Search Remote Jobs

Staff Security Governance Engineer, Policies & Standards

Job not on LinkedIn

🔥 1 minute ago

🇺🇸 United States – Remote

đź’µ $168k - $238k / year

⏰ Full Time

đź”´ Lead

đźš” Compliance

đź‘» Ghost score 0%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of GitLab

GitLab

1001 - 5000 employees

Founded 2014

đź’Ľ Consulting

📣 Marketing

🤖 Artificial Intelligence

đź’° Secondary Market on 2020-11

Consulting • Marketing • Artificial Intelligence

GitLab is the most comprehensive AI-powered DevSecOps platform, offering tools for automated software delivery, security, and compliance throughout the software development lifecycle. It provides solutions across areas such as AI-assisted development, continuous integration/continuous deployment (CI/CD), source code management, and vulnerability management. GitLab aims to simplify and accelerate software delivery by uniting development, security, and operations on a unified platform. It is particularly recognized for its AI code assistants and has been named a leader in the Gartner Magic Quadrant™ for DevOps Platforms, making it a preferred choice for many enterprises.

đź“‹ Description

• Own the end-to-end lifecycle of GitLab's security policies, standards, procedures, and guidelines • Define and run the exception management process, including risk-based approvals, expiry tracking, and trend reporting • Run policy attestation and investigate non-adherence • Monitor emerging regulations and standards, including AI regulation, and update policies with Legal • Maintain mappings between policies and frameworks such as SOC 2, ISO 27001, ISO 42001, FedRAMP, and NIST CSF • Define KPIs for policy adherence and report trends to Security leadership • Run targeted internal assessments and drive remediation to closure • Support audits by coordinating evidence, testing, and remediation management • Support customer questionnaires and customer meetings • Implement automation and AI-assisted workflows for policy management, evidence collection, control monitoring, and assessments • Act as a technical and program leader across Security, Product, Legal, and Engineering • Mentor team members and help set the Security Governance roadmap

🎯 Requirements

• 10+ years in security governance, GRC, or IT risk • Hands-on ownership of a policy and standards lifecycle with measurable outcomes • Working knowledge of SOC 2, ISO 27001, ISO 42001, FedRAMP, and NIST CSF • Understanding of cloud, SaaS, and DevSecOps practices • Ability to write policy that engineers will follow • Risk-based mindset balancing compliance with real security risk • Demonstrated use of automation or AI to reduce manual GRC work • Strong written and verbal communication • Experience collaborating with Security, Product, Legal, and Engineering • Certifications such as CISSP, CISM, CISA, or similar are highly desirable

🏖️ Benefits

• Benefits to support your health, finances, and well-being • Flexible Paid Time Off • Team Member Resource Groups • Equity Compensation & Employee Stock Purchase Plan • Growth and Development Fund • Parental Leave • Remote-first and asynchronous work environment

Apply Now

Similar Jobs

🔥 8 hours ago

Definium Therapeutics

51 - 200

🏥 Healthcare

🧬 Biotechnology

đź’Š Pharmaceuticals

Regulatory affairs director guiding FDA advertising, promotion, and medical-material reviews for Definium’s psychedelic therapeutics. Leading OPDP/APLB interactions and MLR compliance.

🔥 23 hours ago

Ledgebrook

51 - 200

🛡️ Insurance

🤝 B2B

đź’¸ Finance

Director of Compliance launching Stonehaven’s U.S. specialty insurance fronting carrier. Overseeing policy forms, licensing, agreements, regulatory requirements, and compliance risk.

🇺🇸 United States – Remote

đź’µ $150k - $250k / year

đź’° $65M Series C on 2025-07

⏰ Full Time

đź”´ Lead

đźš” Compliance

đź•’ Yesterday

Amgen

10,000+ employees

🏥 Healthcare

🧬 Biotechnology

đź’Š Pharmaceuticals

Amgen regulatory director leading global strategies, filings, and agency interactions for inflammation and rare-disease medicines. Guiding cross-functional product teams toward worldwide approvals and labeling.

đź•’ 2 days ago

BioCryst Pharmaceuticals, Inc.

501 - 1000

🏥 Healthcare

đź’Ľ Consulting

📦 Logistics

Regulatory affairs strategy leader advancing BioCryst’s rare-disease therapeutics. Managing global approvals, lifecycle submissions, FDA filings, and development strategies.

🇺🇸 United States – Remote

đź’° $450M Post-IPO Debt - BioCryst Pharmaceuticals on 2023-04

⏰ Full Time

đź”´ Lead

đźš” Compliance

đź•’ 2 days ago

Telix Pharmaceuticals Limited

501 - 1000

🏥 Healthcare

đź’Ľ Consulting

🧬 Biotechnology

Regulatory Affairs Manager authoring CMC dossiers for Telix Pharmaceuticals’ radiopharmaceutical and biopharmaceutical products. Supporting global regulatory submissions, manufacturing changes, and post-approval programs.