InfoSec Management & Compliance Lead
Core
Define and enforce security posture for an enterprise data lakehouse platform, managing the intersection of cybersecurity, data privacy, and regulatory compliance.
Role type
Senior IC InfoSec Management & Compliance Lead
Builds
Secure data lakehouse platform serving 62M+ consumers and business professionals
Domain
Data security, cloud security, regulatory compliance
Deliverable
production ML models | infrastructure
Required skills
Data lakehouse security (Unity Catalog, Snowflake RBAC), cloud security services (AWS IAM/KMS, Azure Purview/Defender, GCP Security Command Center), regulatory compliance program management (GDPR, CCPA, HIPAA, SOC 2, PCI-DSS), data risk assessment and threat modeling, encryption standards, SIEM/DLP operations, security incident response
Preferred skills
Zero trust architecture, data fabric security, AI/ML model security governance
Technologies
Unity Catalog, Snowflake, AWS IAM, Azure Purview, GCP Security Command Center, SIEM, DLP
Responsibilities
Define and implement data security frameworks (RBAC, ABAC, column/row-level security); Lead compliance programs for GDPR, CCPA, HIPAA, SOC 2, PCI-DSS; Conduct data risk assessments and threat modeling; Partner with platform teams to embed security controls in CI/CD; Manage vulnerability assessments, penetration testing, and audit response; Oversee encryption standards for data at rest and in transit; Develop and enforce data classification policies; Respond to security incidents and drive remediation; Train engineering teams on security policies
Seniority
Senior, hands-on IC