Before you apply
Listed location: US, WA, Remote
Work arrangement: remote. A remote label does not confirm worldwide eligibility or visa sponsorship.
Read the employer’s description for qualifications, compensation and work eligibility. Confirm the position is still open on the application page.
Job description supplied by NVIDIA; category and skill labels may be inferred. How our listings work · Report a problem
Job Description
We’re seeking a dedicated Information Security professional to join our team in Santa Clara, CA. The candidate will have experience in end to end ownership of one or more security certifications and can demonstrate implemented improvements to the process. This includes operating and improving intake, prioritization, onboarding, audit planning, audit preparation, audit execution and certification maintenance. In addition, this role will elevate our security certification processes, ensuring compliance and safeguarding NVIDIA’s brand integrity. If you have a passion for security frameworks and optimizing processes, this opportunity is for you!
Join us!
What you’ll be doing:
- Lead the lifecycle including planning, execution and improvement of security certifications, including but not limited to ISO27001, SOC2 and NIST 800 series.
- Define, implement and operate compliance and audit processes, continuously improving certification workflows.
- Drive collaboration with internal teams to reduce the cost and complexity of certification efforts
- Drive certification request triage & collaborate prioritization
- Manage audit onboarding, preparation and external assessment
- Own delivery of certification roadmap including reporting & escalations
- Coordinate export control related continuous compliance audits
- Recommend and implement continuous improvements for process efficiency and compliance with evolving standards.
What we need to See:
- Ability to interpret and integrate security frameworks into organizational processes
- 8+ years experience developing and operating certification onboarding programs (e.g., leading both ISO 27001 and SOC 2 simultaneously).
- Strong working knowledge of global and regional regulations (EMEA, JAPAC, LATAM, NAM)
- Consistent track record of leading compliance audits, including internal audits, external audits, and interactions with certification bodies.
- Working knowledge of GRC principles and hands on automation implementation
- Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), ISO 27001 Lead Auditor/Implementer, CMMC Certified Professional or Assessor, NIST Cybersecurity Framework certifications or equivalent training.
- Familiarity with cloud security providers (e.g., AWS, Azure, or Google Cloud compliance).
- Bachelor's degree in Information Security, IT, Compliance, or a related field, or equivalent experience (Master’s preferred).
- Demonstrated ability to improve audit processes including evidence collection, re-use and stakeholder engagement
- Working knowledge of certifications and their applicability to hardware, software, cloud and enterprise scopes.
Ways to stand out from the crowd:
- Big 4 or equivalent assessment / advisory experience
- Past experience with mergers and acquisitions
- Working knowledge of export controls including but not limited to ITAR / EAR / ACS IFR
- A resume which clearly demonstrates your impact in relevant roles
You will also be eligible for equity and benefits.
This posting is for an existing vacancy.
NVIDIA uses AI tools in its recruiting processes.
NVIDIA is committed to fostering an inclusive work environment and proud to be an equal opportunity employer. As we highly value diversity in our current and future employees, we do not discriminate (including in our hiring and promotion practices) on the basis of race, religion, color, national origin, gender, gender expression, sexual orientation, age, marital status, veteran status, disability status or any other characteristic protected by law.Categories
Frequently asked questions
Is the Governance, Risk, and Compliance Certifications Engineer position at NVIDIA remote?
Yes. The Governance, Risk, and Compliance Certifications Engineer role at NVIDIA is a remote position. Country eligibility is not specified here; check the employer listing.
What type of employment is the Governance, Risk, and Compliance Certifications Engineer role?
NVIDIA is hiring for a full-time Governance, Risk, and Compliance Certifications Engineer position.
How do I apply for the Governance, Risk, and Compliance Certifications Engineer position at NVIDIA?
You can apply for the Governance, Risk, and Compliance Certifications Engineer role directly through NVIDIA's official application link provided on this page.
Similar AI jobs
Security Audit & Controls, Security GRC
Anthropic · fulltime
Program Security Manager
Anduril · fulltime
Senior Electrical Engineer
Anduril · fulltime
Deployment & Training Manager, Commercial
Anduril · fulltime
Optical Engineer (Data Center) - Memphis
xAI · fulltime
Production Test Engineering Manager
Anduril · fulltime