This job post is closed and the position is probably filled. Please do not apply.
🤖 Automatically closed by a robot after apply link
was detected as broken.
Description:
The Senior Security Compliance Engineer will be responsible for supporting the Security Compliance (Dedicated Markets) team at GitLab.
The role involves developing, implementing, and managing Governance, Risk, and Compliance (GRC) strategies and processes to ensure compliance with various regulatory and industry standards such as FedRAMP, SOC 2, and ISO 27001.
The engineer will work closely with highly regulated customers to understand their compliance requirements and provide tailored solutions to meet relevant frameworks and certifications.
Responsibilities include leading security assessments, audits, and certification processes, collaborating with cross-functional teams, and developing comprehensive documentation to support compliance initiatives.
The role also involves automating GRC processes, monitoring regulatory changes, providing training on GRC-related topics, and acting as a subject matter expert on GRC issues.
Requirements:
Must have valid proof of US citizenship and residency.
Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or equivalent experience in a related field.
Minimum of 5 years of experience in GRC, cybersecurity, or a related field, focusing on highly regulated industries.
Proven experience in achieving and maintaining security certifications like FedRAMP, SOC 2, ISO 27001, and others.
Strong understanding of regulatory and compliance requirements for the public sector and highly regulated verticals.
Familiarity with implementing compliance-as-code or policy-as-code, and automating control testing and evidence collection.
Basic knowledge of FedRAMP requirements, processes, and documentation.
Familiarity with cloud hyperscalers services such as AWS, GCP, etc.
Excellent analytical, problem-solving, and project management skills.
Strong communication and interpersonal skills, with the ability to collaborate effectively with internal teams, auditors, customers, and regulatory bodies.
Relevant certifications like CISSP, CISM, CISA, or similar are highly desirable.
Ability to work independently and manage multiple projects simultaneously in a fast-paced environment.
Benefits:
GitLab offers benefits to support health, finances, and well-being.
The position provides an all remote, asynchronous work environment.
Flexible Paid Time Off is available.
Team Member Resource Groups are accessible.
Equity Compensation & Employee Stock Purchase Plan is provided.