DatadogНовая14 часов назад
Engineering Manager I, Commercial Audit
Зарплата не указана
New York
Навыки
PythonGoKubernetesAWSGCPAzureCI/CDAIAutomationCloud-native servicesCompliance-as-codeGRC toolingSecurity engineeringRisk management
Обязанности
- 01Lead the strategy, roadmap, and execution of Datadog’s commercial security compliance efforts, shifting from manual audit processes to automated, scalable platforms and methodologies
- 02Build, mentor, and grow a high-performing team of engineers and analysts, fostering a culture of technical excellence, continuous learning, and cross-functional collaboration
- 03Partner within Information Security to operationalize a common control framework that integrates seamlessly into Datadog’s architecture and processes
- 04Drive the development of internal tooling to automate evidence collection and dashboarding, reducing operational friction across the organization
- 05Define and track program metrics: control coverage, audit efficiency, and automation adoption
- 06Collaborate with broader internal engineering teams to embed compliance-by-design into infrastructure, CI/CD pipelines, and cloud-native service adoption
- 07Act as a bridge between technical engineering, legal, and compliance to enable fast movement while maintaining a secure and compliant environment
- 08Champion a culture of "compliance-as-code," identifying opportunities to automate evidence collection, streamline control testing, and reduce manual toil for the team and partner engineering teams
- 09Manage a team of engineers and analysts transitioning to a GRC engineering direction, leveraging AI, custom tooling, CI/CD pipelines, and cloud-native services to turn regulatory requirements into automated controls
- 10Lead the strategy, roadmap, and execution of Datadog’s Commercial Audit initiatives
- 11Grow a team responsible for maintaining compliance programs and related audits (SOC2, PCI, HIPAA, ISO) while improving efficiency and effectiveness through platforms and tooling
Требования
- 01Experience leading or managing teams in security engineering, GRC, or risk management with a focus on leveraging AI to build automation and tooling for a GRC engineering approach
- 02Strong technical background with ability to review code (Python, Go), interpret architecture diagrams, and understand infrastructure (Kubernetes, AWS/GCP/Azure)
- 03Deep understanding of the modern compliance landscape (e.g., HIPAA, SOC2, PCI, ISO 27001, FedRAMP) and experience implementing them at scale in cloud-native environments
- 04Clear communicator who can translate complex technical or regulatory requirements into plain language for engineers, leadership, and external auditors
- 05Systems-thinking mindset, looking for upstream root causes and downstream impacts
- 06Experience in a SaaS or cloud infrastructure company where security scale and complexity are first-order challenges
- 07Experienced people leader with a focus on mentorship, team growth, and inclusion
- 08Ability to build trust and alignment across diverse teams
- 09Operate with both rigor and pragmatism, knowing when to build bespoke solutions versus leverage existing platforms
- 10Prior experience working as an auditor (e.g., QSA) or directly facilitating audits, with ability to negotiate scope and timelines effectively
- 11Eligibility for any required US government authorizations to comply with export control regulations
Условия
- 01Hybrid workplace model
- 02Generous and competitive benefits package
- 03New hire stock equity (RSUs) and employee stock purchase plan
- 04Continuous career development and pathing opportunities
- 05Employee-focused best-in-class onboarding
- 06Internal mentor and cross-departmental buddy program
- 07Friendly and inclusive workplace culture
- 08Competitive salary and equity package, may include variable compensation
- 09Actual compensation based on skills, qualifications, and experience
- 10Benefits may vary by country and nature of employment
- 11Must be eligible for any required US government authorizations for export control compliance