DISCO
legal tech software
ComplianceEngineer
Neural analysis suggests this role is
optimal for Mid candidates.
“Compliance Engineer at DISCO. Skills: Compliance, AWS, DevOps, Automation. Drive implementation of compliance requirements. Automate evidence collection into Continuous Compliance workflows”
What You'll Achieve.
Deliver enhancements to system reliability; Deliver enhancements to system scalability; Deliver enhancements to system security; Deliver enhancements to overall success of cloud-based solution development; Automate away the audit burden; Provide ironclad assurance to partners
Industry & Context.
Authorization to Work in the U.S., No sponsorship
What They're Looking For.
Must Have
5 years in a technical compliance, security, or DevOps-adjacent role, understanding of key compliance frameworks, including SOX 404, ISO-27001, SOC2, and IT general controls (ITGC), 2-4 years of hands-on experience in DevOps or Platform Engineering, working with AWS, cloud-native applications, automating deployment/scaling of containerized applications using Infrastructure as Code, desire and/or experience in leveraging compliance automation platforms, build and maintain automated evidence-gathering tools, engineering background, collaborative work, mentoring others, partnering with cross-functional engineering teams, build and maintain highly performant systems
Nice to Have
Exposure to and understanding of security and compliance frameworks such as FedRAMP, NIST 800-53, or CSRF, Experience building and managing PaaS (Platform as a Service) for internal development teams, Experience with Cloud Networking (VLAN, routing), Experience with other cloud platforms, specifically Azure and GCP, Familiarity with Windows Server and Administration (Active Directory, Group Policy Objects), Experience with ASP. NET Deployments (WebDeploy), General experience with Software Development and any tech stack
What You'll Do.
Drive implementation of compliance requirements
Automate evidence collection into Continuous Compliance workflows
Implement Compliance as Code
Perform internal reviews of infrastructure configurations
Manage technical lifecycle of user access
Enforce Segregation of Duties
Review deprovisioning workflows
Provide technical expertise during sales cycles
Maintain Security Trust Center
Maintain compliance documentation
How You'll Work.
Team & Collaboration
Collaborative work; Mentoring others; Partnering with cross-functional engineering teams
Full Job Description
Who We Are DISCO is a legal tech software company. Our objective is to own the legal tech market and become the leader in legal as Salesforce has done in the sales technology space. Given the massive growth of data over the last 20 years, poorly built legal technology products have severely decreased lawyers ability to practice the law. Our fundamental mission is to provide a unified technology platform for the practice of law. Great technology can solve problems of scale in data, in laws, and in business operations that have distracted lawyers from doing what they went to law school to do. DISCO is fixing the law by automating the parts of the practice that can be automated so that great lawyers can focus on tasks that really do require human legal judgment. Your Impact At DISCO, our cloud infrastructure and system control plane are the backbone that enables us to deliver cutting-edge solutions to our clients. As a Compliance Engineer on our growing DevOps team, you will be driving the implementation of our compliance requirements, as established by the Security and governance, risk, and compliance (GRC) stakeholders. Your expertise will deliver enhancements to our system's reliability, scalability, security, and the overall success of our cloud-based solution development. By automating away the "audit burden" from our engineers your work will help shape our future cloud strategy while providing ironclad assurance to our partners within the business. What you’ll Do Evidence Automation & Audit Stewardship: Serve as the Engineering technical contact for annual SOX, SOC2 Type II, and ISO-27001 audits while automating evidence collection into "Continuous Compliance" workflows with minimal disruption to engineering velocity. Infrastructure Governance: Work with DevOps Engineers to implement "Compliance as Code," establishing automated guardrails and performing internal reviews of infrastructure configurations. Access & Identity Management: Manage the technical lifecycle
Applying for this Compliance Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
ANONYMOUS · UNFILTERED
What do employees actually say about DISCO?
Real rants from real employees. Read before you apply.