data-intensive systems.
High velocity and creativity in solving technical challenges related to fraud detection and pattern matching.
Experience and desire to adopt and improve AI-native development workflows.
Strong debugging skills with logs, metrics, and behavioral signals.
Ability to translate complex security and business requirements into high-quality software.
Ability to independently solve complex problems and work cross-functionally.
BS in CS/SE/IS or a related field.

Nice to Have

Experience with Go and Python.
Experience in fraud detection, identity verification, or anti-money laundering (AML) systems.
Background in cybersecurity, specifically focused on insider threats or nation-state actor TTPs (Tactics, Techniques, and Procedures).
Experience with big data, statistics, and ML for identity/behavioral risk modeling and anomaly detection.

# -NT1

Actual compensation will be determined based on several non-discriminatory factors including skills, experience, qualifications, and geographic location.
In addition to base salary, this role may be eligible for bonus or incentive compensation, equity, and a comprehensive benefits package.

Base salary range:

span $149,200 span span $214,500 USD

A note on AI in our process:
Abnormal AI uses AI-assisted tools to help our recruiting team prepare for candidate interviews. These tools analyze resume content and role requirements to suggest interview questions and areas for the interviewer to explore.They do not make hiring decisions or screen candidates automatically. Every decision about a candidacy is made by a person. Further, if your application is successful and Abnormal AI makes a conditional offer of employment, we will carry out pre-employment checks which must be successfully completed to progress to a final offer. All processes and pre-employment checks are in line with prevailing legislation and Abnormal AI s policies relevant to our security and privacy standards.

Abnormal AI is an equal opportunity employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status or other characteristics protected by law. For our EEO policy statement please a span underline; em click here. If you would like more information on your EEO rights under the law, please em span underline; a click here.

Location and market context

This job is based in Hybrid - San Francisco on-site. Local candidates benefit from being close to Abnormalsecurity's teams and regional hiring market. Confirm the exact in-office expectation and any relocation support with the employer.

About risk management jobs

Risk jobs own the methodology for identifying, assessing, and escalating enterprise, operational, and technology risk. Second-line teams set risk appetite and challenge the first line. Jobs like this one are typically evaluated against frameworks such as enterprise and operational risk frameworks, NIST AI RMF, and risk-appetite and escalation practices.

How to position yourself for this risk management job

Strong candidates emphasize risk assessment methodology, appetite and escalation, cross-functional partnership, and clear reporting to senior leadership and the board. In your resume and outreach, tie your experience to how Abnormalsecurity would apply enterprise and operational risk frameworks, NIST AI RMF, and risk-appetite and escalation practices, and lead with concrete outcomes rather than duties.

Similar GRC jobs

More jobs at Abnormalsecurity

More GRC jobs in Hybrid - San Francisco

Hiring for Risk?

Reach candidates who are already searching for this role, not a general audience. Your posting appears on this page, in the job alerts, and across the GRC Careers network.

Post a job  Pricing from $99 · About GRC Careers · Hiring toolkit

Want to be next in a job like this?

Jobs like Software Engineer II - Insider Risk in Hybrid - San Francisco, CA open regularly. Be first to know, privately. No current employer ever sees you looking.

New Risk jobs, the moment they post.

One click unsubscribe.
Know your GRC? Take the 2-minute AI Governance Challenge. No signup needed.
Play now →

Employer, or see something wrong with this posting? Report this posting and we will review it promptly.