Security Engineer

Glean Glean · Enterprise · Engineering

This role focuses on IT security and compliance engineering within a cloud-native environment, ensuring adherence to standards like SOC2 and HIPAA, developing security policies, and mitigating risks. It involves collaboration with business teams and SaaS application security.

What you'd actually do

  1. Maintain compliance with industry standards like SOC2 and HIPAA, leveraging tools to automate workflows and reduce manual effort.
  2. Prepare for external audits by maintaining compliance documentation.
  3. Work towards the implementation of a comprehensive third-party vendor review program.
  4. Identify areas of highest risk within the organization and collaborate with teams to mitigate these risks through technical and administrative controls.
  5. Collaborate with business teams to assess and implement appropriate security settings and access controls in SaaS applications.

Skills

Required

  • 5+ years in managing security compliance, IT security, with a focus on cloud-native environments.
  • Strong understanding of modern endpoint security solutions and securing remote employees' devices.
  • Experience in implementing and managing compliance frameworks such as SOC2, HIPAA, GDPR, etc.
  • Excellent analytical and problem-solving skills with the ability to handle complex technical challenges.

Nice to have

  • Bachelor's degree in Computer Science, Information Technology, or a related field (or equivalent work experience).
  • Relevant certifications such as CISSP, CISM, CompTIA Security+, or equivalent, are a plus.
  • Familiarity with cloud native security practices in GCP/AWS/Azure is a plus.

What the JD emphasized

  • SOC2
  • HIPAA
  • GDPR
  • CCPA