Talent.com
Sr Security and Compliance Engineer

Sr Security and Compliance Engineer

Broadcom CorporationPalo Alto, CA, United States
9 hours ago
Job type
  • Full-time
Job description

Please Note :

1. If you are a first time user, please create your candidate login account before you apply for a job. (Click Sign In >

Create Account)

2. If you already have a Candidate Account, please Sign-In before you apply.

Job Description :

Broadcom seeks an experienced program manager with software engineering skills to lead security compliance and audit activities for its Enterprise Security Group (ESG) cybersecurity products. This strategic role involves driving various certifications (FIPS 140-3, Common Criteria, STIG development, country-specific), formal risk assessments for ESG's SaaS products, internal security assessments during product release cycles, and customer audits across multiple product lines.

This requires close collaboration engineering, ProdSec, InfoSec, and SaaS Operations teams to manage these certification and audit processes. This requires leading cross-functional initiatives and serving as a vital liaison between technical and non-technical stakeholders to ensure comprehensive and effective compliance.

The ideal candidate will facilitate interactions with third-party testing labs, auditors, advisors, and assessors, work with Sales and Support teams to respond to customer queries related to supplier risk assessments, and contribute to product standards, processes, and security domain documentation. A key focus will be on identifying opportunities for process improvement and standardization across the organization, with an emphasis on automation.

Responsibilities

Translate ESG business objectives into actionable GRC strategies, leveraging deep product and team process understanding to create clear compliance strategies.

Facilitate and complete all product certification activities, including financial stewardship and contract reviews as needed.

Achieve and maintain certifications, proactively identifying and mitigating risks for continuous compliance.

Support the ESG Product Security (ProdSec) team in security compliance activities (risk assessment, secure software development), providing expert guidance to enhance overall security posture.

Author and maintain required certification documents.

Communicate and translate certification requirements (ISO, SSAE 18, NIST, etc.) to engineering teams, providing expert guidance.

Maintain current understanding of regulations; interpret and communicate changes and their implications to stakeholders.

Track milestones, proactively manage risks, and drive solutions to completion.

Drive completion of any customer supplier risk requests by leveraging existing information and resources.

Monitor schedule deviations and develop corrective actions.

Coordinate cross-timezone team activities, including occasional off-hours interaction.

Lead the identification, evaluation, and implementation of automation tools and processes for security compliance activities, including evidence collection, control validation, and reporting.

Develop and implement technical strategies for efficient and accurate evidence gathering, ensuring data integrity and audit readiness.

Collaborate with engineering, ProdSec, and InfoSec teams to integrate security compliance requirements into CI / CD pipelines and automated testing frameworks.

Identify opportunities for proactive risk identification and mitigation strategies across product lines, influencing product development and operational practices.

Exercise good judgment in achieving compliance objectives and resolving audit findings.

Independently manage and prioritize multiple security compliance projects, providing regular updates and data presentations to stakeholders.

  • Skills and Experience

Bachelor's degree and 8+ years of progressive experience in security compliance, audit, or program management, with a strong emphasis on cybersecurity products.

Self-starter with Driver personality.

Cybersecurity background, particularly cloud security.

Proven experience project managing security compliance audit or certification projects.

Ability to quickly grasp complex technical concepts and make them easily understandable.

Ownership of delivery for planned, high-risk, and complicated projects.

Driving projects from conception (planning) to completion (release).

Ability to parse compliance language and translate into layman's terms.

Coordinating audit activities, including evidence gathering and redaction.

Demonstrated experience with scripting languages (e.g., Python, PowerShell) for automation of GRC processes (such as evidence gathering).

Demonstrated ability to work autonomously and manage multiple priorities effectively in a fast-paced environment.

Preferred

Knowledge of regulation / laws in subject area, ability to recognize implications of changes.

Senior-level experience with software development practices, particularly secure development practices.

Can understand / create architecture diagrams and data flows.

Familiarity with GRC automation platforms and tools (e.g., ServiceNow GRC, Anecdotes, Archer).

Experience with data analysis and visualization tools to present compliance metrics and audit findings effectively.

Hands-on experience with cloud security technologies and automation in GCP

Additional Job Description :

Compensation and Benefits

The annual base salary range for this position is $120,000 - $192,000

This position is also eligible for a discretionary annual bonus in accordance with relevant plan documents, and equity in accordance with equity plan documents and equity award agreements.

Broadcom offers a competitive and comprehensive benefits package : Medical, dental and vision plans, 401(K) participation including company matching, Employee Stock Purchase Program (ESPP), Employee Assistance Program (EAP), company paid holidays, paid sick leave and vacation time. The company follows all applicable laws for Paid Family Leave and other leaves of absence.

Broadcom is proud to be an equal opportunity employer. We will consider qualified applicants without regard to race, color, creed, religion, sex, sexual orientation, national origin, citizenship, disability status, medical condition, pregnancy, protected veteran status or any other characteristic protected by federal, state, or local law. We will also consider qualified applicants with arrest and conviction records consistent with local law.

If you are located outside USA, please be sure to fill out a home address as this will be used for future correspondence.

Welcome! Thank you for your interest in Broadcom!

We are a global technology leader that designs, develops and supplies a broad range of semiconductor and infrastructure software solutions.

For more information please visit our video library () and check out our Connected by Broadcom () series.

Follow us on Linked In Broadcom Inc () .

Create a job alert for this search

Sr Security Engineer • Palo Alto, CA, United States

Related jobs
  • Promoted
Sr. Information Security Engineer (27639)

Sr. Information Security Engineer (27639)

SupermicroSan Jose, CA, United States
Full-time
Supermicro is a Top Tier provider of advanced server, storage, and networking solutions for Data Center, Cloud Computing, Enterprise IT, Hadoop / Big Data, Hyperscale, HPC and IoT / Embedded customers...Show moreLast updated: 11 days ago
  • Promoted
  • New!
Sr. Security Engineer, eero, eero Security

Sr. Security Engineer, eero, eero Security

California Staffing ServiceSan Francisco, CA, United States
Full-time
At eero, our mission is to serve as the central nervous system of the home.While we began by revolutionizing home WiFi, we now create comprehensive and secure solutions that serve both wireless and...Show moreLast updated: 9 hours ago
  • Promoted
  • New!
Sr. Security Engineer - GTM Partnership

Sr. Security Engineer - GTM Partnership

ZapierSan Francisco, CA, United States
Full-time
Were humans who simply think computers should do more work.At Zapier, were not just making softwarewere building a platform to help millions of businesses globally scale with automation and AI.Our ...Show moreLast updated: 9 hours ago
  • Promoted
  • New!
Sr. Security Engineer

Sr. Security Engineer

IBM ComputingSan Francisco, CA, United States
Full-time
A career in IBM Software means you'll be part of a team that transforms our customer's challenges into industry-leading solutions. We are an infinitely curious team, always seeking new possibilities...Show moreLast updated: 9 hours ago
  • Promoted
Security Compliance Engineer

Security Compliance Engineer

Brevian.aiSunnyvale, CA, United States
Full-time
BREV / AN is at the forefront of revolutionizing how businesses leverage artificial intelligence.Our no-code platform empowers every business team to harness the power of production-grade AI agents, ...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Sr. Security Engineer

Sr. Security Engineer

Veza Technologies, Inc.San Francisco, CA, United States
Full-time
Security Engineer, you will play a key role in advancing our secure-by-design and privacy-by-design practices.You will collaborate closely with Engineering, DevOps, and SRE teams to embed security ...Show moreLast updated: 9 hours ago
  • Promoted
Principal Cyber Security Engineer

Principal Cyber Security Engineer

Cloud Software Group, Inc.San Ramon, CA, United States
Full-time
Architectural Leadership : Design, develop, and maintain the comprehensive security architecture for Cloud Software Group's products and corporate infrastructure. Cloud Security Expertise : Lead the s...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Sr. Security Engineer, eero, eero Security

Sr. Security Engineer, eero, eero Security

AmazonSan Francisco, CA, United States
Full-time
At eero, our mission is to serve as the central nervous system of the home.While we began by revolutionizing home WiFi, we now create comprehensive and secure solutions that serve both wireless and...Show moreLast updated: 9 hours ago
  • Promoted
  • New!
Security Engineer - Hybrid

Security Engineer - Hybrid

Workers' Compensation Insurance Rating Bureau of CaliforniaSan Francisco, CA, United States
Full-time
For over a century, the Workers' Compensation Insurance Rating Bureau of California (WCIRB) has been California's trusted, objective provider of actuarially based information and research, advisory...Show moreLast updated: 7 hours ago
  • Promoted
  • New!
Sr. Security Research Engineer

Sr. Security Research Engineer

ProofpointSan Francisco, CA, United States
Full-time
We are the leader in human-centric cybersecurity.Half a million customers, including 87 of the Fortune 100, rely on Proofpoint to protect their organizations. We’re driven by a mission to stay ahead...Show moreLast updated: 9 hours ago
  • Promoted
  • New!
Senior Security Engineer

Senior Security Engineer

Arta FinanceMountain View, CA, United States
Full-time
Arta is on an audacious and incredibly rewarding mission : to pave the way for people everywhere to lead more successful financial lives. Arta leverages AI and sophisticated digital toolsonce reserve...Show moreLast updated: 9 hours ago
  • Promoted
Sr. Security Engineer, Kuiper Security, Kuiper Security

Sr. Security Engineer, Kuiper Security, Kuiper Security

AmazonSan Francisco, CA, United States
Permanent
We are open to hiring candidates to work out of one of the following locations : .Arlington, VA, USA | Redmond, WA, USA | San Francisco, CA, USA | Sunnyvale, CA, USA. Project Kuiper is an initiative t...Show moreLast updated: 30+ days ago
  • Promoted
Sr. Security Manager

Sr. Security Manager

SupermicroSan Jose, CA, United States
Full-time
Supermicro is a Top Tier provider of advanced server, storage, and networking solutions for Data Center, Cloud Computing, Enterprise IT, Hadoop / Big Data, Hyperscale, HPC and IoT / Embedded customers...Show moreLast updated: 20 days ago
  • Promoted
Senior Security Engineer

Senior Security Engineer

Hayden AISan Francisco, CA, United States
Full-time
At Hayden AI, we are on a mission to harness the power of computer vision to transform the way transit systems and other government agencies address real-world challenges.From bus lane and bus stop...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Senior Security Engineer

Senior Security Engineer

EvenUp Inc.San Francisco, CA, United States
Full-time
EvenUp is on a mission to close the justice gap using technology and AI.We empower personal injury lawyers and victims to get the justice they deserve. Our products enable law firms to secure faster...Show moreLast updated: 9 hours ago
  • Promoted
Senior Security Engineer II (ML)

Senior Security Engineer II (ML)

Moveworks.aiMountain View, CA, United States
Full-time
Are you passionate about leveraging machine learning to scale-up security and privacy efforts? Do you have a keen understanding of security risks and a desire to innovate with cutting-edge ML solut...Show moreLast updated: 30+ days ago
  • Promoted
EMC Compliance Engineer I

EMC Compliance Engineer I

Element Materials TechnologyMorgan Hill, CA, United States
Full-time
Element has an opportunity for a.Regulatory compliance involving EMC / RF Testing for wireless consumer technologies in a fast-paced environment and industry. Performs testing of the latest cellular (...Show moreLast updated: 14 days ago
  • Promoted
Senior Offensive Security Engineer

Senior Offensive Security Engineer

RobinhoodMenlo Park, CA, United States
Full-time
Join us in building the future of finance.Our mission is to democratize finance for all.An estimated $124 trillion of assets will be inherited by younger generations in the next two decades.The lar...Show moreLast updated: 30+ days ago