This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Glean is looking for a highly skilled Corporate Security (IT) and Compliance Engineer who will be working towards securing an overall cloud-native IT environment and maintaining our ongoing compliance with security standards and frameworks. The successful candidate will possess a strong background in IT security best practices, be well-versed in implementing and managing compliance towards frameworks such as SOC2, HIPAA, GDPR, CCPA etc., and have the ability to handle complex challenges in a dynamic environment.
Job Responsibility:
Develop and maintain the organization's IT security policies, procedures, and standards
Maintain compliance with industry standards like SOC2 and HIPAA, leveraging tools to automate workflows and reduce manual effort
Prepare for external audits by maintaining compliance documentation
Work towards the implementation of a comprehensive third-party vendor review program
Identify areas of highest risk within the organization and collaborate with teams to mitigate these risks through technical and administrative controls
Collaborate with business teams to assess and implement appropriate security settings and access controls in SaaS applications
Requirements:
Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent work experience)
5+ experience in managing security compliance, IT security, with a focus on cloud-native environments
Strong understanding of modern endpoint security solutions and securing remote employees' devices
Experience in implementing and managing compliance frameworks such as SOC2, HIPAA, GDPR, etc.
Excellent analytical and problem-solving skills with the ability to handle complex technical challenges
Relevant certifications such as CISSP, CISM, CompTIA Security+, or equivalent, are a plus
Thrive in a customer-focused, tight-nit and cross-functional environment - being a team player and willing to take on whatever is most impactful for the company is a must
A proactive and positive attitude to lead, learn, troubleshoot and take ownership of both small tasks and large features
Familiarity with cloud native security practices in GCP/AWS/Azure is a plus
Nice to have:
Familiarity with cloud native security practices in GCP/AWS/Azure is a plus
Relevant certifications such as CISSP, CISM, CompTIA Security+, or equivalent, are a plus