Jobs Career Advice Signup
X

Send this job to a friend

X

Did you notice an error or suspect this job is scam? Tell us.

  • Posted: Feb 21, 2024
    Deadline: Not specified
    • @gmail.com
    • @yahoo.com
    • @outlook.com
  • Never pay for any CBT, test or assessment as part of any recruitment process. When in doubt, contact us

    We deliver open source to the world faster, more securely and more cost effectively than any other company. We develop Ubuntu, the world’s most popular enterprise Linux from cloud to edge, together with a passionate global community of 200,000 contributors. Ubuntu means 'humanity to others'​. We chose it because it embodies the generosity at the heart of open source, the new normal for platforms and innovation.
    Read more about this company

     

    Information Systems Security Compliance Engineer

    Description

    • The Security Compliance Engineer works in the office of the CISO in the Risk & Compliance team to help Canonical to achieve overall security & compliance goals and relevant certifications, as well as compliance with regulatory frameworks and other relevant standards.
    • The team's role is to ensure that Canonical conducts its business processes in compliance with laws and regulations, internal policies and procedures defined and international standards/best practices.
    • This position is for an individual with the knowledge, drive and personal motivation to help build and grow a strong security & compliance governance framework in a fast-growing tech company, as well as help it achieve/maintain the necessary compliance certifications.
    • This role can be home or office based. Periodic international travel for training and business meetings is required.

    Key Responsibilities

    • Collaborate with IT operations, Legal, Security, and Engineering teams to define and implement policies and procedures
    • Help to design and implement controls to strengthen the company’s Security Posture
    • Collaborate with various teams to ensure security standards are met across all projects
    • Assess vulnerabilities/risks that could affect the integrity, availability, or confidentiality of data, systems, or services of the company and provide mitigation solutions
    • Conduct regular audits to ensure compliance with internal policies and procedures, relevant security standards best practices, regulations and client requirements to identify gaps and provide remediation solutions
    • Ensure controls are configured correctly and integrated into the security strategy
    • Collaborate with internal teams to respond to Security Questionnaires, Contract  Compliance and Security & Compliance posture questions from customers
    • Provide guidance and support to internal stakeholders regarding security & compliance practices
    • Collaborate with internal teams to gather evidence for external audits
    • Participate in the creation and or maintenance of the Information Security Management System
    • Maintain an up-to-date knowledge on Security standards, best practices and trends to ensure ongoing compliance

    Qualifications
    Valuable experience:

    • Bachelor's Degree (or equivalent) in Computer Science, Information Systems, or related field
    • Affinity with Open Source software with regards to compliance
    • Knowledge of designing and implementing security processes and solutions with topics ranging from architecture, governance, compliance, and operations
    • Technical or engineering background, including software development, scripting, networking, and cloud architecture

    Required skills and experience:

    • 2+ years of experience within a security and compliance function
    • Experience developing and maintaining policies, procedures, standards, and guidelines to align with company’s strategy and best practices
    • Experience with security controls implementation, configuration and maintenance
    • Experience with vulnerability management tooling, remediation, and processes
    • Experience with coding/scripting in one or more languages (Python, C, C++, Java)
    • Experience with Linux operating systems (Ubuntu preferred)
    • Understanding of concepts related to Systems Engineering/DevOps, IaC, IAM, network security, systems security, cryptography
    • Have a wide understanding of cybersecurity and data protection frameworks such as ISO 27001, NIST, SOC2, PCI-DSS, GDPR, CCPA.
    • Experience with third party and external audits

    Method of Application

    Interested and qualified? Go to Canonical on boards.greenhouse.io to apply

    Build your CV for free. Download in different templates.

  • Send your application

    View All Vacancies at Canonical Back To Home

Subscribe to Job Alert

 

Join our happy subscribers

 
 
Send your application through

GmailGmail YahoomailYahoomail