Qualifications
Responsibilities:Oversee the comprehensive execution of specialized external audits (e.g., ENS High, IRAP, ISO 22301), managing all stages from initial scoping to final certification. Act as the principal contact for Financial Services customer audits, facilitating meetings, addressing security questionnaires, and advocating for our control environment to external stakeholders. Lead internal audit rhythms and manage the POA&M tracking process, ensuring that technical teams rectify findings within required SLAs. Align new regulatory mandates with our central control framework, conducting gap analyses to pinpoint how existing controls can be leveraged for new certifications. Perform NIST CSF or similar maturity assessments to evaluate the effectiveness of the Compliance Program and communicate findings to team leads. Draft and review customer-facing security documentation, ensuring it accurately depicts our technical controls and architectural safeguards. Collaborate with Engineering and Product leads to implement compliance-by-design, aligning future product roadmaps with global regulatory trends. Requirements:7+ years of experience in Governance, Risk, and Compliance (GRC), Information Security, or IT Audit, particularly within a rapidly growing SaaS/Cloud setting. Thorough understanding of cloud security principles (AWS/GCP/Azure) with a solid track record in conducting technical audits for ISO 27001, SOC 2, or ENS High. Robust knowledge of audit processes, terminologies, and methodologies.
About the job
Description:
The Compliance team at MongoDB is pivotal in overseeing the strategy, implementation, and upkeep of our global security certifications alongside various regulatory requirements. We guarantee that our cloud database offerings adhere to stringent security standards, catering to clients within some of the most heavily regulated industries across the globe.
Serving as the primary liaison between external auditors and our internal Product, Engineering, and Legal teams, we aim to demystify intricate regulatory requirements and convert them into scalable operational processes, ensuring a compliant and audit-ready stance throughout our varied portfolio.
The Program Manager / Senior Analyst position is a mid-to-senior level individual contributor role, tasked with steering high-stakes audits and specialized compliance initiatives. Unlike the Analyst position, this role encompasses full accountability for intricate international frameworks—such as IRAP and ENS High—and fosters relationships with our Financial Services clientele during detailed audit engagements. You will coordinate internal audit schedules and execute gap analyses for market expansions.
About MongoDB, Inc.
MongoDB is an innovative database platform that empowers organizations to harness the power of data. Our team is dedicated to delivering cutting-edge solutions that meet the evolving needs of businesses in various sectors. As a leader in cloud technology, we prioritize compliance and security, ensuring that our products align with the highest industry standards.