Senior Manager of Technology Compliance
Company: Splunk Inc.
Location: San Jose
Posted on: April 8, 2021
A data platform built for expansive data access, powerful
analytics and automation Automate workflow, investigation and
response Detect unknown threats and anomalous behavior with ML
Monitor and manage hybrid and multicloud environments Improve
application performance and reliability Modernize IT with the
industry-leading AIOps platform Automate incident response to
increase uptime Transform your organization by accelerating your
cloud journey Empower the business to innovate while limiting risks
Go from running the business to transforming it Accelerate the
delivery of exceptional user experiences Bring data to every
question, decision and action across your organization See why
organizations around the world trust Splunk Accelerate value with
our powerful partner ecosystem Thrive in the Data Age and drive
change with our data platform Learn how we support change for
customers and communities Clear and actionable guidance from Splunk
Experts Find answers and guidance on how to use Splunk Join us as
we pursue our vision to make machine data accessible, usable and
valuable to everyone. We are a company filled with people who are
passionate about our product and seek to deliver the best
experience for our customers. At Splunk, we're committed to our
work, customers, having fun and most importantly to each other's
success. Learn more about Splunk careers and how you can become a
part of our journey!Splunk's Assurance, Advisory, Risk and
Compliance (SpAARC) team is looking for a motivated Senior Manager
of Technology Compliance to own commercial technology assurance,
advisory, compliance and risk management services for the company.
This position will make a difference at Splunk and stand out from
others by building consultative partnerships with business owners,
internal/external auditors, and engineering teams to drive risk
mitigation, process gaps maturity, and controls management. Being
analytical, upbeat, creative, and one who thrives in a highly
skilled and dynamic environment will lead to success. The focus
will be on the management of commercial compliance efforts that
meet or exceed various technology security compliance and internal
controls including, but are not limited to, SOC I & II, HIPAA, ISO
27001, and PCI-DSS as it pertains to software, Cloud, and on
premise environments. Must be comfortable working with both
technical and non-technical resources and have experience
describing compliance requirements in a technical manner and
comfortable reporting to leadership.Responsibilities
- Leads the planning, execution, and reporting of technology and
security assessments within Splunk's Operations / Engineering /
- Ensures accurate identification, communication, and mitigation
of risks, processes, and internal control gaps with potential
adverse operational, financial, strategic and compliance risk
- Drives new and existing engagements with business and control
owners, internal & external auditors, as well as Splunk leadership
on new and ongoing compliance initiatives and business
- Leads the execution of external audits over Splunk's products
and internal controls in accordance with, but not limited to: SOC I
& II, SSAE-18, ISO 27001, HIPAA, and PCI.
- Responsible for leading audit walkthroughs and audit evidence
collection for internal and external audit engagements.
- Assists in the design of automation to enable scalability of
the compliance programs.
- Leads the follow up on action plans to ensure appropriate and
timely mitigation of identified risks.
- Assists with coaching and development of junior members of the
- 10+years of experience in Technical Audit and/or Security
- Direct experience reviewing and testing common IT & Engineering
technologies including OS, databases, network infrastructure,
application security, Linux/Windows system security, networking,
mobile device security, cloud technologies and applications (IaaS,
SaaS, PaaS environments, etc.).
- Has implemented and/or audited controls from at least two
common industry and regulatory frameworks and standards (e.g.,
NIST, SOC I & II, ISO 27001, HIPAA, PCI-DSS, OWASP, ITIL,
- Strong leadership, communication, presentation and
interpersonal skills to be able to interact with technical and
non-technical colleagues and management.
- Hands on experience in assessing technology and compliance
risks and controls in technology processes, cloud applications,
- Experience formulating audit testing plans, steps, and
- Strong audit documentation skills
- Proficiency in systems / technology "As-Is vs. To-Be"
- Team-player with high EQ.
- Highly motivated, hardworking, efficient, and able to work
independently to multitask and lead multiple workloads to timely
- Experience in international company operations and proficiency
in foreign language a plus.
- Familiar with Enterprise Risk Management (ERM) concepts a
- Integrity and credibility.
- May require the ability to travel (domestic and international)
for approximately 10 to 20% of the time.Education
- Bachelor's degree preferably in Technology, Engineering,
Business or equivalent.
- Professional certifications e.g. CISSP, CEH, CIPP, CISM, PMP,
CISA are a plus.
- Proven skills in G Suite, MS Excel, Word and Presentation with
an understanding of data analysis techniques. We value diversity at
our company. All qualified applicants will receive consideration
for employment without regard to race, color, religion, sex, sexual
orientation, gender identity, national origin, or any other
applicable legally protected characteristics in the location in
which the candidate is applying. For job positions in San
Francisco, CA, and other locations where required, we will consider
for employment qualified applicants with arrest and conviction
records.-- Splunk turns machine data into answers. Organizations
use market-leading Splunk solutions with machine learning to solve
their toughest IT, Internet of Things and security challenges.
Individuals seeking employment at Splunk are considered without
regards to race, religion, color, national origin, ancestry, sex,
gender, gender identity, gender expression, sexual orientation,
marital status, age, physical or mental disability or medical
condition (except where physical fitness is a valid occupational
qualification), genetic information, veteran status, or any other
consideration made unlawful by federal, state or local laws. Click
here to review the US Department of Labor's EEO is The Law notice.
Please click here to review Splunk's Affirmative Action Policy
Splunk also has policies in place to protect the personal
information candidates disclose to us as part of the application
process. Please click here to review Splunk's Career Site Privacy
Splunk does not discriminate against employees or applicants
because they have inquired about, discussed, or disclosed their own
pay or the pay of another employee or applicant. Please click here
to review Splunk's Pay Transparency Nondiscrimination Provision.--
For job positions in San Francisco, CA, and other locations where
required, we will consider for employment qualified applicants with
arrest and conviction records.
Splunk is also committed to providing access to all individuals who
are seeking information from our website. Any individual using
assistive technology (such as a screen reader, Braille reader,
etc.) who experiences difficulty accessing information on any part
of Splunk's website should send comments to
firstname.lastname@example.org . Please include the nature of the
accessibility problem and your e-mail or contact address. If the
accessibility problem involves a particular page, the message
should include the URL of that page.
Splunk doesn't accept unsolicited agency resumes and won't pay fees
to any third-party agency or firm that doesn't have a signed
agreement with Splunk.
To check on your application click here . Find out what makes
Splunk such a great place to work Splunk, Splunk> ,Turn Data
Into Doing, Data-to-Everything, and D2E are trademarks or
registered trademarks of Splunk Inc. in the United States and other
countries. All other brand names,product names,or trademarks belong
to their respective owners.
Keywords: Splunk Inc., San Jose , Senior Manager of Technology Compliance, IT / Software / Systems , San Jose, California
Didn't find what you're looking for? Search again!