How Remoteville checks and expires listings
Staff Engineer, Security Assurance & Audit
Skills
Data CentersExecutive ReportingISO 27001ISO StandardsInterest RatesPersonal BoundariesReadiness
What the job involves
The main requirements, responsibilities and hiring steps.
Requirements
- 5+ years in security assurance security compliance GRC external audit technical program management or related security roles
- Hands-on experience with SOC 2 Type II and ISO 27001
- Experience managing external audits certification engagements readiness assessments or audit-response programs
- Strong understanding of control design operating effectiveness audit evidence sampling and audit defensibility
- Ability to work with engineering infrastructure security physical security IT HR legal and operations teams
- Experience translating framework requirements into control-owner actions and evidence requirements
- Strong program-management skills including cadences timelines dependencies executive reporting and escalation
- Excellent written communication skills for audit narratives scope statements control explanations and executive updates
- Comfort operating in ambiguous fast-growth environments with high customer expectations
Nice to have
- HITRUST
- NIST 800-53
- Cyber Essentials Plus
- UK government frameworks
- Data center experience
- Cloud infrastructure experience
- Bare-metal experience
- Sovereign cloud experience
- AI infrastructure experience
- Critical infrastructure experience
- Modern GRC platform experience
- Automation mindset
- Continuous monitoring
- Physical security experience
- Multi-geography experience
Day to day
- Lead security assurance execution across SOC 2 Type II ISO standards and other relevant frameworks for Nscale's global AI infrastructure.
- Own audit-readiness planning for new sites systems services and customer commitments while maintaining a defensible operating model.
- Partner across security infrastructure legal physical security and customer trust to build evidence standards coordinate audits and close control gaps.
