Back to Jobs
P
Security & Compliance Engineer
PromptQL·Posted 2 months ago
Full TimeMid
LocationSan Francisco, California, United States
Work ArrangementRemote
Salary Range$185,000 – $205,000 / year
Experience2-5 years
Job Description
About the Role
PromptQL is seeking a dedicated and knowledgeable Security and Compliance Engineer to join our team. In this role, you will be responsible for ensuring that our organization is in compliance with all relevant regulations and standards and that our systems are secure from potential threats. The successful candidate will have a strong understanding of security architectures, compliance standards, and risk management, and be able to work effectively with various teams across the organization to ensure optimal security and compliance.
Key Responsibilities
Risk Assessment and Management:
- Conduct comprehensive risk assessments and audits
- Identify vulnerabilities and ensure that appropriate security controls are in place
Security Policy and Procedures:
- Develop, implement, and maintain company security policies, procedures, and standards
- Provide security training and awareness programs to staff to ensure compliance with security policies
- Develop and implement policies for cloud infrastructure security
Compliance Management:
- Ensure compliance with relevant industry standards, regulations, and laws such as GDPR, HIPAA, and ISO 27001
- Stay up-to-date with the latest regulatory changes and advise the company on compliance-related matters
Incident Response:
- Participate in incident response planning and activities
- Investigate and analyze security breaches and other cyber security incidents
Vendor Management:
- Evaluate the security and compliance of third-party vendors
- Work with vendors to resolve any security and compliance issues
- Setup systems to make sure that software dependencies are tracked and scanned for vulnerabilities and license compliance
Pentests and Audits
- Conduct internal pentests and audits
- Advise teams on fixes and remediations
Role Requirements
- Minimum of 2 years of experience in software development
- Minimum of 2 years of experience in information security, compliance, or related field
- Proven experience in developing and implementing security policies and procedures
- Experience with security frameworks and standards (e.g., NIST, ISO 27001)
- Certifications in security and compliance such as CISSP, CISM, or CISA are preferred
- Strong knowledge of information security concepts, risk assessment methodologies, and compliance standards
- Familiarity with various security technologies such as firewalls, intrusion detection systems, and encryption technologies
- Familiarity with major Cloud providers - AWS, GCP, Azure
- Excellent verbal and written communication skills
- Strong problem-solving and analytical skills
- Previous experience handling ISO/SOC2 audits for the organization
- Strong interest in working in a high growth, fast-paced and dynamic startup environment
Good to Have
- Experience with Go-lang and/or React/Typescript
- Experience working with relational databases, in particular Postgres
- In-depth knowledge and experience with GraphQL
- Experience with observability tools like Prometheus, Grafana etc.
- Experience with compliance management tools
- Experience with tools for vulnerability scanning, dependency tracking
Location
- SF Bay Area: hybrid in-office 3 days per week
- Other select locations in the US: remote
Compensation
- $185,000 - $205,000 base salary + bonus
- Equity
About PromptQL
We’re helping the world’s most innovative enterprises build AI-native applications with 100% reliability on their enterprise data with PromptQL. PromptQL is the AI platform that delivers human level reliability for natural language based analysis and automation on your data & systems. When accuracy, transparency, and repeatability matter, PromptQL makes AI trustworthy, scalable, and real.
We're on a mission to bring the full value of AI to the enterprise. Our team is passionate about the power of AI to transform lives and businesses. We're curious, driven, and relentlessly customer-obsessed, working together to redefine what’s possible in enterprise AI. Join us—and help build the future of reliable AI.
Benefits & Perks
- Medical, dental, and vision insurance to keep you healthy and thriving
- Employee assistance programs for support when you need it
- Retirement fund contribution matching to help you invest in your future
- Donation matching to amplify your charitable impact
- Paid time off to support your well-being
- Monthly company-wide self-care day to recharge
- Stock options so you can share in our success
- Paid parental leave to support growing families
- Commuter benefits to help you save on your journey to the office
- Employee referral program to reward you for connecting us with great talent
We are committed to equal employment opportunity and do not discriminate based on race, religion, national origin, gender, sexual orientation, age, veteran status, disability, or any other status protected by law.
Applicants with disabilities who wish to request reasonable accommodations may contact us at ta@promptql.io.
While our official company name is Hasura, we do business as PromptQL.
