Back to Jobs

Security Compliance Engineer - Knowledge Management

Apple Cupertino, California, United States Full-time
$120,000
per year

Job Description

The Apple Services Engineering (ASE) Compliance organization oversees the Privacy and Security compliance program for Cloud platform. These are the teams that provide infrastructure services to departments across Apple. ASE Compliance must ensure that the Cloud teams as well as their internal customers are positioned to meet Apple’s extremely high privacy and security expectations. To do this, teams must understand their individual responsibilities based on a well-defined shared responsibilities model. We are looking for a security compliance engineer that will be partner closely with the ASE Compliance team members and Cloud team members to develop clear and actionable guidance for all Apple teams involved in the management of compliance workloads on the Apple Cloud platform.

Description


In this role you will, - Establish a documentation strategy to provide consistent compliance documentation across the various Cloud services so that Cloud customers understand how and where compliance workloads can be deployed. - Drive the development of clear shared responsibilities documentation, which ensures both platform providers and platform customers understand their individual responsibilities. - Support the development of audit documentation, which outlines how various compliance requirements are met and can be validated in the course of an audit. - Identify and work to remediate potential gaps or concerns that are identified in the creation of documentation.

Minimum Qualifications


Hands-on experience maturing privacy/security compliance programs in a large-scale technology environment. Experience mapping abstract compliance requirements to concrete technical controls. Strong communication skills and the ability to create engineering-centric documentation. Ability to partner with security and engineering to investigate and drive resolution around open questions related to the security/compliance of a given service or platform. An understanding of compliance responsibilities in cloud-based platforms, which employ a shared-responsibilities model. Strong self-management and organizational skills.

Preferred Qualifications


Experience managing formal compliance obligations (e.g. PCI/SOX) in an innovative technology environment. At least 5 years in a security engineering, security compliance or security related role BA/BS in Computer Science or equivalent professional experience

Company Information

Location: Cupertino, CA

Type: Hybrid

Badges:
Changemaker Flexible Culture