📢 Nouveau : recevez les offres du jour sur notre canal WhatsApp
Jobiglo

Aucun resultat.

Principal Software Engineer, Security & Compliance

Thomson Reuters · Zoug

Nouveau
Hybrid Senior 🇬🇧 English
Python Java Go AWS SOC 2 ISO 27001 HIPAA FedRAMP NIST 800-53 NIST CSF CIS Benchmarks SSO SAML OIDC OAuth 2.0 RBAC ABAC encryption key management audit logging

Description du poste

About the role

As a Principal Software Engineer focused on Security & Compliance, you will define the technical direction for CoCounsel’s trust framework, ensuring law firms, corporate legal departments, and government agencies can rely on our platform with privileged and regulated data.

Key responsibilities

  • Own the compliance architecture for SOC 2 Type II, ISO 27001/42001, HIPAA, and FedRAMP (Moderate/High) across infrastructure, data pipelines, and AI systems.
  • Implement compliance-as-code, automating evidence collection, continuous control monitoring, and policy-as-code to maintain observable compliance state.
  • Design encryption, key management, data residency, tenant isolation, and audit logging for high‑volume, sensitive legal documents and AI interactions.
  • Partner with Security, Legal, Privacy, and Product teams to translate regulatory requirements into engineering roadmaps and mentor engineers on secure‑by‑design practices.
  • Establish SLOs, observability, and incident response for compliance‑critical systems, building internal dashboards and alerting tools.

Required profile

  • Bachelor’s degree in Computer Science, Engineering or equivalent experience.
  • Hands‑on experience building production systems that achieved and maintained SOC 2 Type II, ISO 27001 (or 42001), and HIPAA compliance.
  • Experience supporting FedRAMP authorization at Moderate or High baseline.
  • Deep backend engineering expertise (Python, Java, Go) on a major cloud provider (AWS preferred).
  • Strong knowledge of security frameworks such as NIST 800‑53, NIST CSF, or CIS Benchmarks.

Required skills

  • Python, Java, Go
  • AWS cloud services
  • SOC 2, ISO 27001/42001, HIPAA, FedRAMP
  • Identity & access management (SSO, SAML, OIDC, OAuth 2.0, RBAC/ABAC)
  • Encryption, key management, audit logging
  • NIST 800‑53, NIST CSF, CIS Benchmarks

What we offer

  • Hybrid work model with flexible remote options.
  • Flex My Way policies for work‑life balance, including up to 8 weeks per year of work‑from‑anywhere.
  • Career development programs, tuition reimbursement, and continuous learning opportunities.
  • Comprehensive benefits: flexible vacation, mental health days, Headspace access, retirement savings, and employee incentive programs.
  • Inclusive culture recognized for belonging, flexibility, and social impact initiatives.

Questions fréquentes

Le salaire n'est pas communiqué publiquement par le recruteur. Vous pouvez postuler et négocier directement avec Thomson Reuters.
Cliquez sur "Postuler maintenant" en haut de la page. Vous pouvez importer votre CV en 1 clic — Jobiglo extrait automatiquement vos informations et postule pour vous.

Pourquoi signalez-vous cette offre ?

Merci pour votre signalement. Nous allons examiner cette offre.

Postulez en 30 secondes

Entrez votre email pour postuler. Un compte sera cree automatiquement.

Postuler maintenant →

En continuant, vous acceptez nos conditions d'utilisation.

Deja un compte ? Connexion

Une question sur cette offre ?

Posez-la ici : vous recevrez le récapitulatif de l'offre par e-mail, tout de suite.

💬 Contactez-nous sur Telegram

Publie il y a 7 heures

Expire dans 1 mois

3 vues · 0 interesses

Boostez vos chances

Importez votre CV : nous vous proposons les offres qui matchent votre profil.

Analyse de votre CV en cours...

Thomson Reuters

Zoug