Jobs

Senior Security Engineer - Risk and Compliance

Location Details: India, Remote

At GoDaddy the future of work looks different for each team. Some teams work in the office full-events or offsites. Your hiring manager can share more about this role’s hybrid or remote time, others have a hybrid arrangement (they work remotely some days and in the office some days) and some work entirely remotely.

This is a remote position, so you’ll be working remotely from your home. You may occasionally visit a GoDaddy office to meet with your team for events or meetings.  

Join the team

We are looking for a Senior GRC Engineer to help us refine and grow our PCI compliance program, improve documentation, and work toward continuous control monitoring.

We are a multifaceted and growing company that loves what we do and are looking for passionate people to share our vision. We focus on distilling compliance and risk concepts to their core principles, enabling us to envision creative solutions for our partners.

The ideal candidate will be passionate about risk management while helping the company innovate with a seamless compliance experience. If you want to work with smart people doing work that enables our business partners to build amazing products, we would like to talk to you!

What you'll get to do...

  • Serve as a subject matter expert in PCI compliance and act as a resource to the business for PCI related topics and projects
  • Perform monitoring activities related to PCI compliance, including third party compliance reviews, scope assessments and maintenance/creation of detailed PCI data flows
  • Facilitate external audits by working with internal contacts, collecting evidence, and providing feedback to both internal customers as well as the auditors to keep the project on target and on budget
  • Cross train and contribute to different compliance domains (SOC 1, SOC 2, SOX, WebTrust, ISO 27000 series, etc.)
  • Manage stabilised operational compliance programs

Your experience should include...

  • QSA/ISA experience
  • 5+ years of experience designing or evaluating compliance programs related to regulatory compliance (PCI DSS, P2PE, SOX, ISO 27000 series, etc.)
  • A high-level understanding of common security patterns such as API security, Authentication patterns, Encryption, vulnerabilities (OWASP), etc.
  • Experience with both on premise and cloud environments (AWS)
  • Demonstrated ability to implement IT governance, compliance and risk management principles in a highly complex environment
  • Experience applying security engineering practices that align with security and privacy compliance requirements

You might also have...

  • BA/BS in Business, IT or related discipline
  • Current CISA, CISM, and/or CISSP certification is a plus
  • Experience with a diverse set of technologies: SQL, BASH, PowerShell, JavaScript a plus
  • High degree of creativity and problem-solving aptitude with demonstrated ability to deliver well thought out solutions to complex technical and compliance related problems
  • A history of creating reporting solutions to enable self-service audit support is a plus
  • Experience shifting manual activities toward automation by providing detailed requirements to development resources is a plus

We've got your back...  We offer a range of benefits that may include paid time off, retirement savings (e.g., 401k, pension schemes), incentive eligibility, equity grants, participation in an employee stock purchase plan, and other family-friendly benefits including parental leave. GoDaddy’s benefits vary based on individual role and location and can be reviewed in more detail during the interview process.   

We also embrace our diverse culture and offer a range of Employee Resource Groups (Culture). Have a side hustle? No problem. We love entrepreneurs! Most importantly, come as you are and make your own way. 

About us...  GoDaddy is empowering everyday entrepreneurs around the world by providing the help and tools to succeed online, making opportunity more inclusive for all. GoDaddy is the place people come to name their idea, build a professional website, attract customers, sell their products and services, and manage their work. Our mission is to give our customers the tools, insights, and people to transform their ideas and personal initiative into success. To learn more about the company, visit About Us

At GoDaddy, we know diverse teams build better products—period. Our people and culture reflect and celebrate that sense of diversity and inclusion in ideas, experiences and perspectives. But we also know that’s not enough to build true equity and belonging in our communities. That’s why we prioritize integrating diversity, equity, inclusion and belonging principles into the core of how we work every day—focusing not only on our employee experience, but also our customer experience and operations. It’s the best way to serve our mission of empowering entrepreneurs everywhere, and making opportunity more inclusive for all. To read more about these commitments, as well as our representation and pay equity data, check out our Diversity and Pay Parity annual report which can be found on our Diversity Careers page

GoDaddy is proud to be an equal opportunity employer. GoDaddy will consider for employment qualified applicants with criminal histories in a manner consistent with local and federal requirements.Refer to our full EEO policy.

Our recruiting team is available to assist you in completing your application. If they could be helpful, please reach out to [email protected]

GoDaddy doesn’t accept unsolicited resumes from recruiters or employment agencies.

Cyber Security Jobs by Category

Cyber Security Salaries