Match score not available

Senior Security Compliance Auditor - Product

Remote: 
Full Remote
Contract: 
Experience: 
Senior (5-10 years)
Work from: 

Offer summary

Qualifications:

Bachelor's degree and 6 years experience, Master's degree and 3 years experience, PhD or equivalent experience, Strong knowledge of software development processes, Experience with SOC 2, ISO 27001/2, NIST SSDF.

Key responsabilities:

  • Develop and execute internal audit plans
  • Maintain internal audit reports and track remediation
  • Make practical recommendations to improve security practices
  • Review application threat models and data security plans
  • Ensure alignment of security controls across compliance areas
MATLAB logo
MATLAB XLarge http://mathworks.com
5001 - 10000 Employees
See more MATLAB offers

Job description

Logo Jobgether

Your missions

MathWorks has a hybrid work model that enables staff members to split their time between office and home. The hybrid model provides the advantage of having both in-person time with colleagues and flexible at-home life optimizations. Learn More: https://www.mathworks.com/company/jobs/resources/applying-and-interviewing.html#onboarding.

Are you passionate about cybersecurity compliance and software auditing? Are you interested in driving adoption of standards and practices to improve product security? If yes, we’d love to talk to you.

Our internal Quality Assurance function is looking for a detail-oriented and enthusiastic Senior Product Security QA Engineer to drive audit efforts within MathWorks to improve compliance to industry standards for product security. In this role, you will work with various stakeholders to improve internal security controls and compliance with product security practices through periodic internal auditing.

MathWorks nurtures growth, appreciates diversity, encourages initiative, values teamwork, shares success, and rewards excellence.

,

  • Develop and execute internal audit plans to periodically assess compliance to industry frameworks for product security, maintain internal audit reports, and track remediation.
  • Enable management oversight through clear and effective periodic internal audit reporting to teams and senior stakeholders.
  • Make practical recommendations to improve security practices and increase the strength of the overall control environment.
  • Perform periodic reviews of application threat models, data security plans and vulnerability assessments to ensure compliance with security standards and processes.
  • Work with Product Security Team to increase adoption of NIST Secure Software Development Framework and facilitate organizational adoption of security standards and best practices through cross-functional engagement.
  • Ensure alignment of common security controls across a broad scope of compliance areas and reduce waste through reuse of applicable operational evidence to assess security of scoped systems.
  • Work with cross-functional teams to ensure audit-readiness and drive external audits with certification authorities.

,

  • Strong knowledge of software development processes, cloud-based infrastructure, cybersecurity, network security, risk management, application security, and third-party management.
  • Experience with / understanding of SOC 2, ISO 27001/2, NIST SSDF, FedRAMP and/or other industry standard control frameworks to document and assess Product Security compliance.
  • Demonstrated knowledge of IT audit methodologies and control frameworks of IT platforms, cyber security processes, systems, and controls.
  • Exceptional communication skills including clear and concise writing, an engaging presentation style, and group facilitation.
  • Strong teamwork skills with a demonstrated ability to collaborate across teams and roles.

,

  • A bachelor's degree and 6 years of professional work experience (or a master's degree and 3 years of professional work experience, or a PhD degree, or equivalent experience) is required.

, Are you passionate about cybersecurity compliance and software auditing? Are you interested in driving adoption of standards and practices to improve product security? If yes, we’d love to talk to you.

Required profile

Experience

Level of experience: Senior (5-10 years)
Industry :
Spoken language(s):
Check out the description to know which languages are mandatory.

Soft Skills

  • Verbal Communication Skills
  • Teamwork
  • Analytical Thinking

Compliance Officer Related jobs