Back to List
Senior Security Compliance Specialist
Team
Security
Location
Hong Kong, Shanghai, Shenzhen
Senior Security Compliance Specialist
Flexport Security team is growing and looking for a highly motivated security compliance specialist to join our team and drive regulatory and certification compliance requirements for our products. You will help to build and manage our security compliance program. You should be a technically experienced and innovative security, risk, compliance, and audit professional who has the ability to understand systems, security, and privacy processes, communicate to customers, and be able to drive innovative process changes through multiple organizations and teams.
Key job responsibilities
- Understand and rationalize compliance requirements for service and device security.
- Provide business-specific interpretations and support automation opportunities
- Review security controls that are technical in nature, such as access controls, data encryption in transit and at rest, and auditing and logging user activity
- Engage with the Business and SMEs to ensure compliance with information security policies
- Liaise with auditors, articulate control implementation and impact, and establish considerations for applying security, privacy, and compliance concepts to a technical cloud environment
- Maintain control libraries and compliance requirements and guidance materials for various security standards and regulations
- Experienced in reporting metrics, timelines, and effective project management skills.
- Provides input to privacy, disclosure, and confidentially guidelines.
- Assists in the implementation of processes and procedures for compliance reporting and metrics activities.
- Researches best practices and innovative approaches to enable assessment and communication of compliance risk and metrics.
Preferred Qualifications
- 3-5 years of experience in security or compliance consulting or advisory work in support of a highly technical environment
- 3-5 years of experience in performing and/or participating in technical assessments in direct support of a major compliance effort (e.g. China information security-related law and regulations, GBT, NIST, SOC1, ISO, or ISO)
- 3-5 years of experience designing, implementing, and/or running technical GRC solutions
- Master’s degree in Information Security, Computer Science, Risk Management, Data security with 5 years of experience, or equivalent Bachelor’s degree with 5 years of experience.
- Experience working directly with security engineers, auditors, and development teams
- Excellent English is written and verbal communication skills while engaging both technical and non-technical stakeholders
在 Flexport 飞协博寻找机会
- Account Management
- 客户解决方案与实施
- 业务支持
- 业务运营
- Compensation
- 海关
- 数据科学与分析
- 软件开发
- 财务
- Flexport 飞协博生态系统
- Flexport.org
- 管理
- 全球品牌
- IT
- Infrastructure
- 法务
- 营销
- 首席执行官办公室
- 首席技术官办公室
- 卓越运营
- 合作关系
- 人力资源
- 产品管理
- 销售
- Security
- 供应链运营
- 技术计划管理
- 贸易和财务服务
- 贸易航线管理
- 卡车运输
- 用户体验
- 仓储
- 办公室和设施行政
- 阿姆斯特丹
- 亚特兰大
- 贝尔维尤
- 芝加哥
- 哥本哈根
- 达拉斯
- Germany
- 汉堡
- 胡志明市
- 中国香港
- Italy
- 洛杉矶
- Madrid
- 迈阿密
- 纽约市
- 三藩市
- 上海
- 深圳
- 新加坡
- Spain
- 多伦多
- 在美远程工作
- United States
More About Flexport