Security Engineer (L5) - Governance and Assurance

1 Month ago • All levels • Cyber Security • $100,000 PA - $720,000 PA

Job Summary

Job Description

Netflix seeks a second-line Enterprise Governance and Assurance Engineer (L5) to support its continued growth and innovation while mitigating existential risks. Responsibilities include designing and implementing automation for partner trust and SOX processes; designing security controls and risk assessment frameworks; developing policies and compliance programs; evaluating risks; creating reporting metrics; leading cross-functional projects; documenting assurance failures; integrating GRC systems; and serving as a policy and control alignment expert. The ideal candidate is a GRC generalist with experience in security, risk, governance, audit, and compliance, ideally with understanding of studio and content development. This role requires strong technical writing, critical thinking, and the ability to influence business partners and mentor other teams.
Must have:
  • SOX compliance expertise
  • GRC generalist experience
  • Automation design & implementation
  • Risk assessment & policy development
  • Strong technical writing & critical thinking
  • Cross-functional project leadership
Good to have:
  • Studio/content development understanding
  • Experience with NIST CSF 2.0, ISO 27001, PCI DSS
  • International standards experience (GDPR, NIS-2, etc.)
  • Audit experience
Perks:
  • Comprehensive health plans
  • Mental health support
  • 401(k) retirement plan with employer match
  • Stock option program
  • Disability programs
  • Flexible time off
  • Paid leave of absence programs

Job Details

Netflix is one of the world's leading entertainment services, with 283 million paid memberships in over 190 countries enjoying TV series, films and games across a wide variety of genres and languages. Members can play, pause and resume watching as much as they want, anytime, anywhere, and can change their plans at any time.

Netflix is seeking a second-line Enterprise Governance and Assurance Engineer (L5). The ideal person will be a strong Governance, Risk, and Compliance (GRC) generalist with a deep passion for governance. We seek a problem-solver with a comprehensive understanding of the regulatory landscape and cloud technologies. Experience in security, risk, governance, audit, process excellence, and compliance is mandatory, an understanding of studio and content development is a plus.

The Team

The Enterprise Governance & Assurance organization is responsible for helping Netflix take the appropriate security and technology risks to support continued growth and rapid innovation while protecting the company from existential harm. This role sits in our Governance, Compliance, and Engineering team and supports the business in improving decision-making by understanding our risks.

Key Responsibilities:

  • Design and implement automation for partner trust, assurance, compliance, and regulatory activities, especially for SOX processes. Design and oversee security controls, risk assessment frameworks, policy development, and compliance programs.

  • Evaluate risks and develop security standards, procedures, guidelines, and policies for information and data governance in collaboration with the business areas.

  • Develop reporting metrics, dashboards, and evidence artifacts demonstrating the value of governance. 

  • Create, optimize, and support cross-functional working groups and projects to enhance the efficacy and effectiveness of policy and guidance across the organization.

  • Document and report assurance failures, inconsistencies, and gaps to stakeholders.

  • Integrate GRC systems with cross-functional stakeholder systems to ensure accuracy and consistency. 

  • Be the subject matter expert for policy development and control alignment. 

  • Enterprise risk management and business continuity experience helpful

In your day-to-day, you will need to exercise sound judgment, curiosity, and flexibility in making trade-offs between short versus long-term security and business goals. You will demonstrate resilience and navigate difficult situations with composure and tac, to achieve a great outcome for the business. You will succeed in this role by regularly analyzing your performance with a critical eye. A broad understanding of the Netflix business and its partnerships is required. This position will also provide training, advice, and mentorship to other teams throughout Netflix on the value of governance.

What You'll Bring:

  • Strong technical writing and critical thinking skills grounded in enterprise governance principles, quantitative risk analysis, and meeting people where they are with an eye toward maturing the governance program. 

  • Data (including metadata), information (throughout its lifecycle), identity, and privacy governance skills and knowledge required.

  • Well-versed in SOX compliance regulations, specifically control design for user access review automation and integration of various tools and applications.

  • Expertise with frameworks such as NIST CSF 2.0, ISO 27001, PCI DSS, etc.

  • Experience with international standards (GDPR, NIS-2, Cyber Resilience Act, K-ISMS (Korea).

  • Audit experience is a significant advantage. Additional qualities include careful consideration of control design, optimization of effective controls to meet control objectives, and achieving compliance as a byproduct of well-designed control implementation and assurance monitoring.

  • Ability to influence and lead business partners and supporting teams.

  • Resilience and composure in navigating difficult situations.

  • An eagerness to gain a comprehensive understanding of Netflix's business and partnerships. A person well-versed in risk appetite/tolerance and how it can be adapted for different tolerances in different parts of the business while still meeting control objectives is the type of mindset we seek.

  • Ability to provide training, advice, and mentorship to other teams.

Cultural attributes:

  • Ability to align with Netflix's unique culture .

  • Document compliance that satisfies regulators, brings consistency to procedures/guidance, and meets people where they are, while living Netflix’s culture principles of “context not control” and “guardrails not rules.”  

Compensation:

Generally, our compensation structure consists solely of an annual salary; we do not have bonuses. You choose each year how much of your compensation you want in salary versus stock options. To determine your personal top of market compensation, we rely on market indicators and consider your specific job family, background, skills, and experience to determine your compensation in the market range. The range for this role is 100,000 - $720,000.

Benefits:

Netflix provides comprehensive benefits including Health Plans, Mental Health support, a 401(k) Retirement Plan with employer match, Stock Option Program, Disability Programs, Health Savings and Flexible Spending Accounts, Family-forming benefits, and Life and Serious Injury Benefits. We also offer paid leave of absence programs.  Full-time hourly employees accrue 35 days annually for paid time off to be used for vacation, holidays, and sick paid time off. Full-time salaried employees are immediately entitled to flexible time off. See more detail about our Benefits here

Culture: 

Netflix is a unique culture and environment.  Learn more .

We are an equal-opportunity employer and celebrate diversity, recognizing that diversity of thought and background builds stronger teams. We approach diversity and inclusion seriously and thoughtfully. We do not discriminate on the basis of race, religion, color, ancestry, national origin, caste, sex, sexual orientation, gender, gender identity or expression, age, disability, medical condition, pregnancy, genetic makeup, marital status, or military service.

is a Netflix value and we strive to host a meaningful interview experience for all candidates. If you want an accommodation/adjustment for a disability or any other reason during the hiring process, please send a request to your recruiting partner.

We are an equal-opportunity employer and celebrate diversity, recognizing that diversity builds stronger teams. We approach diversity and inclusion seriously and thoughtfully. We do not discriminate on the basis of race, religion, color, ancestry, national origin, caste, sex, sexual orientation, gender, gender identity or expression, age, disability, medical condition, pregnancy, genetic makeup, marital status, or military service.

Job is open for no less than 7 days and will be removed when the position is filled.

Similar Jobs

Samsung Semiconductor - Intern, Machine Learning Research Scientist

Samsung Semiconductor

San Jose, California, United States (Hybrid)
3 Weeks ago
Doge Labs,  Inc  - Gameplay Engineer - VR/Unity 6

Doge Labs, Inc

(Remote)
3 Months ago
Onward Search - Executive Producer, Social Media Content

Onward Search

Charlotte, North Carolina, United States (On-Site)
1 Week ago
Scanline VFX - Senior Pipeline Developer (Maya)

Scanline VFX

Vancouver, British Columbia, Canada (Remote)
3 Months ago
Sportskeeda - Short-Form Content Producer-NFL

Sportskeeda

India (Remote)
1 Month ago
ION - Senior Security Architect

ION

London, England, United Kingdom (On-Site)
4 Months ago
PwC - Senior Experimentado- Business Analyst

PwC

Buenos Aires, Buenos Aires, Argentina (On-Site)
3 Months ago
ION - Network Security Engineer

ION

Italy (Hybrid)
4 Months ago
Microsoft - Senior Data Scientist

Microsoft

Bengaluru, Karnataka, India (On-Site)
3 Weeks ago
Fanatics - Offensive Security Engineer III

Fanatics

Hyderabad, Telangana, India (Hybrid)
3 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

PlayStation Global - Senior Director, Workplace (Facilities)

PlayStation Global

London, England, United Kingdom (On-Site)
1 Week ago
Spin Master - Senior Project Engineer

Spin Master

(On-Site)
3 Days ago
PwC - IN_Associate_CA Fresher _FE_Advisory _Mumbai

PwC

Mumbai, Maharashtra, India (On-Site)
1 Month ago
ION - Database Engineer (352), New York (hybrid)

ION

New York, New York, United States (Hybrid)
4 Months ago
Zoox - SAP ABAP Developer

Zoox

Foster City, California, United States (Hybrid)
3 Months ago
Phoenix Labs - Senior 3D Character Artist - Dauntless

Phoenix Labs

Vancouver, British Columbia, Canada (On-Site)
4 Months ago
ByteDance - Food Safety Manager, APAC

ByteDance

Singapore (On-Site)
3 Months ago
Tesla - Water and Utilities Engineering Internship

Tesla

Brandenburg, Germany (On-Site)
6 Hours ago
Magic Media - Senior Lighting Technical Artist

Magic Media

São Paulo, State Of São Paulo, Brazil (Remote)
17 Hours ago

Get notifed when new similar jobs are uploaded

Jobs in United States

Next Level Business Services - PL/SQL Programmer

Next Level Business Services

San Francisco, California, United States (On-Site)
3 Months ago
Rivos - CPU Design/Verification - Intern

Rivos

Santa Clara, California, United States (On-Site)
3 Months ago
Microsoft - Data Science: PhD Internship Opportunities - Mountain View

Microsoft

Mountain View, California, United States (On-Site)
1 Month ago
Meta - Research Scientist Intern, Graphics Neural Rendering and Compression (PhD)

Meta

Redmond, Washington, United States (On-Site)
3 Months ago
Meta - Manager, Recruiting Services & Operations

Meta

Menlo Park, California, United States (On-Site)
3 Months ago
Meta - Software Engineer, Intern/Co-op

Meta

Seattle, Washington, United States (On-Site)
3 Months ago
Nukklear - Initiative Application

Nukklear

Dallas, Texas, United States (Remote)
6 Months ago
Netflix - Senior Software Engineer (L5) - Client Delivery Platform

Netflix

United States (Remote)
1 Day ago
Saviynt - Principal Engineer, Software Engineering

Saviynt

El Segundo, California, United States (Hybrid)
3 Months ago
Twitch - Product Paralegal

Twitch

San Francisco, California, United States (On-Site)
2 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - IN-Senior Associate – D365 POS Functional-Ms Dynamics– Advisory  - Bangalore

PwC

Bengaluru, Karnataka, India (On-Site)
3 Months ago
PwC - IN_Senior Associate_Agile PM_Advisory Corporate_Advisory_Pune

PwC

Pune, Maharashtra, India (On-Site)
3 Months ago
PwC - Risk Services - Change Management Specialist

PwC

Singapore (On-Site)
4 Months ago
ION - Cyber Security Analyst, Italy

ION

Pisa, Tuscany, Italy (On-Site)
4 Months ago
PwC - IN_Senior Associate_ Control Testing _Internal Audit Services _Advisory _Pune

PwC

Pune, Maharashtra, India (On-Site)
1 Month ago
PwC - IN-Senior Associate_ Java/IT _Utility transformation _Advisory_MUMBAI

PwC

Mumbai, Maharashtra, India (On-Site)
3 Months ago
PwC - IT Audit Associate

PwC

Makati, Metro Manila, Philippines (On-Site)
4 Months ago
Trend Micro - Sr. Engineer

Trend Micro

Taipei City, Taiwan (On-Site)
4 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Netflix is one of the world's leading entertainment services with over 247 million paid memberships in over 190 countries enjoying TV series, films and games across a wide variety of genres and languages. Members can play, pause and resume watching as much as they want, anytime, anywhere, and can change their plans at any time.

Warsaw, Masovian Voivodeship, Poland (On-Site)

Los Angeles, California, United States (On-Site)

Buenos Aires, Buenos Aires, Argentina (On-Site)

Los Gatos, California, United States (On-Site)

Pennsylvania, United States (On-Site)

United States (Remote)

Amsterdam, North Holland, Netherlands (On-Site)

Los Gatos, California, United States (On-Site)

Manila, Metro Manila, Philippines (On-Site)

View All Jobs

Get notified when new jobs are added by Netflix

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug