Product Security and Regulatory Expert

5 days, 10 hours ago
Senior
Cybersecurity
Vailexa Technology

Vailexa Technology

Vailexa Technology specializes in staff augmentation services, offering tailored IT solutions for both short and long-term staffing needs, project management, and direct placement.

Internet Software & Services
11-50

Description

  • Interpret global and regional regulations and operationalize them as technical controls and standards.
  • Design and implement controls across infrastructure, cloud, network, application, and data environments.
  • Conduct control testing, gap assessments, risk assessments, and remediation planning.
  • Lead internal and external audits, including evidence collection and auditor responses.
  • Automate compliance validation using CSPM, SIEM, GRC, and related tools.
  • Monitor global regulatory changes and assess their impact on IT systems.
  • Establish repeatable compliance processes and support adherence across countries and regions.
  • Maintain risk registers and remediation roadmaps, and contribute to policy and technical standards documentation.
  • Partner with legal, risk, audit, security, and regional IT teams to maintain a consistent compliance posture.
  • Provide executive-level reporting on compliance risks and posture.

Requirements

  • 7+ years of experience in product security, IT compliance or regulatory compliance, product, or IT security.
  • Deep expertise in EU CRA, EU RED, and IEC 62443.
  • Strong understanding of AWS, Azure, or GCP cloud environments.
  • Knowledge of enterprise networking, identity and access management, data protection, encryption, logging, monitoring, and security tooling.
  • Experience leading or supporting external audits.
  • Ability to translate legal and regulatory requirements into technical requirements.
  • Strong documentation, stakeholder communication, and executive communication skills.
  • Experience operating in complex, matrixed global organizations and making risk-based decisions.
  • Experience in regulated industries such as financial services, healthcare, defense, or telecommunications preferred.
  • CISA, CRISC, CISSP, or ISO 27001 Lead Implementer/Lead Auditor certification preferred; GRC platform and cross-border data compliance experience also preferred.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Risk and Compliance Analyst

9th Way Insignia 51-250 Internet Software & Services

9th Way Insignia is seeking an Engineer 3, Risk and Compliance Analyst to support federal cybersecurity programs by assessing risk, ensuring compliance, and strengthening the security of enterprise systems and information.

Cybersecurity DevSecOps
9 hours ago

Vice President of Sanctions and Financial Crimes Intelligence

Crypto.com 1K-5K Capital Markets

Crypto.com is seeking a Vice President of Sanctions and Financial Crime Intelligence to lead North American sanctions controls, financial crime intelligence, and compliance modernization across its digital asset platform.

Machine Learning
9 hours, 30 minutes ago

Compliance Consultant

Planet Technologies 251-1K Internet Software & Services

Planet Technologies is hiring a Compliance Consultant to advise public-sector, defense, commercial, and state/local customers on compliance strategies, assessments, and documentation across cybersecurity risk management frameworks.

Azure HIPAA
9 hours, 45 minutes ago

Trust & Compliance Operations Manager

Zocks | AI for Advisors 51-200 information technology & services

Zocks is hiring a Trust & Compliance Operations Manager to own vendor diligence and trust operations for its financial-services SaaS business, helping shorten sales cycles and build buyer confidence.

9 hours, 45 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers