Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security and Compliance Engineer

BackOps

Security & Compliance Engineer

San Francisco • Hybrid • Full-time

BackOps AI is transforming supply chain operations with agentic AI solutions that automate complex workflows, freeing operations teams to focus on what matters most. Headquartered in the San Francisco Bay Area with flexible remote-friendly options, we foster a culture of innovation, ownership, and measurable impact.

Role Overview

As a Security & Compliance Engineer, you will own and strengthen the operational security, compliance, and privacy foundations of our company and platform. You will work across engineering, infrastructure, and business operations to design practical controls, reduce risk, improve audit readiness, and help us meet the expectations of enterprise customers. This is a hands-on individual contributor role for someone who can translate frameworks into working processes and technical safeguards without slowing down delivery. This role is not an SRE role. While you will partner closely with infrastructure and engineering teams, your primary focus will be security posture, control effectiveness, compliance execution, privacy coordination, and customer trust.

What You'll Do
  • Own and improve our security and compliance program across frameworks such as SOC 2 TYPE I/II, SOC 3, ISO 27001, COBIT, and GDPR
  • Translate control requirements into practical technical and operational implementations across engineering, cloud infrastructure, access management, vendor management, and internal business processes
  • Partner with engineering and infrastructure teams to strengthen areas such as IAM, least privilege, secrets management, audit logging, endpoint and device controls, vulnerability management, network/security hardening, backup governance, and data retention/deletion
  • Drive audit readiness by maintaining evidence, control mappings, policies, procedures, risk registers, and remediation tracking
  • Lead recurring access reviews, control reviews, and risk assessments across systems, vendors, and internal workflows
  • Own or coordinate security policy development and lifecycle management, including periodic review and updates
  • Support privacy and data governance processes, including data classification, retention, deletion, handling of customer data, and coordination on GDPR-related requirements
  • Run vendor and subprocessor security reviews, due diligence, and ongoing monitoring
  • Help define and operationalize incident response governance, including response procedures, roles, escalation paths, and post-incident follow-up from a security perspective
  • Partner with product and engineering teams on secure development practices, change management, and control design early in the lifecycle
  • Respond to customer-facing security and compliance requests, including security questionnaires, due diligence reviews, and trust documentation
  • Build scalable security/compliance workflows so that controls are automated, repeatable, and measurable wherever possible
  • Promote a strong security culture through lightweight training, clear guidance, and practical enablement for engineers and cross-functional teams
What We're Looking For
  • Experience: 4+ years in security, compliance, GRC, cloud security, security engineering, or a similar hands-on role in a modern SaaS or cloud-native environment
  • Framework Depth: Working knowledge of one or more major frameworks such as SOC 2 TYPE I/II, SOC 3, ISO 27001, COBIT, GDPR, and the ability to map controls across frameworks
  • Technical Fluency: Comfortable working with engineering and infrastructure teams on cloud security fundamentals such as IAM, logging, secrets, vulnerability remediation, endpoint controls, and secure configuration
  • Audit & Evidence Discipline: Able to maintain clean documentation, control evidence, remediation plans, and audit artifacts without turning the role into pure paperwork
  • Risk Mindset: Strong judgment in identifying material risks, prioritizing remediation, and balancing speed with practical security outcomes
  • Communication: Can write clear policies, standards, procedures, risk summaries, and customer-facing responses; able to work effectively across technical and non-technical teams
  • Execution: You are organized, hands-on, and able to independently drive programs from requirement to implementation to review
  • Startup Fit: Comfortable operating in a fast-moving environment where you may define structure while also doing the work directly
Nice to Have
  • Experience with Vanta, Drata, or similar compliance automation tooling
  • Experience supporting SOC 2 Type I/II, SOC 3, ISO 27001 certification, or similar audits end-to-end
  • Familiarity with cloud environments such as AWS and/or GCP
  • Experience with vendor risk management, security questionnaires, and enterprise customer diligence workflows
  • Familiarity with privacy operations and data governance practices in B2B SaaS environments
  • Experience with security awareness programs, endpoint/device management, or identity lifecycle management
  • Exposure to secure SDLC, application security reviews, or vulnerability management programs
  • Experience working in AI, automation, or operationally sensitive product environments
What Success Looks Like
  • Our controls are not just documented — they are actually operating, measurable, and sustainable
  • Audit readiness improves with less scramble and clearer ownership
  • Security and compliance become embedded into engineering and business workflows instead of bolted on later
  • Enterprise customers gain confidence in our maturity through strong security posture and clear responses
  • Risk is identified earlier, prioritized better, and remediated faster
What We Offer
  • Equity & Ownership: Competitive equity so you grow alongside the company
  • Impact & Visibility: Direct access to leadership; your work directly improves customer trust and company readiness
  • Collaborative Culture: Tight-knit team of seasoned operators and AI experts
  • Flexible Work: Hybrid with core Bay Area presence and remote flexibility
Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Security and Compliance Engineer in San Francisco, CA vacancy
  • $130k - $160k

    Decisive Point is looking for a Security Risk and Compliance Analyst in San Francisco. This role focuses on maturing Asana’s compliance and certification program, involving SOC 2, ISO 27001, and FedRAMP certifications. You will enhance control frameworks and manage audit... 
    Suggested

    Decisive Point

    San Francisco, CA
    1 day ago
  • $120k - $145k

     ...A leading technology company in San Francisco is looking for a Compliance Engineer to enhance its information security compliance program. This role involves designing controls across various frameworks like SOC 2 and ISO 27001 and ensuring readiness for customer security... 
    Suggested

    Gridware Technologies Inc.

    San Francisco, CA
    9 hours ago
  • This is the first opportunity to join a core team that’s excited about software security and reimagining the tools required for building groundbreaking applications. We believe that Ethereum will continue to be the leading platform for smart contract development but it... 
    Suggested
    Remote job
    Contract work
    Flexible hours

    Blockchain Works

    San Francisco, CA
    1 day ago
  • $137k - $188k

     ...businesses, and leads government relations. Based out of our San Francisco headquarters, and reporting to the Forensic Engineering Manager, the Senior Compliance Engineer is a key member of the technical team responsible for global compliance and enforcement. The role works... 
    Suggested
    Full time
    Work at office
    Local area
    Remote work

    Via Licensing Corporation

    San Francisco, CA
    4 days ago
  • $120k - $145k

     ...For more information, please visit Role Description We are building our information security compliance program and this role sits at the center of that effort. As our Compliance Engineer, you will work directly with the Head of Information Security to design, implement,... 
    Suggested

    Gridware Technologies Inc.

    San Francisco, CA
    9 hours ago
  •  ...Via Licensing Corporation is seeking a Senior Compliance Engineer in San Francisco to ensure global compliance for Dolby technologies. This role involves testing consumer and mobile electronics for IP compliance and leading investigations into potential infringements.... 

    Via Licensing Corporation

    San Francisco, CA
    4 days ago
  •  ...modern civilization - yet vulnerabilities threaten its integrity, security, and resilience. We are on a mission to solve security....  ...Infrastructure. About this role We’re seeking an experienced Research Engineer to join our effort in building and training AI agents for... 
    Full time
    Work at office

    DepthFirst

    San Francisco, CA
    3 days ago
  • $9.7k - $19k

     ...AI issues with a mix of technical, societal and policy solutions. As a research engineer intern here, you will work very closely with our researchers on projects in areas such as AI security, machine ethics, AI alignment, and benchmarking AI risks. We will assign you a... 
    Full time
    Internship
    Local area

    Center for AI Safety

    San Francisco, CA
    17 hours ago
  •  ...complexity and friction with seamless automation. As a Research Engineer at Capably, you’ll help define how intelligent systems operate...  ...deploying highly customised AI workflows in production, with built‑in security, governance, and auditability. Success in this role means... 

    Capably

    San Francisco, CA
    2 days ago
  •  ...Security Research Engineer We are seeking talented engineers intent on changing the security industry. If you have experience on fast-moving teams, building security products that developers love, and driving projects to completion through ambiguity: we want to talk... 

    Sybil

    San Francisco, CA
    2 days ago
  •  ...Droyd is searching for a Safety & Compliance Engineer to drive certification and standards work across the company in San Francisco, CA. This role requires overseeing compliance workflows, tracking documentation for ISO standards, and coordinating with engineering teams... 
    Full time

    Droyd

    San Francisco, CA
    11 hours ago
  • $181.1k - $318.4k

    Senior Compliance and Automation Engineer San Francisco, California, United States Software and Services Imagine what you could do here. At Apple, new ideas become extraordinary products, services, and customer experiences with remarkable speed. The people here don’t... 
    Relocation

    Apple Inc.

    San Francisco, CA
    1 day ago
  • $100k - $150k

    A technology venture firm is seeking a Founding Member of Technical Staff (Security) in San Francisco. In this hybrid role, you will lead security research and vulnerability testing on real-world software. Ideal candidates should have strong skills in web application vulnerabilities... 

    Crane Venture Partners

    San Francisco, CA
    4 days ago
  • $220.8k - $298.8k

    Job Summary Drata, at the vanguard of compliance software innovation and renowned for its commitment to trust and security across the internet, is on an ambitious path to redefine...  ...automation. Drata is seeking an Applied AI Engineer to drive the quality and effectiveness of... 
    Flexible hours

    Drata

    San Francisco, CA
    1 day ago
  • $272k - $336k

     ...Senior Staff Regulatory and Compliance Systems Engineer Waymo is an autonomous driving technology company with the mission to be the world's most trusted driver. Since its start as the Google Self-Driving Car Project in 2009, Waymo has focused on building the Waymo... 
    Odd job
    Full time
    Remote work

    Waymo

    San Francisco, CA
    2 days ago
  • $166k - $225k

     ...solve the world’s toughest problems, from security threat detection to cancer drug...  ...available to all. Job Description As a research engineer on the Scaling team, you will be...  ...status, and other protected characteristics. Compliance If access to export‑controlled technology... 
    Worldwide

    Cacheflow

    San Francisco, CA
    1 day ago
  • A leading research organization in AI is seeking a full-time fall intern to assist with projects in AI security and alignment. The position offers a stipend of $9,700 - $19,000 annually to help with living expenses. Interns will work closely with researchers, plan and... 
    Full time
    Internship

    Center for AI Safety

    San Francisco, CA
    17 hours ago
  • $181.1k - $318.4k

    Apple Inc. is looking for a Senior Compliance and Automation Engineer in San Francisco to support compliance engineering and data governance. The role involves developing automated workflows and ensuring data compliance with regulatory standards. The candidate should have... 

    Apple Inc.

    San Francisco, CA
    1 day ago
  • $153k - $187k

     ...solutions with the ingenuity of the world's largest community of security researchers to continuously discover, validate, prioritize, and...  ...function is modernizing and re-architecting the revenue engine, leading the build of an AI-native GTM operations model that connects... 
    Apprenticeship
    Local area
    Remote work
    Flexible hours
    Shift work

    HackerOne

    San Francisco, CA
    17 hours ago
  • $150k - $250k

     ...production capability for leading robotics companies and national-security-critical hardware. Basically, we're building robots that build...  .... The Role This role is for a Senior Manufacturing Engineer who specializes in equipment introduction and the end-to-end project... 
    Full time

    Foundry Robotics Inc

    San Francisco, CA
    2 days ago
  • $192k - $240k

     ...Security Operations Engineer Brex is the intelligent finance platform that enables companies to spend smarter and move faster in more than 200 markets. By combining global corporate cards and banking with intuitive spend management, bill pay, and travel software, Brex... 
    Work experience placement
    Work at office
    Remote work
    Work from home

    Brex

    San Francisco, CA
    4 days ago
  • $150k - $205k

     ...the solar system. Today, Astranis satellites provide dedicated, secure networks to highly-sophisticated customers across the globe—...  ...Horowitz to Blackrock and Fidelity, and employs a team of 450 engineers and entrepreneurs. Astranis designs, builds, and operates its satellites... 
    Permanent employment
    Flexible hours

    Astranis

    San Francisco, CA
    3 days ago
  • $115k - $150k

     ...improve. We’re building a small team of exceptional, hands‑on engineers to make this happen. Mechanical, electrical, hardware,...  ...job offer made will be contingent upon the applicant’s capacity to serve in compliance with U.S. export controls. #J-18808-Ljbffr... 
    Work at office
    Visa sponsorship
    Night shift

    Atomic Semi

    San Francisco, CA
    2 days ago
  • $139k - $242k

     ...Senior Security Production Engineer Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA / San Francisco, CA CoreWeave is The Essential...  ...please contact: ****@*****.***. Export Control Compliance This position requires access to export controlled... 
    Permanent employment
    Temporary work
    Casual work
    Work at office
    Flexible hours

    CoreWeave

    San Francisco, CA
    3 days ago
  •  ...Salesforce, Inc. is seeking an Adversarial AI & Research Engineer for a remote role focused on the intersection of offensive security and AI. This position involves leading testing to discover vulnerabilities, innovating in AI security methods, and developing security... 
    Remote work

    Salesforce

    San Francisco, CA
    10 hours ago
  •  ...DepthFirst in San Francisco is seeking an experienced Research Engineer. You will build and train AI agents for discovering and remediating...  ...salary, health benefits, and office meals are provided. Join us to redefine security in software development. #J-18808-Ljbffr... 
    Work at office

    DepthFirst

    San Francisco, CA
    3 days ago
  • $90k - $120k

    Estes Energy in San Francisco is seeking an Advanced Manufacturing Engineer to develop and implement manufacturing lines for zero-emission power systems. You will work on innovative processes and collaborate with teams to ensure successful equipment launches. The ideal... 
    Full time

    Estes Energy

    San Francisco, CA
    2 days ago
  • $200k - $240k

     ...financial tools to help consumers achieve financial security. We're a profitable, high growth FinTech...  ..., YOU WILL Lead & Hire Build your quality engineering team from the ground up Collaborate with InfoSec Manager on compliance testing (SOC 2, PCI-DSS) Advise Core... 
    Contract work
    Local area

    Cacheflow

    San Francisco, CA
    4 days ago
  • Airwallex Pty Ltd. is seeking a Staff Software Engineer to enhance our internal AI tooling. You'll lead projects that ensure the security of substantial payments for businesses worldwide, mentor junior engineers, and partner with diverse teams to identify impactful automation... 
    Worldwide

    Airwallex Pty Ltd.

    San Francisco, CA
    3 days ago
  •  ...Description Overview of the Role: The Adversarial AI & Research Team is a specialized group of cross-functional security engineers working at the intersection of offensive security and artificial intelligence. As a strategic partner to Salesforce's AI Research, Ethics... 
    Shift work

    B Capital

    San Francisco, CA
    4 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security and Compliance Engineer. Be the first to apply!