We securely connect everything to make anything possible.
Security Compliance Engineer
Location
India
Posted
2 days ago
Salary
0
Seniority
Senior
Job Description
Security Compliance Engineer
Cisco
• Act as the primary technical point of contact for IRAP assessments and commercial compliance/regulatory inquiries. • Explain Dashboard infrastructure, system architecture, data flows, and security controls to assessors and regulators. • Partner with global Compliance and Security teams to prepare evidence, documentation, and responses for IRAP. • Coordinate with Engineering Teams to validate and implement required controls. • Track changes to ASD ISM, IRAP guidance, Essential Eight, Australian government cloud/security expectations, and applicable privacy or critical infrastructure requirements; assess impact to Dashboard services. • Contribute to audit readiness, remediation efforts, and continuous compliance improvements. • Maintain IRAP control mappings against Cisco CCF controls, including applicability, implementation status, ownership, evidence sources, and compensating controls. • Own the end-to-end IRAP assessment lifecycle, including scope definition, assessor engagement, evidence collection, assessment logistics, report review, and post-assessment remediation tracking. • Translate IRAP findings into prioritized engineering requirements, risk treatment plans, exceptions, and executive-level status reporting. • Review IRAP assessment reports, letters of completion, and customer-facing assurance materials for technical accuracy and consistency.
Job Requirements
- Bachelor’s degree in Computer Science, Engineering, Information Security, or a related field, or equivalent practical experience.
- 3-7 years of experience in security engineering, cloud/infrastructure engineering, security assurance, or technical compliance.
- Strong understanding of cloud infrastructure, networking, system architecture, identity and access management, encryption, logging, vulnerability management, and security control implementation.
- Experience supporting security assessments or compliance frameworks such as IRAP, ASD ISM, ISO 27001, SOC 2, PCI DSS, FedRAMP, or similar.
- Ability to interpret security control requirements and translate them into technical evidence, architecture narratives, remediation plans, and engineering requirements.
- Ability to clearly explain complex technical and compliance topics to engineers, assessors, customers, auditors, and non-technical stakeholders.
- Experience coordinating cross-functional work with Security, Compliance, Engineering, Legal, Product, and customer-facing teams.
- Familiarity with ASD ISM, IRAP assessment processes, Essential Eight, or Australian government cloud security expectations.
- Experience with cloud compliance programs for government or regulated customers.
- Background working with global or multinational technology companies
- Experience creating or maintaining system security plans, control matrices, architecture diagrams, data flow diagrams, or customer-facing security documentation.
- Relevant certifications such as CISSP, CCSP, CISM, CISA, ISO 27001 Lead Implementer/Auditor, AWS/Azure/GCP security certifications, or equivalent.
Benefits
- Flexible work arrangements
- Professional development opportunities
Related Guides
Related Categories
Related Job Pages
More Security Engineer Jobs
Manager, Cybersecurity and Infrastructure
Oxfam AmericaWe’re fighting global inequality to end poverty and injustice, so that everyone can thrive, not just survive. Join us.
• Coordinates with Oxfam International (OI) InfoSec Team, Affiliates Infrastructure Teams, Local and International Business Units and Staff, Business Applications Manage, Vendors and Consultants. • Lead and maintain the stability, security, and scalability of the organization’s IT systems. • Oversee the operation and maintenance of on-premise and cloud-based infrastructure, including network devices, servers, and backups. • Lead the helpdesk team effectively, ensuring timely and efficient technical support for staff as defined by our service level agreements • Manage security infrastructure, such as firewalls and policies, and VPN access in line with global Oxfam security protocols and applicable regulatory requirements. • Ensure high quality system performance and troubleshoot issues as needed. • Develop, maintain, and continuously improve IT infrastructure documentation, including network diagrams, system architecture, configuration standards, asset inventories, and operational procedures.
Staff Security Software Engineer
General MotorsJoin us on our journey toward a world with zero crashes, zero emissions, and zero congestion.
Description The Role : We're looking for a seasoned Security Software Engineer to join our IAM team (Identity Access Management) to help develop, architect and advance our suite of applications and services. You will contribute primarily to developing novel IAM technology for GM while also advancing and optimizing our SaaS services. Serve as an internal subject matter expert on architecture, implementation, management, and industry best practices for identity strategy. What You'll Do : - Design and develop security-focused software solutions, tools, and automation frameworks - Integrate security into CI/CD pipelines and cloud-native environments - Collaborate with infrastructure and application teams to embed security into system architecture - Conduct code reviews and threat modeling to identify and remediate vulnerabilities - Build and maintain systems for monitoring, logging, and alerting on security events - Develop and maintain APIs and microservices that support security operations - Participate in incident response and forensic investigations as needed - Stay current with emerging threats, vulnerabilities, and security technologies Your Skills & Abilities (Required Qualifications): - Bachelor's degree in Computer Science, Cybersecurity, or related field (or equivalent experience). - 9+ years of experience in the administration, configuration, and support of IAM products including: EntraID, SailPoint or other similar products. - Advanced proficiency in one or more programming languages (e.g., Python, Go, Java, C++). - Experience with cloud platforms (AWS, Azure, GCP) and containerization (Docker, Kubernetes) - Strong understanding of authentication, authorization, encryption, and secure coding practices. - Experience working with security and audit teams - Ability to self-manage time and maintain an excellent work ethic in an Agile environment - Able to convey identity requirements and concepts across different levels of users - Strong verbal and written communication skills What Will Give You A Competitive Edge (Preferred Qualifications): - Exposure to contractor heavy and partner collaboration driving identity systems - Project experience modeling and deploying external identity architectures - Experience working with Databricks, Microsoft, or Google products - Experience with CASB security integrations - Experience with front-end application development Compensation: The compensation information is a good faith estimate only. It is based on what a successful applicant might be paid in accordance with applicable state laws. The actual base salary a successful candidate will be offered within this range will vary based on factors relevant to the position, as well as geography of the selected candidate. • The salary range for this role is $160,200-$246,300. The actual base salary a successful candidate will be offered within this range will vary based on factors relevant to the position. • Bonus Potential: An incentive pay program offers payouts based on company performance, job level, and individual performance. Benefits: Benefits: GM offers a variety of health and wellbeing benefit programs. Benefit options include medical, dental, vision, Health Savings Account, Flexible Spending Accounts, retirement savings plan, sickness and accident benefits, life insurance, paid vacation & holidays, tuition assistance programs, employee assistance program, GM vehicle discounts and more. GM does not provide immigration-related sponsorship for this role. Do not apply for this role if you will need GM immigration sponsorship now or in the future. This includes direct company sponsorship, entry of GM as the immigration employer of record on a government form, and any work authorization requiring a written submission or other immigration support from the company (e.g., H1-B, OPT, STEM OPT, CPT, TN, J-1, etc.) This role is based remotely, but if the selected candidate lives within a specific mile radius of a GM hub, they will be expected to report to the location three times a week {or other frequency dictated by your manager}. This job may be eligible for relocation benefits. About GM Our vision is a world with Zero Crashes, Zero Emissions and Zero Congestion and we embrace the responsibility to lead the change that will make our world better, safer and more equitable for all. Why Join Us We believe we all must make a choice every day - individually and collectively - to drive meaningful change through our words, our deeds and our culture. Every day, we want every employee to feel they belong to one General Motors team. Total Rewards | Benefits Overview From day one, we're looking out for your well-being-at work and at home-so you can focus on realizing your ambitions. Learn how GM supports a rewarding career that rewards you personally by visiting Total Rewards resources. Non-Discrimination and Equal Employment Opportunities (U.S.) General Motors is committed to being a workplace that is not only free of unlawful discrimination, but one that genuinely fosters inclusion and belonging. We strongly believe that providing an inclusive workplace creates an environment in which our employees can thrive and develop better products for our customers. All employment decisions are made on a non-discriminatory basis without regard to sex, race, color, national origin, citizenship status, religion, age, disability, pregnancy or maternity status, sexual orientation, gender identity, status as a veteran or protected veteran, or any other similarly protected status in accordance with federal, state and local laws. We encourage interested candidates to review the key responsibilities and qualifications for each role and apply for any positions that match their skills and capabilities. Applicants in the recruitment process may be required, where applicable, to successfully complete a role-related assessment(s) and/or a pre-employment screening prior to beginning employment. To learn more, visit How we Hire. Accommodations General Motors offers opportunities to all job seekers including individuals with disabilities. If you need a reasonable accommodation to assist with your job search or application for employment, email us [email protected] or call us at 1-800-865-7580. In your email, please include a description of the specific accommodation you are requesting as well as the job title and requisition number of the position for which you are applying.
IT Security, SOX Specialist
Distinguished ProgramsWe're a National Program Administrator, serving brokers with specialized coverages.
• Lead and oversee the IT General Controls (ITGC) program to ensure SOX compliance across all systems, including control testing, deficiency evaluation, and remediation tracking. • Coordinate and execute on ITGC risk assessments, control documentation, walkthrough, and test activities across access management, change management, and IT operations. • Evaluate control design and operating effectiveness; identify deficiencies, assess risk impact, and partner with technology stakeholders on remediation planning. • Track remediation progress, validate corrective actions, and escalate unresolved risks in accordance with governance expectations. • Serve as the primary liaison with Internal Audit and external auditors, supporting SOX and other external audit requests and ensuring timely, audit-ready deliverables. • Prepare executive reports on control performance, deficiencies, and overall compliance status, while driving continuous improvement and control maturity. • Coordinate with IT stakeholders to obtain evidence, clarify control executions and support remediation activities. • Support the CISO in implementing internal security policies and providing required support to monitor, remediate, and improve the policies and procedures. • Manage security monitoring, incident response coordination, vulnerability management, and access governance activities. • Ensure appropriate security controls are integrated into system development lifecycle (SDLC), cloud deployments, and infrastructure operations. • Develop metrics, dashboards, and executive reporting related to security posture and compliance status. • Collaborate cross-functionally with Infrastructure, Application Development, and Shared Services teams. • Promote security awareness and compliance culture across the organization.
Senior SailPoint App Security Specialist
IRIUMLíderes en gestión de servicios integrados de infraestructuras y plataformas IT.
• Participar en la gestión y evolución de soluciones de identidad y gobierno de accesos • Garantizar la seguridad e integridad de las aplicaciones corporativas




