Remote job
Security Compliance Engineer
Job details
About this role
Role overview Help strengthen security and privacy controls for a payments-focused technology environment. You will contribute technical implementation expertise to audits and translate compliance requirements into controls that can be enforced, measured, and evidenced. The role works closely with engineering and DevOps teams across cloud infrastructure and internal security tooling.
Responsibilities - Contribute technical evidence and implementation work for ISO 27001/27701, ISO 42001, SOC 2, and PCI DSS audits. - Turn security, privacy, and compliance requirements into scalable, auditable technical controls. - Build and maintain internal security tools in Python to support security operations. - Partner with engineering and DevOps teams to implement and validate cloud security controls in AWS and GCP. - Support privacy-focused security initiatives in a global payments context.
Requirements - Practical experience supporting ISO audits and implementing controls technically. - Background in fintech, payments, or another highly regulated environment. - Engineering familiarity with SOC 2 or PCI DSS requirements. - Understanding of privacy requirements and frameworks. - Working knowledge of Python for simple tooling. - Solid knowledge of AWS and/or GCP security services, such as web application firewalls, threat detection, security monitoring, or cloud security posture tools. - Strong collaboration skills and fluency in English.
Nice to have - Familiarity with Kubernetes or container security. - Experience with infrastructure as code, such as Terraform or CloudFormation. - Vendor risk management or third-party security reviews. - Familiarity with serverless, event-driven, or AI-integrated architectures.
Benefits and work setup - Remote work, with work equipment and a one-time home office allowance. - Stock options, health coverage, and flexible days off.