Infojini Inc Logo

Infojini Inc

Compliance Lead

Reposted One Month Ago
Be an Early Applicant
In-Office
Denver, CO, USA
Expert/Leader
In-Office
Denver, CO, USA
Expert/Leader
The Compliance Lead ensures secure operations of systems and compliance with laws, conducts audits, and implements security policies. They lead design and review of security controls, provide expert guidance, and promote security awareness within teams.
The summary above was generated by AI
Company Description

Direct Client

Job Description

Title: 

Compliance Lead

Duration: 8+ months
Location: Denver, CO

Description:

The Data Compliance Lead’s role is to ensure the secure operation of the in-house systems, servers, and network connections in accordance with internal processes, procedures, and compliance requirements as well as Federal, State and Local laws. Tasks also includes conducting regularly scheduled audits on internal systems and hosting third-party and/or Cloud  audits as required in order to maintain certifications and compliance certificates. The data compliance lead also develops implements, maintains, and oversees remediation and enforcement of internal security policies and procedures.

Top 3 Must Have Skills:

Data Compliance Lead is responsible for designing, publishing and reviewing technology designs, security controls and solutions to reduce the risk of unauthorized access, transmission and storage of confidential Ex: IRS 1075, IRS Pub 1075, TOP, SSA, DHS, and  PII and FTI data.Partner with security architects, other functional-area architecture, engineering, and security specialists to ensure adequate security solutions and controls are in place throughout the IT systems and platforms to mitigate identified risks sufficiently, and to meet business objectives and regulatory requirementsProvide expert-level guidance to security analysts, testers, and development teams during application security assessments. Must be able to identify, re-create, and remediate security defects

Other Desired Skills
  • As and an expert/lead technical will define the information security architecture and design for the application.
  • Providing training for development and QA teams on how to implement Secure Software Development Life Cycle S-SDLC into their existing practices
  • In-depth knowledge on common web application security flaws and secure coding practices and the ability to clearly explain security issues to project and development staff
  • Ability to prioritize and track security issues and work with the necessary teams to ensure remediation
  • Serve as a leader by promoting security awareness, mentoring other team members, and staying up-to-date on current development methodologies (Agile/DevOps)
  • Understand HTTP, REST, SOAP, XML and JSON as it relates to APIs and AJAX, Experience using and compliance testing REST and/or SOAP APIs
  • Understanding of AWS, Azure, and other cloud solutions, security issues and Security controls in those environments
Desired knowledge and experience includes
  • 7+ years in Information Security space
  • 5+ years in enterprise software development
  • Strong development background with prominent web or mobile development languages and frameworks, provide security remediation advice to development and testing teams;
  • Strong experience with Threat Modeling in an enterprise, not just theoretical
  • Strong oral, written, and presentation abilities -able to convey risk to all levels of the business, from C-level executives to operations and development teams
  • Strong understanding of web applications and architectures, relational and non-relational databases, and hardware architectures, and effectively applying the principles of information security to IT environments
  • Strong experience working in a multi-platform, multi-protocol, distributed enterprise computing environment
  • Experience with Unix/Linux and Windows system administration
  • Some understanding of governance frameworks such as ITIL and ISO 27001;
  • Some project management experience: Able to assess needs, define objectives, identify resources needed to achieve objectives and begin implementation towards goal completion;
  • Must be able to work effectively alone and as part of a larger project team.
  • Current understanding of Industry trends and emerging threats

Additional Information

All your information will be kept confidential according to EEO guidelines.

Similar Jobs

8 Days Ago
In-Office or Remote
United States
Senior level
Senior level
Automotive
Lead transaction-focused counsel supporting domestic and international mergers and acquisitions, divestitures, joint ventures, strategic alliances, commercial agreements, and global supply chain matters. The role involves drafting and negotiating agreements, advising business leaders on legal and commercial risk, managing outside counsel, coordinating global legal teams, and improving transaction processes through templates, automation, and legal technology.
Top Skills: Artificial IntelligenceAutomationLegal Technology
11 Days Ago
In-Office
80249, Denver, CO, USA
80K-90K Annually
Mid level
80K-90K Annually
Mid level
Events • Professional Services • Security • Consulting
Conducts quality assurance inspections, covert testing, audits, and employee performance assessments at DEN. Ensures compliance with TSA, FAA, airport, client, and company requirements; provides coaching and corrective instruction; tracks findings and improvement actions; and recommends process improvements. Manages security licenses, SIDA badge compliance, drug testing, training records, fleet vehicles, insurance, registrations, maintenance, fuel cards, and geolocation monitoring. Coordinates with airport stakeholders and internal departments to maintain compliance and operational workflows.
16 Days Ago
Hybrid
Centennial, CO, USA
130K-160K Annually
Senior level
130K-160K Annually
Senior level
3D Printing • Aerospace • Defense • Manufacturing
Manages company-wide export controls, economic sanctions, restricted-party screening, product and technology classification, export licenses, authorizations, compliance records, and regulatory training. Advises engineering, operations, supply chain, IT, security, and business teams on ITAR, EAR, and OFAC requirements. Supports investigations, risk assessments, corrective actions, monitoring, third-party due diligence, and broader corporate compliance initiatives.
Top Skills: Controlled Unclassified Information (Cui)Cybersecurity Maturity Model Certification (Cmmc)EarExport Control Classification Numbers (Eccns)ItarNist Sp 800-171Ofac Sanctions ProgramsU.S. Munitions List

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account