Senior Security Compliance Engineer
Job Summary
Contribute to the growing quality assurance program at MathWorks, including performing security compliance audits, identifying problems and areas for process improvement. Work closely with internal business units and relevant departments to increase security awareness, assess compliance and where necessary, provide support in remediating non-compliant areas. Develop a deep understanding of security controls, underlying business processes, concepts, practices, and tools used at MathWorks, to promote adoption of applicable security standards. Advise management on specific security requirements, implementations and the impact on business processes, applications and systems as needed. Generate periodic reports to teams and senior stakeholders and make practical recommendations to improve security practices. Research and extract insights from industry standards and trends, apply them to the scope of internal controls at MathWorks and improve security practices and compliance in the company. Facilitate organizational adoption of new security controls, standards and best practices through thoughtful change management strategies.
May telecommute up to 40%.
Rate of Pay: $154,586.00 to $183,600.00 per year
Responsibilities
Qualifications
Employer will accept a Master’s degree in Computer Science, Information Systems, Engineering [any], or a related field and [2] two years of experience in the job offered or in a Senior Security Compliance Engineer-related occupation.
Alternatively, employer will accept a PhD degree in Computer Science, Information Systems, Engineering [any], or related field and no experience or a Bachelor’s degree in Computer Science, Information Systems, Engineering [any], or related field and [5] five years of experience in the job offered or in a Senior Security Compliance Engineer-related occupation.
Position requires demonstrable experience with the following:
- Software development processes;
- Performing internal process audits and process improvement work.
- Understanding of SOC 2, COBIT, ITIL, ISO, IT General Controls (ITGC), NIST, or other industry standard control frameworks to document and assess Cybersecurity and IT processes.
Experience may be gained during graduate program. Will accept any suitable combination of education, training, and/or experience.Multiple positions available.