April 6
🇺🇸 United States – Remote
💵 $125k - $147k / year
⏰ Full Time
🟠 Senior
👮♂️ Security Engineer
🗽 H1B Visa Sponsor
• Since 2016, dbt Labs has been on a mission to help analysts create and disseminate organizational knowledge. dbt Labs pioneered the practice of analytics engineering, built the primary tool in the analytics engineering toolbox, and has been fortunate enough to see a fantastic community coalesce to help push the boundaries of the analytics engineering workflow. Today there are 30,000 companies using dbt every week, 100,000 dbt Community members, and over 4,100 dbt Cloud customers. You can learn more about our values here.
• Have 4+ years of work experience with Security auditing and/or maintaining information security controls • Have 3+ years working with AWS and Azure • Have a working knowledge of ISO27001, SOC2 Trust Services Principles, GDPR, CCPA, NIST CSF, etc. • Have a passion for working with Security compliance, governance, and risk (GRC) • Are experienced developing and working with a governance, risk, and compliance (GRC) tool • Have procured, built, and/or delivered security awareness training • Have experience completing customer security questionnaires in support of
• Be responsible for timely delivery of key projects (e.g. maintaining our continuous monitoring activities, reviewing control language, interfacing with various stakeholders in the org to implement key controls, additions to our tech stack) • Manage and document scalable Security processes to support our growth and compliance stance • Collaborate with Engineering, Legal, IT, and Security in maintaining and updating company security policies • Support and collaborate with various stakeholders to ensure our SaaS tools are configured and managed within our policies (e.g., perform internal audits and risk assessments of our security posture, provide security training to various parts of the organization) • Develop, maintain, and track remediation of items on the risk register • Document, track, and follow-up on security-related findings (e.g. non-compliance with security policies, track and report on privacy and security awareness training, maintaining risk register) • Coordinate external audits and evidence collection related to SOC2, ISO27001, ISO27701, and other future frameworks • Assist in completion of customer assurance activities, such as security questionnaires • Perform vendor security evaluations of existing and net new vendors
Apply Now