Role snapshotwe are seeking a highly skilled and detail-oriented technology compliance engineer to join our risk and security team in mexico.this hybrid role combines the hands-on engineering expertise of enterprise solution engineering with the critical oversight of an auditor.the ideal candidate will be responsible for designing, implementing, and continuously improving enterprise it services and solutions while auditing systems, processes, and pipelines to ensure compliance with security and risk management requirements.this position plays a key role in ensuring that security is integrated across the enterprise from development to deployment and operations.key dutiesengineering responsibilitiesestablish and maintain enterprise ai solutions and services.champion ai use case review and enablement.collaborate with all departments to successfully drive the onboarding, deployment and management of new technologies and solutions across the enterprise.maintain and improve enterprise security requirements and oversight.security responsibilitiesconduct regular security audits and reviews of infrastructure, code repositories and deployment processes.monitor compliance with internal security standards, industry best practices, and regulatory requirements (e.g., soc 2, iso *, nist).document and report findings, recommend remediation, and track resolution through completion.develop and maintain security baselines, controls, and metrics for secure it delivery.provide technical input into risk assessments and contribute to threat modeling and security reviews.basic qualificationsbachelor's degree in computer science, information security, or a related field (or equivalent work experience).4+ years of experience in secops, application security, or infrastructure security.strong hands-on experience with ai solutions and .familiarity with containerization and orchestration technologies (docker, kubernetes).proficiency with scripting languages (python, bash, etc.) and infrastructure-as-code tools (terraform, cloudformation).experience conducting audits or assessments aligned to frameworks like soc 2, nist, iso *, or cis benchmarks.in-depth knowledge of cloud security (aws, azure, or gcp) and security automation practices.understanding of vulnerability management, secure coding practices, and application threat modeling.must havesoc 2nisttechnology and security assessmentpreferred skillsindustry certifications such as cissp, cisa, oscp, giac, or aws/gcp security engineer.experience assessing and governing ai services/solutions and llm models.experience with security monitoring tools (e.g., snyk, wiz, prisma cloud, sonarqube, or similar).familiarity with enterprise risk management practices and grc tools.strong analytical and communication skills, with the ability to document technical issues and collaborate across teams.#j-*-ljbffr