Security & Compliance Engineer (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security & Compliance Engineer (Cybersecurity/AI): Managing product security and compliance frameworks for a document technology platform with an accent on vulnerability response, automation, and regulatory alignment. Focus on building AI-assisted security workflows, managing SOC 2/ISO 27001 compliance, and implementing SBOM/SCA pipelines.
Location: Remote (Must be based in the United Kingdom)
Company
transforms document workflows into intelligent, integrated systems used by Fortune 500 firms and governments globally.
What you will do
- Own the end-to-end vulnerability response loop, including intake, triage, remediation tracking, and closure.
- Operate compliance workflows for frameworks including SOC 2, ISO 27001, GDPR, DORA, and the EU AI Act.
- Build and maintain security automation across CI/CD pipelines (Buildkite) and collaboration tools (Jira, Slack).
- Deliver enterprise capability projects such as SBOM/SCA workflows and AI-assisted SAST triage.
- Integrate agentic AI and AI-assisted development into the security workflow to accelerate delivery.
- Create sustainable runbooks and metrics to ensure system maintainability.
Requirements
- AI nativity: Ability to use AI tools to accelerate work and build reliable agentic loops.
- Strong software engineering fundamentals with experience in automation and API integrations.
- Experience working with CI/CD pipelines (Buildkite, GitHub Actions, or GitLab CI).
- Background in vulnerability management, application security, cloud security, or audit coordination.
- Strong self-management skills and the ability to drive outcomes independently in an async-first environment.
- Location: Must be based in the United Kingdom.
Nice to have
- Familiarity with SBOM/SCA (CycloneDX, SPDX, Syft).
- Experience with SAST tooling, IaC, or CSPM.
- Hands-on experience with EU regulatory requirements.
Culture & Benefits
- Fully remote, async-first environment with minimal meetings and a strong writing culture.
- High autonomy and direct visibility of impact within a lean, high-growth team.
- Expectation to use the latest AI tools as a core part of the professional workflow.
- Competitive compensation and an annual global retreat.
- Opportunity to work on a mission-critical product trusted by 15%+ of the Global 500.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →