Compliance Engineer - Apac

ElevenLabs ElevenLabs · AI Frontier · Tokyo, Japan · Engineering & Product

This role focuses on ensuring ElevenLabs' AI products and services meet compliance standards and regulatory requirements, particularly in the APAC region for enterprise clients in sectors like Finance, Telecommunications, and Government. Responsibilities include managing certifications (e.g., ISO 27001), creating technical documentation, responding to client security requests, conducting risk assessments, and enhancing compliance automation tools. The role requires experience in regulated industries, vendor assessments, and public cloud compliance.

What you'd actually do

  1. Collaborating across teams to maintain compliance certifications and frameworks relevant to the APAC region, such as ISO 27001 and regional data protection acts like the Australian Privacy Principles (APP) or Singapore's PDPA.
  2. Helping to shape ElevenLabs’ Enterprise offering towards regulated industries in the APAC region, such as Finance, Telecommunications, and Government sectors, particularly focusing on opportunities in Australia, New Zealand, and Singapore.
  3. Building technical documentation to demonstrate our compliance to our customers throughout the stack.
  4. Assisting the sales team by responding to client security requests and managing compliance-related queries.
  5. Conduct risk assessments based on CIS or ISO 27000 series frameworks, document findings, and help teams achieve compliance efficiently.

Skills

Required

  • Experience in regulated industries (APAC focus: Australia, New Zealand, Singapore)
  • Vendor security assessments
  • Client security questionnaires
  • Compliance management tools (e.g., Vanta)
  • Audit readiness and documentation
  • Cross-functional collaboration (sales, engineering, legal)
  • Public cloud compliance (AWS, GCP, Azure)
  • Automating compliance in cloud environments
  • Integrating compliance tools into CI/CD pipelines

Nice to have

  • Experience with compliance as code tooling

What the JD emphasized

  • Experience in completing vendor security assessments and client security questionnaires in regulated industries across the APAC region, such as Government, Defense, and Finance, with an emphasis on Australia, New Zealand, or Singapore.
  • Proven ability to maintain and acquire certifications while managing audit readiness and documentation.
  • Experience with public cloud compliance (AWS, GCP, Azure) and automating compliance in cloud environments.