Related skills
devsecops azure aws gcp gdpr📋 Description
- Own and manage Hevo's compliance programs (SOC 2 Type II, ISO 27001).
- Lead readiness assessments and remediation with Eng and Infra.
- Serve as primary contact for auditors and security reviews.
- Respond to customer security questionnaires and vendor assessments.
- Design and improve security controls across cloud infra and SDLC.
- Collaborate with DevOps to embed security into CI/CD and IaC.
🎯 Requirements
- 5-8 years in security engineering or a compliance-focused role.
- SOC 2 Type II end-to-end ownership; ISO 27001 experience a plus.
- Cloud security fundamentals: IAM, networking, encryption.
- GDPR, CCPA familiarity for data protection.
- Experience with GRC tools (Sprinto, Tugboat Logic).
- Excellent written communication; policy and audit evidence docs.
Meet JobCopilot: Your Personal AI Job Hunter
Automatically Apply to Engineering Jobs. Just set your
preferences and Job Copilot will do the rest — finding, filtering, and applying while you focus on what matters.
Help us maintain the quality of jobs posted on Empllo!
Is this position not a remote job?
Let us know!