Compliance Engineer

ConductorOnePortland, OR
66d

About The Position

As a Compliance Engineer at ConductorOne, you’ll be responsible for building and operating the systems, processes, and automations that keep our security and compliance programs running smoothly. You’ll partner closely with Security, Engineering, and Operations to design controls that scale with the business, maintain audit readiness, and turn compliance from a manual exercise into an integrated part of our platform. You’ll manage evidence collection, streamline audits, and continuously improve how ConductorOne meets its commitments — ensuring our infrastructure, products, and practices stay secure, compliant, and efficient as we grow.

Requirements

  • Hands-on experience operating or auditing information security and compliance programs.
  • Comfortable working directly with engineers and can translate between regulatory language and technical implementation.
  • Enjoy finding ways to automate manual tasks and reduce audit friction through code, integrations, or workflow improvements.
  • Organized, detail-oriented, and calm under the pressure of audit timelines.
  • Thrive in a fast-paced startup environment where processes evolve and impact is visible.
  • Take pride in making compliance both effective and lightweight — enabling security and reliability without unnecessary bureaucracy.

Nice To Haves

  • Helped a company achieve or maintain multiple security or compliance certifications.
  • Used or implemented compliance automation tools or built internal equivalents.
  • Experience integrating compliance evidence collection with engineering systems (GitHub, AWS, Jira, etc.).
  • Participated in or supported customer security assessments or RFPs.
  • Familiar with risk management or security control frameworks such as NIST, CIS, or ISO.
  • Experience working closely with security engineering, DevOps or SRE teams.

Responsibilities

  • Own and operate ConductorOne’s security and compliance programs such as SOC 1, SOC 2, ISO 27001, and FedRAMP.
  • Partner with Security, Engineering, and SRE to ensure controls are effectively designed, implemented, and continuously monitored.
  • Manage evidence collection and audit readiness while identifying opportunities to automate compliance workflows through tooling and process improvements.
  • Translate compliance requirements into actionable engineering or operational changes — turning policies into code where possible.
  • Collaborate cross-functionally to ensure compliance supports, rather than slows, product delivery and innovation.
  • Develop and maintain documentation, policies, and control mappings that scale with the company.
  • Support customer and prospect requests related to ConductorOne’s security and compliance posture.
  • Track evolving standards and regulatory expectations, ensuring the company remains audit-ready as it grows.
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service