Compliance Engineer
On-sitePristina, Pristina, Kosovo
Job Summary
Lead and maintain compliance initiatives including SOC 2, ISO 27001, GDPR, and related security frameworks by designing and automating security controls across infrastructure and engineering workflows. Develop automated evidence collection processes and monitoring tools while collaborating with engineering teams to implement secure development practices. Review infrastructure, deployment pipelines, and application architecture from a compliance perspective, supporting internal and external audits through coordinated evidence and technical responses. Maintain security policies, procedures, and risk assessments aligned with business operations, manage vendor reviews, and assist with incident response processes. Promote a culture of security, privacy, and compliance throughout the organization.
Required Qualifications
- 3+ years of experience in Compliance Engineering, Security Engineering, DevSecOps, Cloud Security, or a related technical role
- Experience working with SOC 2, ISO 27001, GDPR, or similar compliance frameworks
- Strong understanding of cloud infrastructure, Kubernetes, GitOps, CI/CD pipelines, and Infrastructure as Code
- Experience automating security or compliance controls using scripting languages such as Python, Go, or Bash
- Familiarity with Linux systems, networking, identity and access management, secrets management, and security best practices
- Understanding of modern software development processes and secure SDLC principles
- Excellent analytical and problem-solving skills with strong attention to detail
- Strong written and verbal English communication skills (C1 or C2 proficiency required)
- Ability to work cross-functionally with engineering, product, and leadership teams
Desired Qualifications
- Experience with SaaS platforms, messaging infrastructure, or cloud-native environments
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.