A globally leading consumer device company headquartered in Cupertino, CA is seeking a detail-oriented and proactive Compliance & Privacy Engineer to join their team. This role sits at the intersection of data governance, privacy engineering, and regulatory compliance. The ideal candidate will be responsible for maintaining the integrity of our centralized data registry, enforcing data classification standards, and driving execution of compliance controls across multiple audit and assessment frameworks. This is a hands-on role requiring strong organizational skills, technical aptitude, and cross-functional collaboration.
Key Responsibilities:
Input, update, and validate metadata for databases and data assets within a centralized data registry, ensuring all entries are current and accurate.
Apply data tags and classifications (e.g., data type, sensitivity level, personal data indicators) in alignment with established privacy and data governance standards.
Review database documentation and collaborate closely with data owners, engineers, and privacy stakeholders to ensure accurate and comprehensive metadata capture.
Support migration activities by mapping existing metadata to new registry schemas and standards, ensuring continuity and compliance during transitions.
Perform regular quality checks to ensure completeness, consistency, and accuracy of tagged and classified data across the registry.
Monitor, track, and execute compliance controls across all audits and assessments, ensuring timely completion and adherence to regulatory requirements.
Track and execute recurring monthly controls including but not limited to Splunk monitoring, GitHub access reviews, patching status verification, and baseline compliance checks.
Monitor and track patching cycles, aging vulnerabilities, and vulnerability reports, coordinating remediation efforts with relevant engineering teams.
Maintain Confluence and Quip documentation spaces to track all internal compliance projects, issues, progress, and follow-ups.
Serve as a project management point of contact for internal compliance initiatives, driving accountability and visibility.
Required Qualifications:
10+ years of experience in compliance engineering, data governance, privacy engineering, or a related discipline.
Hands-on experience with data classification frameworks and metadata management in enterprise environments.
Familiarity with regulatory and audit frameworks such as PCI DSS, PCI PIN, SOX etc
Working knowledge of compliance and monitoring tools (e.g., Splunk, GitHub or similar).
Experience with AWS cloud services and routine cloud operations.
Strong documentation skills with proficiency in Confluence, Quip, or similar collaboration platforms.
Preferred Qualifications:
Bachelor's degree in Computer Science, Information Security, Data Engineering, or a related field.
Experience with data privacy regulations (e.g., GDPR, CCPA) and privacy-by-design principles.
Familiarity with vulnerability management tools and patching lifecycle processes.
Type: Contract
Duration: 12 months with extension
Work Location: Cupertino, CA (onsite)
Pay range: $85.00 - $100.00 ph (DOE)