Security compliance is crucial at Duetto, a leading revenue management platform in the hospitality industry. The Security Engineer will be responsible for maintaining the company's security programme, ensuring compliance with SOC 2 and ISO 27001, and supporting the governance infrastructure.
Requirements
- 2-4+ years of experience in security GRC, IT audit, compliance, security operations, risk management, or technical programme coordination
- Familiarity with SOC 2, ISO 27001, NIST CSF, access reviews, vendor security, and audit evidence collection
- Experience using Vanta or a comparable GRC/compliance platform
- Strong documentation, follow-up, and project tracking skills
- Ability to work with technical teams and understand security evidence in context
- Strong written communication skills for RFPs, questionnaires, policies, and audit responses
Benefits
- Comprehensive benefits package
- Generous Paid Time Off
- 401k Matching
- Tuition Reimbursement
- Relocation Assistance
