
Staff Security Assurance Engineer - Compliance
Databricks
- Location
- Japan
- Posted
Staff Security Assurance Engineer for Databricks, managing ISMAP compliance program and ensuring audit readiness across the organization.
Databricks
Staff Security Assurance Engineer for Databricks, managing ISMAP compliance program and ensuring audit readiness across the organization.
Databricks
Join Databricks Security Assurance Team as a Security Assurance Engineer and support ISMAP compliance efforts in Japan.
Figma
Coordinate and manage audit certification lifecycles for Figma's compliance initiatives. Maintain certifications like SOC 2 Type II and ISO 27001, drive roadmaps based on customer needs, improve operational activities, implement scalable controls, and configure automation tools for continuous monitoring.
Gradient AI
Staff Security Engineer at Gradient AI: Manage overall security posture, lead risk assessments, cloud security, and implement best practices.
Lattice
Remote Staff Product Security Engineer role at Lattice, requiring secure coding practices, vulnerability detection, and collaboration with product teams.
Canonical
Lead go-to-market strategies and campaigns for Canonical's security and compliance products, collaborating with cross-functional teams to drive growth and innovation in technology marketing.
Lime
Join Lime's Security team as a Staff Security Software Engineer and contribute to building impactful security solutions for the company's electric bike and scooter services.
ElevenLabs
Automate vendor due diligence and security questionnaires for ElevenLabs, a rapidly growing startup pioneering AI voice models and products.
Rackspace
Lead security policy management and awareness initiatives at Rackspace Technology, utilizing tools like Archer GRC and platforms such as ProofPoint and KnowBe4 to enhance organizational security and compliance.
Binance
Smart Contract Security Engineer (Security Audit) at Binance
Binance
Senior Java Spring Developer - Remote position offering flexibility to work from anywhere in the world
Nextech
Quality Assurance Engineer at Nextech: Ensure product quality and functionality through testing and collaboration.
Rackspace
Lead security policy management and awareness training for large enterprises using Archer GRC Tool, with a strong understanding of cybersecurity best practices.
WorkOS
Join WorkOS as a Security Engineer to enhance our security infrastructure, ensuring the safety of authentication and identity solutions for thousands of SaaS customers. Lead security projects, mentor teams, and implement best practices using tools like SCA, SAST, DAST, and CNAPP.
Wealthfront
Join Wealthfront's Security Engineering team as a security-minded engineer to build and mature security solutions in a fast-growing fintech organization.
Twilio
Risk management analyst needed at Twilio, requiring 5+ years of experience in security-centric risk management and compliance frameworks.
Twilio
Risk Management Analyst at Twilio, leading daily management of One Twilio Risk Management program, developing risk registers, collaborating with teams, and analyzing risk data.
CoinsPaid
Join CoinsPaid as Security Infrastructure Engineer and enhance secure development practices with logging systems, Hashicorp Vault, and DevSecOps tools.
GuidePoint Security
Security Engineer for medium to very large environments with expertise in firewalls, IDS/IPS solutions, malware prevention, routing & switching architectures, cloud edge security, and more.
Curai
Lead Security Engineer at Curai Health: Drive security initiatives, implement frameworks like ISO 27001/2 and NIST CSF, ensure HIPAA/SOC-2 compliance. Collaborate with engineering teams to maintain secure infrastructure in a remote-first environment.
Databricks
We are seeking a Staff Security Assurance Engineer to manage the ISMAP compliance program for Databricks. As a key member of the Security Assurance Team, you will lead and maintain certification efforts, support gap assessments, and ensure audit readiness across the organization. You will work closely with teams such as Engineering, IT, and HR to improve security compliance and security audit programs. The ideal candidate has 8+ years of security experience, including ISMAP certification and management or conducting security audits. Native fluency in Japanese is required, along with excellent communication skills. This role offers flexible remote work options and a competitive compensation package.
RDQ425R51
Security Engineers are the first line of defense against malicious actors in the IT industry. They screen their company’s critical IT infrastructure for weaknesses and create robust countermeasures to prevent future incidents. They must coordinate across departments and divisions to accomplish collaborative goals. The Databricks Security Assurance Team enables Databricks to achieve third party certifications in order to help secure Databricks and provide confidence to customers. As a Staff Security Assurance Engineer, you will be responsible for performing managing the ISMAP compliance program. You will be an individual contributor reporting to the Sr. Manager of the Security Assurance Team.
This is a work opportunity within the following geographic regions:
Japan
The impact you will have:
Enable the sale of Databricks products to Japanese government agency customers by leading and maintaining Databricks’ ISMAP certification efforts
Enable new business by supporting gap assessments of new security compliance requirements
Support other Security Assurance Team certifications, reports, and activities
Support security compliance reviews of new features
Ensure audit readiness and security compliance across the organization by working with other teams such as Engineering, IT, and HR
What we look for:
We are looking for a professional with the following skills and practical experience in:
Bachelor's degree in Computer Science or related field, or equivalent experience
8+ years of security experience with at least 4 years of that in security compliance or security audits
Experience with ISMAP certification
Experience achieving security certifications
Experience managing or conducting security audits
Experience improving security compliance or security audit programs
A comprehensive understanding of security controls across all domains
A general understanding of key technical security controls in cloud environments (AWS, Azure, GCP)
Experience working effectively across the spectrum of individual contributors and senior leadership within an organization (for example, Engineering IT, Security, etc.)
Native fluency in Japanese, both verbal and written
Ability to communicate effectively in Japanese in professional settings
Excellent reading comprehension of complex Japanese texts
Excellent writing skills in Japanese, including formal business correspondence.
Capability to interpret and translate between Japanese and English accurately.