Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Compliance Engineer image - Rise Careers
Job details

Security Compliance Engineer

Pendo is seeking a Security Compliance Engineer to enhance software security and compliance programs, working closely with various teams to ensure adherence to key security frameworks.

Skills

  • Compliance frameworks knowledge
  • Security controls understanding
  • Excellent communication
  • Critical thinking
  • Customer service orientation

Responsibilities

  • Provide analysis and implementation guidance based on compliance frameworks
  • Plan, implement, and maintain security controls
  • Collaborate with engineering and product teams to meet compliance requirements
  • Communicate compliance requirements to stakeholders
  • Drive cross-functional execution of compliance deliverables
  • Monitor performance metrics and conduct audits

Education

  • Bachelor's or Master’s degree in Cybersecurity, Computer Science, or related field

Benefits

  • Competitive salary
  • Diverse team culture
  • Professional growth opportunities
To read the complete job description, please click on the ‘Apply’ button

Average salary estimate

$125000 / YEARLY (est.)
min
max
$120000K
$130000K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security Compliance Engineer, Pendo

At Pendo, we believe that great software is also secure software! That's why we are on the lookout for a dedicated Security Compliance Engineer to join our passionate Security Team in Raleigh, North Carolina. In this role, you'll be at the center of our compliance-related programs, impacting everything from Third Party Risk Management to SOC 2, PCI DSS, and StateRAMP. Your work will involve collaborating closely with engineering, product, and IT teams to ensure our security and compliance frameworks are not just met, but exceeded. You will use your comprehensive understanding of security controls and frameworks to provide valuable analysis and implementation guidance. Whether you are drafting security policies, conducting audits, or driving remediation efforts, your expertise will help us safeguard the data we are entrusted with. This is more than just a role; it’s an opportunity to make a real difference in how we approach security and privacy by design. We are looking for someone with a strong critical thinking skillset, a customer-focused mindset, and a curiosity for new technologies. If you're ready to dive into this dynamic opportunity at Pendo, we’d love to hear from you!

Frequently Asked Questions (FAQs) for Security Compliance Engineer Role at Pendo
What are the responsibilities of a Security Compliance Engineer at Pendo?

A Security Compliance Engineer at Pendo is responsible for analyzing and implementing compliance frameworks like SOC 2, NIST, and PCI DSS. This role involves working closely with engineering and product teams to ensure that all compliance requirements are met and consulting on best practices to safeguard data. You'll also be in charge of monitoring security controls, conducting audits, and driving vulnerability remediation efforts.

Join Rise to see the full answer
What qualifications are necessary for the Security Compliance Engineer role at Pendo?

To be considered for the Security Compliance Engineer position at Pendo, candidates should have experience with compliance frameworks such as SOC 2, ISO 27001, and Third Party Risk Management. A bachelor's or master’s degree in Cybersecurity, Computer Science, or a related field is preferred, along with strong communication skills and the ability to self-manage project tasks.

Join Rise to see the full answer
What type of company culture can a Security Compliance Engineer expect at Pendo?

At Pendo, our culture is dynamic, passionate, and fun. We take pride in having diverse teams where everyone feels valued and included. As a Security Compliance Engineer, you will be part of a supportive environment that encourages innovation and continuous learning, allowing you to thrive both personally and professionally.

Join Rise to see the full answer
What is the expected salary range for a Security Compliance Engineer at Pendo?

The expected salary range for a Security Compliance Engineer at Pendo in Raleigh, NC is between $120,000 and $130,000. Compensation offers are based on qualifications, experience, and internal equity, ensuring that pay is competitive within the industry.

Join Rise to see the full answer
Is prior experience in SaaS important for a Security Compliance Engineer position at Pendo?

Yes, while it’s not absolutely required, prior experience in SaaS companies is highly preferred for a Security Compliance Engineer role at Pendo. This background helps understand the specific compliance challenges and security needs inherent in SaaS models, thereby enhancing your effectiveness in the position.

Join Rise to see the full answer
Common Interview Questions for Security Compliance Engineer
Can you explain what SOC 2 is and why it matters to a Security Compliance Engineer?

SOC 2 is a framework that helps organizations manage customer data based on five 'trust service principles'. As a Security Compliance Engineer, understanding SOC 2 is crucial because adherence to these principles ensures your company not only protects data privacy but also builds trust with clients. When answering this question, discuss how you would approach implementing SOC 2 controls.

Join Rise to see the full answer
What experiences do you have with Third Party Risk Management?

In Third Party Risk Management, I have been involved in onboarding assessments, continuous monitoring, and reporting. It's essential to evaluate third-party vendors against established compliance frameworks and maintain efficient documentation. When responding, provide examples of how you’ve managed risks in vendor partnerships.

Join Rise to see the full answer
How would you handle a compliance violation found during an audit?

Handling a compliance violation requires a systematic approach. I would first identify the root cause, then collaborate with relevant teams to develop an action plan for remediation. It’s essential to document the findings and communicate effectively with stakeholders. Use an instance from your experience to illustrate your process.

Join Rise to see the full answer
What security frameworks are you most familiar with?

I have extensive experience with frameworks like NIST SP 800 series, ISO 27001, and PCI DSS. Each of these frameworks provides distinct guidelines and controls necessary for protecting sensitive information. It's beneficial to mention how you applied your knowledge of these frameworks in your previous positions.

Join Rise to see the full answer
Can you describe your experience with continuous monitoring in security compliance?

Continuous monitoring is key to maintaining compliance. I have implemented automated tools to track compliance status, monitor network traffic, and identify vulnerabilities in real-time. When answering, share the tools you’ve used and any successes you have had in improving compliance posture.

Join Rise to see the full answer
How do you approach writing information security policies?

Writing information security policies involves understanding both compliance requirements and the organization's operational context. I begin by researching best practices and then collaborate with stakeholders to ensure the policies reflect both security needs and business objectives. Provide an example of a policy you’ve developed.

Join Rise to see the full answer
What do you believe are the most challenging aspects of compliance?

The most challenging aspects include staying updated with constantly changing regulations and ensuring cross-functional teams adhere to compliance practices. In addressing this question, emphasize your proactive approach to training and communication within the organization to mitigate these challenges.

Join Rise to see the full answer
Can you explain your experience with vulnerability management?

Vulnerability management consists of identifying, classifying, and mitigating vulnerabilities in systems. I've used various tools for scanning and assessing threat levels while ensuring that any discovered vulnerabilities are remediated promptly. Discuss specific tools or frameworks you've utilized.

Join Rise to see the full answer
How would you ensure team collaboration during compliance projects?

Ensuring team collaboration is vital for successful compliance projects. I schedule regular check-ins, use project management tools to track progress, and encourage open communication among team members. Share any collaborative successes from your past projects.

Join Rise to see the full answer
Why do you want to work as a Security Compliance Engineer at Pendo?

I am drawn to Pendo's mission of creating secure software and the company's commitment to innovation and customer success. The opportunity to work with diverse technologies and impact compliance positively resonates with my career goals. Answering this should tie your personal values and professional aspirations to Pendo’s mission.

Join Rise to see the full answer
Similar Jobs
Pendo Hybrid Raleigh, NC / New York, NY / San Francisco, CA
Posted 12 days ago
Pendo Hybrid Raleigh, NC; New York, NY
Posted 7 days ago
Photo of the Rise User
KPN Remote Teleportboulevard, 1043 Amsterdam, Nederland
Posted 3 days ago
Posted 8 days ago
Photo of the Rise User
Posted 2 days ago
Photo of the Rise User
SanDisk Hybrid 951 Sandisk Dr, Milpitas, CA
Posted 6 days ago
Photo of the Rise User
Devoteam Remote Culliganlaan 3, Machelen, Belgium
Posted 6 days ago
MATCH
VIEW MATCH
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
SALARY RANGE
$120,000/yr - $130,000/yr
EMPLOYMENT TYPE
Full-time, on-site
DATE POSTED
March 21, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
34 people applied to Cyber Crime Analyst at TEKsystems
Photo of the Rise User
Someone from OH, Cleveland just viewed Getinge is hiring: UI/UX Developer in Streetsboro at Getinge
Photo of the Rise User
Someone from OH, Westerville just viewed Data analyst | Mid at Nord Security
Photo of the Rise User
7 people applied to SOC Analyst at Prosegur
Photo of the Rise User
Someone from OH, North Canton just viewed Researcher-NBC Sports at NBCUniversal
Photo of the Rise User
Someone from OH, North Canton just viewed Researcher-NBC Sports at NBCUniversal
Photo of the Rise User
Someone from OH, Lakewood just viewed Culture and Programs Analyst at City of Philadelphia
Photo of the Rise User
Someone from OH, Olmsted Falls just viewed Customer Service - Representative at Waterway Carwash
M
Someone from OH, Strongsville just viewed Technical Writer (Contract) at Mintlify
Photo of the Rise User
Someone from OH, Cincinnati just viewed Inside Sales Co-Op at VEGA Americas
S
Someone from OH, Cleveland just viewed Senior JavaScript Developer at SuperDial
Photo of the Rise User
Someone from OH, Columbus just viewed Environmental Science Intern at Kimley-Horn
Photo of the Rise User
Someone from OH, Dayton just viewed Sr Renewal Analyst 1730 at MeridianLink
Photo of the Rise User
Someone from OH, Canton just viewed Communications Manager at Shearer's Foods
Photo of the Rise User
Someone from OH, Akron just viewed BDR Lead at Pontera
Photo of the Rise User
Someone from OH, Akron just viewed SDR Manager at Darktrace
Photo of the Rise User
Someone from OH, Columbus just viewed Health & Wellness Account Coordinator at PNOE
Photo of the Rise User
Someone from OH, Columbus just viewed Warehouse Associate - Third Shift at Babylist