Expoint – all jobs in one place
The point where experts and best companies meet
Limitless High-tech career opportunities - Expoint

Apple Senior Security Compliance Engineer Apple Services Engineering ASE 
United States, Texas, Austin 
24480307

Today
In this role, you will ensure we meet our legal, regulatory, and third party compliance obligations while safeguarding the systems that millions of our users rely on every day. You will collaborate with engineering leaders at many levels, developers, quality engineers, compliance and security teams across Apple to institute the controls vital for the program. You will partner with application security, platform security, SRE, central security and compliance groups at Apple to implement controls and processes and conduct gap assessments across ASE.You will be responsible for supporting dozens of key, ongoing compliance projects including preparation of regulatory materials, management of documentation, creation of presentations, and coordination of cross-functional activity. You will need to be a SOX subject matter expert with sound technical experience and the ability to comfortably deliver executive briefings on our internal control environment.
  • Experience leading and managing SOX programs at scale, preferably in Big 4 or large enterprise environments
  • 7+ years assessing multiple projects, product and infrastructure security risks and recommending mitigating controls
  • 7+ years of security compliance framework experience
  • Expertise with security standards such as SOX, PCI-DSS, ISO27K, SOC 1/2 or NIST (some combination of these is ideal)
  • Technical acumen required. Understanding of one or more of the following technologies/focus areas are ideal - cloud, open sourced distributed systems, security
  • Bachelor's Degree or equivalent experience
  • Current CPA. CISA, CISSP, CISM, CIPT or other related certifications
  • Experience with standards research and contributing to policy reform
  • Experience with light scripting preferred
  • Demonstrated track record of dealing with ambiguity and complexity in achieving and sustaining compliance across technologies at scale