A live role
Senior Security Compliance Engineer, Public Sector
from GitLab · read the original and apply on their site
Remote, United States
Our take: The real work here is turning public sector security regulations into automated, defensible compliance that customers can trust, from FedRAMP audits to policy as code.
If you find satisfaction in turning tangled regulations into working, automated controls, this role lets you own FedRAMP, CMMC and ISO work for government and highly regulated customers. You will write compliance as code, lead audits to a clean finish, and be the person teams turn to when the standards get complicated. It suits someone who takes real pride in getting the details right and wants that carefulness to actually enable customers rather than slow them down.
Needs
- governance and compliance
- automating grc
- managing audits
- writing documentation
- cross-team work
- reading regulations
Rewards
- building customer trust
- public sector impact
- visible results
- policy as code
- training teams
Demands
- subject matter expert
- fast pace
- juggling projects
- careful diplomacy
- real rigour
Grows
- compliance as code
- learning new frameworks
- strategic advising
- cloud platforms
Values
- ethics first
- compliance done right
- rigour
- remote working
- customer focus
Drains
- endless documentation
- audit paperwork
- continuous monitoring
Would you love this work?
See how what you love doing lines up with this role - it takes about ten minutes to find out.
Find what I'd love to do next