Senior Security Engineer II – IRAP Program Lead

🔥 il y a 22 heures

🇺🇸 États-Unis – Télétravail

💵 $175 000 - $245 000 / an

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Smartsheet

Smartsheet

1001 - 5000 employés

Fondée en 2005

💼 Conseil

🏥 Santé

📣 Marketing

Consulting • Healthcare • Marketing

Smartsheet est une plateforme conçue pour gérer les projets, automatiser les flux de travail et créer des solutions à grande échelle. Elle offre une large gamme de fonctionnalités comprenant l'automatisation, la collaboration en équipe, les tableaux de bord et le reporting, ainsi que des intégrations, permettant aux entreprises de rationaliser leurs opérations. La plateforme répond à divers cas d'utilisation tels que la gestion de projets, la gestion de portefeuilles IT, la gestion marketing, et bien plus encore, s'adressant à diverses industries, y compris le gouvernement, la finance et la santé. Smartsheet accorde également une grande importance à la sécurité et à la protection des données, garantissant la confidentialité des données des utilisateurs. De plus, elle propose des services professionnels tels que le conseil, la formation et le support à la mise en œuvre pour maximiser les capacités de la plateforme.

Description

• Own IRAP (Australia) program strategy and execution, including assessment coordination, remediation, and authorization maintenance • Own ISMAP (Japan) program strategy and execution, including registration, certification assessment, and registry status • Coordinate with ASD-endorsed IRAP assessors, JASA-registered ISMAP assessors, government agencies, and compliance authorities • Design and maintain IRAP System Security Plans and ISMAP Management Standards documentation • Map Smartsheet architecture to IRAP/ISM and ISMAP control requirements • Manage continuous monitoring, quarterly updates, and evidence of ongoing compliance • Lead POA&M and remediation management, including findings, timelines, and evidence collection • Coordinate significant changes and system modifications with product and engineering teams • Build evidence libraries, audit trails, and control-to-implementation traceability • Automate compliance workflows and improve evidence collection efficiency

🎯 Exigences

• 5+ years of hands-on experience with government security compliance frameworks, with direct involvement in at least two of IRAP, ISMAP, FedRAMP, or equivalent national frameworks • Deep knowledge of Australia’s Information Security Manual (ISM) control framework • Knowledge of the Essential Eight Maturity Model • Knowledge of the Protective Security Policy Framework (PSPF) • Deep knowledge of Japan’s ISMAP framework and approximately 1200 control requirements • Understanding of ISMAP-LIU variant and Japanese government procurement context • Experience coordinating assessments in multiple regulatory environments • Experience working through assessment findings and translating recommendations into remediation plans • Familiarity with Australian and Japanese government compliance contexts • Working knowledge of AWS, Azure, or GCP • Knowledge of cloud security controls, infrastructure-as-code, logging, incident response, and compliance-relevant architectures • Understanding of continuous monitoring and evolving framework requirements • Excellent compliance documentation and communication skills • Legally eligible to work in the U.S. on an ongoing basis • Bachelor’s degree in Computer Science, Engineering, or a related field, or equivalent practical experience • Nice-to-have: bilingual or multilingual capability • Nice-to-have: CISSP, CISM, CISA, or ISO 27001 Lead Auditor certification • Nice-to-have: experience with FedRAMP, CMMC, or other national programs • Nice-to-have: cloud service provider compliance or SaaS security background in APAC markets

🏖️ Avantages

• Employer subsidized medical/vision and dental coverage for full-time employees • 401k Match: 50% of your contribution up to the first 6% of your eligible pay • Monthly stipend to support your work and productivity • Flexible Time Away Program • Sick Time Off • Employer-sponsored life insurance • Short-term disability plan • Long-term disability plan • 12 paid holidays per year • Up to 24 weeks of Parental Leave • Personal paid Volunteer Day • Professional growth and development opportunities • Access to Udemy online courses • Counseling membership • Local retail discounts • Personal Smartsheet account • Teleworking options from any registered location in the U.S. (role specific) • Market competitive incentive opportunity

Postuler Maintenant

Emplois Similaires

🔥 il y a 22 heures

Rocket Mortgage

10 000+ employés

💸 Finance

💳 Fintech

🏠 Immobilier

Residential security specialist protecting Rocket Companies executives, private residences, and families. Coordinating executive protection assignments and mitigating physical security risks.

🗣️🇺🇸🇬🇧 Anglais requis

🔥 il y a 22 heures

SmarterDx

11 - 50

🏥 Santé

💼 Conseil

⚖️ Juridique

Senior Security Engineer securing SmarterDx’s clinical AI platform and AWS cloud remotely within the U.S. Building detections, investigating alerts, and improving cloud security operations, automation, and incident response.

🇺🇸 États-Unis – Télétravail

💵 $190 000 - $220 000 / an

💰 €6 000 000 Seed Round en 2022-04

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🔥 il y a 23 heures

AssemblyAI

51 - 200

💼 Conseil

📣 Marketing

📦 Logistique

Senior Security Engineer securing AssemblyAI’s Voice AI models, infrastructure, and compliance program. Owning application security, vulnerability management, audits, and security operations.

🇺🇸 États-Unis – Télétravail

💵 $180 000 - $220 000 / an

💰 €30 000 000 Series B en 2022-07

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🗣️🇺🇸🇬🇧 Anglais requis

🔥 il y a 23 heures

CrowdStrike

5001 - 10000

🔒 Cybersecurity

☁️ SaaS

🤖 Intelligence artificielle

Security researcher tracking South Asia, Latin America, and North Africa cyber threat actors for CrowdStrike’s cybersecurity intelligence platform. Conducting advanced OSINT and producing contextualized threat intelligence reports.

🗣️🇮🇳 Hindi requis

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 jour

Iterable

501 - 1000

🤖 Intelligence artificielle

🤝 B2B

📣 Marketing

Senior Cloud Security Engineer securing Iterable’s AI-powered customer engagement platform. Designing cloud security architecture, automating testing, and enforcing DevSecOps controls across AWS infrastructure.

🇺🇸 États-Unis – Télétravail

💵 $141 000 - $221 000 / an

💰 €200 000 000 Series E en 2021-06

⏰ Temps Plein

🟠 Senior

👮‍♂️ Cybersécurité / Ingénieur Sécurité

🦅 Parrain de Visa H1B

info

🗣️🇺🇸🇬🇧 Anglais requis