Senior Tenable Compliance Engineer
Zapisz tę ofertę pracy i uporządkuj wyszukiwanie
Utwórz bezpłatne konto, aby zapisywać oferty pracy, tworzyć alerty i wracać do tego ogłoszenia ze swojego pulpitu nawigacyjnego.
We are looking for an experienced cybersecurity specialist to join a project in the financial sector. You will support the migration of Secure Configuration Baselines from Tripwire to Tenable and design a scalable approach to compliance policy management in a complex enterprise environment. This role offers the opportunity to shape global compliance standards covering operating systems, databases, middleware, and specialized environments.
Your tasks
- Designing and implementing compliance policies and control models based on Tenable.sc Compliance Auditing
- Supporting the migration of Secure Configuration Baselines from Tripwire to Tenable, considering best practices and security standards
- Creating scalable policy structures, rule inheritance mechanisms, exceptions, and baseline management
- Defining methods for automatic classification and assignment of assets to appropriate compliance policies
- Collaborating on discovery, classification, and onboarding of databases and other critical infrastructure components
- Designing compliance monitoring processes, scan scheduling, and result validation
- Mapping technical controls to frameworks such as CIS Benchmark, PCI DSS, NIST, ISO 27001, or DORA
- Advising on compliance monitoring for database environments, middleware, and specialized platforms
Requirements
- Minimum 5 years of experience in cybersecurity, compliance monitoring, or security engineering
- Practical experience working with Tenable.sc Compliance Auditing and configuration compliance monitoring solutions
- Knowledge of migrating security policies and baselines between platforms, especially from Tripwire to Tenable
- Experience managing compliance for Windows Server systems, Microsoft SQL Server databases, Oracle Database, and similar technologies
- Ability to design asset classification models based on Active Directory, CMDB, cloud metadata, or other reference sources
- Knowledge of security frameworks and regulations such as CIS Benchmark, NIST, PCI DSS, ISO 27001, DORA, or FINMA
- Familiarity with exceptions to security policies, compensating controls, and risk acceptance
- Very good command of English – minimum B2 level
Job no. JOB-ALGVV
Sii ensures that all hiring decisions are made solely on the basis of qualifications and competence. We are committed to equal and fair treatment of all, regardless of legally protected characteristics. At Sii, we promote a diverse and inclusive work environment, in full compliance with applicable anti-discrimination laws.
Benefits For You
- Great Place to Work
- Solid financial situation
- Contracts with the biggest brands
- Centre of internal trainings
- Many experts you can learn from
- Open and accessible management team
- Profit sharing
- Passion Sponsorship program
- Regular integration events and trips
- Comfortable and well-equipped offices
- MySii app
- Medical care