Demo

Security Compliance Engineer

Pendo
Raleigh, NC Full Time
POSTED ON 2/25/2025 CLOSED ON 4/23/2025

What are the responsibilities and job description for the Security Compliance Engineer position at Pendo?

Team Description 

Pendo's mission is to help companies build great software. We believe that great software is also secure software! The Pendo Security Team is here to provide everyone at Pendo the resources that they need to keep the data we are entrusted with secure and to deliver products that are built with security and privacy by design.

Pendo is seeking a Security Compliance Engineer to join our growing team in Raleigh, North Carolina.  Reporting to our Senior Manager of Security Operations and Compliance you will be working on our compliance-related programs, including Third Party Risk Management, SOC 2, PCI DSS, StateRAMP, and other global compliance frameworks. You will also work closely with engineering, product, corporate IT teams, and other partners across the organization to achieve the goals of these programs. The ideal candidate is a passionate, highly skilled information security expert who has a customer-focused mindset and is capable of quickly learning new technologies and creatively solving problems. The hiring level for this position will be determined by the selected candidate’s qualifications and experience, and is expected to be either an associate (entry) or mid-level. 

Responsibilities (what you’ll do):

  • Provide analysis and implementation guidance based on frameworks such as the SOC 2, NIST 800 series, StateRAMP, ISO 27001, PCI DSS, and other related compliance requirements and regulations 
  • Plan, implement, and maintain security controls to protect the confidentiality, integrity, and availability of data and information systems
  • Work closely with engineering and product teams to deliver compliance requirements, provide consultation, and validate implementation
  • Communicate compliance requirements, deliverables, and project status to stakeholders, leaders and external partners
  • Drive cross-functional execution and validation of compliance deliverables 
  • Build, execute, and maintain continuous monitoring functions and deliverables
  • Drive vulnerability remediation in accordance with compliance requirements
  • Monitor performance metrics, review logs, and conduct periodic audits to verify the effectiveness of security controls
  • Write, edit and manage a wide variety of information security policies, procedures, and other documentation to meet compliance requirements

Qualifications (what you have):

  • Demonstrated experience with one or more of the following: 
    • Working with compliance frameworks such as SOC 2, NIST SP 800 Series, StateRAMP, ISO 27000-series, PCI, HIPAA, etc., 
    • Collaborating with subject matter experts and developing, editing, and revising documentation including standard operating procedures, system security plans (SSP), and policies and procedures
    • Implementing continuous monitoring requirements Working with Third-party Assessment Organizations (3PAO)
    • Third Party Risk Management programs that include onboarding, assessments, reporting, and monitoring. 
  • Excellent verbal and written communication skills
  • Strong understanding of security controls, frameworks and practices
  • Strong understanding of vulnerability management, scanning tools and remediation
  • Strong critical thinking and decision-making skills
  • Strong customer service orientation
  • Ability to self-manage assigned project tasks 
  • Ability to work independently with minimal direction
  • A growth mindset and love of learning new technologies

Additional Preferred Qualifications:

  • Experience working in SaaS companies
  • Experience with writing code to automate tasks
  • Experience configuring and managing GRC platforms, or similar, for continuous monitoring through integrations with third party platforms. 
  • Familiarity with Cloud Service Providers such as Google Cloud Platform, Amazon Web Services, or Microsoft Azure
  • Bachelor’s or Master’s degree in Cybersecurity, Computer Science, Management of Information Systems, or similar technical or business-related field
  • One or more industry-recognized security certifications, such as CISSP, CISM, CISA, OSCP, CEH, or CSSK

Pendo Description:

Pendo was founded in 2013 by former product managers, who combined their heads and hearts to build something they wanted but never had as product managers -- a simple way to understand and attack what truly drives product success.  Our mission is to improve society's experience with software.

Come join one of the fastest-growing startups, supported by best-in-class institutions like Battery Ventures, Salesforce Ventures, Spark Capital and Meritech. You will gain experience in a diverse and exciting set of technologies and clients and have a real impact on Pendo's future. Our culture is passionate, dynamic, and fun.

EEOC

We are an equal opportunity employer and believe having diverse teams where everyone brings their whole self to Pendo is key to our success. We welcome all people of different backgrounds, experiences, abilities and perspectives.

Accessibility

Pendo is committed to working with, and providing access and reasonable accommodation to, applicants with mental and/or physical disabilities. If you think you may require an accommodation for any part of the recruitment process, please send a request to: accommodation@pendo.io. All requests for accommodations are treated discreetly and confidentially, as practical and permitted by law.

Compensation

Our salary ranges are based on paying competitively for our size and industry, and are one part of many compensation, benefits and other reward opportunities we provide.

The expected salary range for this role to be performed in Raleigh, NC is $120,000 - $130,000.

Individual pay rate decisions, including offers made within and over the expected salary range, are based on a number of factors, including qualifications for the role, experience level, skillset, and balancing internal equity relative to peers at the company.

Salary : $120,000 - $130,000

Security Compliance Officer
Intellibee Inc -
Raleigh, NC
Senior Kubernetes Engineer
Security Journey -
Apex, NC
Compliance Operations Analyst
Fairview Compliance Services -
Raleigh, NC

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Security Compliance Engineer?

Sign up to receive alerts about other jobs on the Security Compliance Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$73,784 - $86,677
Income Estimation: 
$90,372 - $103,622
Income Estimation: 
$61,825 - $80,560
Income Estimation: 
$90,032 - $105,965
Income Estimation: 
$85,996 - $102,718
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$220,784 - $286,649
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553

Sign up to receive alerts about other jobs with skills like those required for the Security Compliance Engineer.

Click the checkbox next to the jobs that you are interested in.

  • Community Relations Skill

    • Income Estimation: $83,045 - $121,732
    • Income Estimation: $103,303 - $148,215
  • Curriculum Planning and Development Skill

    • Income Estimation: $73,433 - $144,883
    • Income Estimation: $78,038 - $134,310
This job has expired.
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Pendo

Pendo
Hired Organization Address New York, NY Full Time
We are looking for a highly motivated Field Marketing Manager to deeply align with our Enterprise sales organization, wi...
Pendo
Hired Organization Address Raleigh, NC Full Time
Team Description We're seeking a passionate and results-driven Marketing Operations Manager to join our growing marketin...
Pendo
Hired Organization Address Raleigh, NC Full Time
Team Description Pendo is actively investing in our Partner Ecosystem. In order to accelerate our growth, we are looking...
Pendo
Hired Organization Address Raleigh, NC Full Time
Team Description Pendo is looking for a Sr. Product Marketing Manager to play a key role in our growing Enterprise busin...

Not the job you're looking for? Here are some other Security Compliance Engineer jobs in the Raleigh, NC area that may be a better fit.

Compliance Engineer

Precision Life Sciences, Durham, NC

AI Assistant is available now!

Feel free to start your new journey!