A live role

Senior Security Compliance Engineer, Public Sector

from GitLab · read the original and apply on their site

Remote, United States

Our take: The real work here is turning public sector security regulations into automated, defensible compliance that customers can trust, from FedRAMP audits to policy as code.

If you find satisfaction in turning tangled regulations into working, automated controls, this role lets you own FedRAMP, CMMC and ISO work for government and highly regulated customers. You will write compliance as code, lead audits to a clean finish, and be the person teams turn to when the standards get complicated. It suits someone who takes real pride in getting the details right and wants that carefulness to actually enable customers rather than slow them down.

Needs

  • governance and compliance
  • automating grc
  • managing audits
  • writing documentation
  • cross-team work
  • reading regulations

Rewards

  • building customer trust
  • public sector impact
  • visible results
  • policy as code
  • training teams

Demands

  • subject matter expert
  • fast pace
  • juggling projects
  • careful diplomacy
  • real rigour

Grows

  • compliance as code
  • learning new frameworks
  • strategic advising
  • cloud platforms

Values

  • ethics first
  • compliance done right
  • rigour
  • remote working
  • customer focus

Drains

  • endless documentation
  • audit paperwork
  • continuous monitoring

Would you love this work?

See how what you love doing lines up with this role - it takes about ten minutes to find out.

Find what I'd love to do next