Compliance Analyst, HashiCorp

GRC, Product Line Readiness

$131.1-185k

Salary dependent on location

AWS
Azure
Junior and Mid level
Remote in US
HashiCorp

Cloud-computing infrastructure provider

Be an early applicant

HashiCorp

Cloud-computing infrastructure provider

1001+ employees

B2BEnterpriseMarketplaceSaaSCyber SecurityCloud Computing

Be an early applicant

$131.1-185k

Salary dependent on location

AWS
Azure
Junior and Mid level
Remote in US

1001+ employees

B2BEnterpriseMarketplaceSaaSCyber SecurityCloud Computing

Company mission

To help organizations to operate infrastructure in the cloud because it believes that infrastructure enables innovation.

Role

Who you are

  • The ideal candidate will have experience collaborating with cross-functional teams to embed compliance controls into agile and DevOps processes, providing continuous guidance and oversight throughout the product development lifecycle
  • We are looking for a self-motivated individual who thrives in a fast-paced environment, can seamlessly drive efforts across multiple projects, working with various stakeholders
  • Minimum of 2-5 years of related professional compliance and controls program experience
  • Previous experience in a cloud environment, preferably AWS and/or Azure
  • Experience with modern DevOps patterns and practices, with a strong understanding of how to embed security controls into these processes
  • Advanced level knowledge either controls and control frameworks
  • Comfortable working with both deeply technical and non-technical resources
  • Flexible in daily hours (e.g. willingness to work longer hours during end of quarter ,peak periods, and audit)
  • Highly responsive
  • Ability to prioritize and track multiple projects and tasks in parallel
  • Excellent communication and collaboration skills. Ability to work effectively with cross-functional teams and provide clear guidance on complex compliance issues

Desirable

  • Experience working in a large, multi-cloud environment
  • Deep understanding of common security compliance frameworks, attestations and certifications
  • Understanding of infrastructure as code and related controls
  • Previous experience at a technology or SaaS company in a similar role
  • Existing experience with HashiCorp products
  • Experience working with OSCAL

What the job involves

  • We are looking for a cloud and DevOps savvy GRC Compliance Analyst II to support compliance enablement across HashiCorp product lines
  • This role involves embedding within the day-to-day of HashiCorp product lines to enable compliance by providing real-time readiness evaluation, control scoping, and the ability to advise on remediation of gaps, if applicable, to ensure products meet compliance requirements
  • Work closely with product development teams to integrate security and compliance requirements into the product lifecycle, ensuring that all products are built with compliance in mind from the ground up
  • Conduct real-time readiness assessments of products and features during development, identifying potential compliance risks and providing actionable recommendations to address gaps
  • Define the scope of compliance controls and requirements for new and existing products, ensuring that all relevant aspects of the product are covered
  • Provide ongoing guidance to product teams on security controls and industry best practices, helping them navigate complex compliance landscapes
  • Leverage your technical expertise and deep understanding of the product to effectively collaborate with the rest of the GRC team, ensuring alignment and accuracy of understanding during audits. Lead internal and external audits related to product compliance, ensuring that all documentation and controls are in place and up to date
  • Collaborate with cross-functional teams, including product managers and engineers, to embed security controls into development and operational processes
  • Help develop and deliver training on security and compliance requirements and control owner responsibilities
  • Identify assets utilized in the services/products that impact compliance (cloud accounts, repositories, Github teams, etc.) and ensure they are documented in the scope/boundaries of the compliance program including updates, removals and additions
  • Assisting with internal audits, control testing and external audits
  • Work with Engineering teams to identify automation opportunities of manual tasks, such as continuous monitor of controls and audit evidence collection
  • Support other GRC work as required

Our take

HashiCorp's software streamlines cloud operations for companies' teams, offering open-source solutions to facilitate cloud migration and utilization. Additionally, the company provides commercial versions of its tools, catering to businesses that prefer managed services.

With a pay-per-hour pricing model and adaptable products, HashiCorp enables companies to construct infrastructure spanning legacy systems, private clouds, and multiple cloud providers. its flagship product, Terraform, allows developers to create consistent rules, enhancing operational efficiency and reducing costs.

In a landscape increasingly reliant on AI and automation, HashiCorp simplifies the intricate architecture of data center management, ensuring a rising demand for its services. The company remains committed to enhancing its platform with new features and improving operational efficiency to fuel continued growth.

Steph headshot

Steph

Company Specialist

Insights

Top investors

Few candidates hear
back within 2 weeks

5% employee growth in 12 months

Company

Funding (last 2 of 5 rounds)

Mar 2020

$175m

SERIES E

Nov 2018

$100m

SERIES D

Total funding: $349m

Company benefits

  • Medical, dental & vision
  • Life & disability insurance
  • Flexible spending account (FSA)
  • Vacation and Other Leaves
  • 401(k)
  • Family Expansion Benefit
  • Maternity and Parental Leave
  • Expanded Mental Health Support

Company values

  • We are principled: Our principles create a common language and frame of reference for our employees. You will work in a professional, kind, and supportive environment, encouraged to collectively focus on shared goals
  • We are remote-oriented: Work your way, with the flexibility to create a work environment and schedule that suits your life while helping HashiCorp run and grow as effectively as possible
  • We are creating opportunities: As we expand and succeed, we are creating new opportunities for you to learn new skills while doing your best work. There are always new needs arising, creating endless opportunities to blaze a new path and take ownership of your career
  • We are building a once-in-a-generation company: Be a part of history. Here, you have the chance to help build a once-in-a-generation company defining and implementing the cloud operating model, which is increasingly essential for organizations to thrive in today’s multi-cloud world

Company HQ

The East Cut, San Francisco, CA

Leadership

Mitchell Hashimoto

(Co-Founder)

Has worked as CEO and CTO of the company. Was previously Operations Engineer at Kiip, and a Developer at CitrusByte.

Armon Dadgar

(Co-Founder & CTO)

Former Software Engineer at Kiip. Worked as a Software Development Intern at Amazon.

Share this job

View 45 more jobs at HashiCorp