Why join us
Brex is the AI-powered spend platform. We help companies spend with confidence with integrated corporate cards, banking, and global payments, plus intuitive software for travel and expenses. Tens of thousands of companies from startups to enterprises — including DoorDash, Flexport, and Compass — use Brex to proactively control spend, reduce costs, and increase efficiency on a global scale.
Working at Brex allows you to push your limits, challenge the status quo, and collaborate with some of the brightest minds in the industry. We’re committed to building a diverse team and inclusive culture and believe your potential should only be limited by how big you can dream. We make this a reality by empowering you with the tools, resources, and support you need to grow your career.
Engineering at Brex
Engineering at Brex is about building systems that scale with speed and intention. Our teams span Software, Data, Security, and IT, and operate with high autonomy and deep collaboration. We tackle hard technical problems, own our outcomes, and push for excellence at every level — from architecture to deployment. It’s an environment where engineering is a craft, and builders become leaders.
What you’ll do
Building world-class financial services requires world-class security. As a GRC Intern on the Trust team, you will work on high-impact cross-organization governance, risk, and compliance initiatives. You’d advocate for security across the company and scale Trust efforts while executing hands-on yourself.
GRC’s mission is to instill trust in Brex from our customers, regulators, partners, and workforce in order to enable the company’s continued growth by maturing our security posture, maintaining compliance, optimizing security practices, and mitigating enterprise risk. We serve as the business side of Trust, and of Compliance as the what, Governance as the how, and Risk as the why, of Trust.
Where you'll work
This role is remote within São Paulo state.
Responsibilities
The GRC team handles a wide range of cross-functional activities from security compliance certifications and audits to risk management, vendor reviews, inbound due diligence, security education, access control, policy and procedures, and many more. Each of these ongoing parallel activities entails interpreting and setting requirements, assessing the effectiveness of security controls, risk-based decision making, cross-functional collaboration and communication, and staying up-to-date on security best practices and how changes in the evolving threat landscape need to inform our strategy. We always strive to go above and beyond industry standards in every aspect of GRC while keeping a balance with supporting the business’s goals. GRC is responsible for key programs that allow us to pass our audit requirements and underpin our risk management mandate. Each of these require strategic thinking and operational execution.
As a GRC intern, you will get hands-on experience in the Trust field by developing your skills across numerous impactful operational tasks, in turn contributing to the strategy and evolving maturity of our Trust posture.
Requirements
Bonus points: