Назад
Company hidden
1 день назад

Security Engineer (Compliance)

125 000 - 170 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Security Engineer (Compliance) (GRC): Managing and supporting compliance frameworks for a health technology platform with an accent on governance, risk management, and internal audits. Focus on developing organizational policies, ensuring technical control effectiveness, and coordinating annual audits to safeguard sensitive drug discount data.

Location: Remote (USA). Must be based in the U.S. and have the legal right to work without company sponsorship.

Salary: $125,000–$170,000 per year.

Company

hirify.global (BRG) is a global consulting firm whose subsidiary, Second Sight Solutions, is a health technology company focused on improving transparency in drug discount data exchange.

What you will do

  • Own and manage the application of key compliance frameworks including SOC 1 and 2, ISO 27001, CSA STAR, and NIST CSF.
  • Develop and maintain organizational policies, procedures, and best practices required for annual audits.
  • Implement an internal audit program to assess organizational adherence and identify systemic process improvements.
  • Lead the Risk Management Program, covering risk identification, mitigation, monitoring, and reporting to executive leadership.
  • Collaborate with the SecOps team to ensure technical and administrative controls meet operational compliance standards.
  • Support Quarterly Access Reviews (QARs) as part of the User Access Request process.

Requirements

  • 5+ years of experience as a System/Information Security, Compliance, or Risk Engineer.
  • Deep technical knowledge of compliance frameworks like SOC 1/2, ISO 27001, and NIST CSF.
  • Experience with cloud services including Microsoft Azure, AWS, and Microsoft 365.
  • Operational understanding of firewalls, IDS, anti-virus software, and log management systems.
  • Must provide verification of legal right to work in the U.S. without company sponsorship.
  • Availability for on-site travel for onboarding, team events, and business needs.

Culture & Benefits

  • Primarily remote work arrangement with a culture of freedom, collaboration, and growth.
  • Opportunity to work with industry experts and pioneers in health technology.
  • Inclusive environment as an Equal Opportunity Employer.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →