Own the compliance functions for Red Hat’s product offerings and managed service environments, ensuring they meet rigorous global certification standards
Partner with engineering and managed service teams to develop, and implement automation at scale
Lead compliance deep-dives across multi-functional teams (Engineering, Sales, Product) and act as the primary compliance lead during internal audits
Collaborate with open-source communities to develop and implement Red Hat-specific capabilities from the upstream
Contribute directly to projects to improve the security and compliance ecosystem
Foster a high-trust, collaborative environment by mentoring junior team members and serving as a security and compliance evangelist both inside Red Hat and within the broader open-source community
Requirements
Technical Proficiency in Linux, GitHub, and test-driven development
Some experience delivering secure software in programming languages such as Python
Hands-on experience using AI tools (e.g., Cursor AI, Claude, or GitHub Copilot)
Strong experience with modern container technologies such as Kubernetes and OpenShift
Ability to analyze security controls and design measures in alignment with standards such as CRA, NIST 800-53, PCI DSS, and ISO 27001
Proven track record of being effective in a self-directed, remote capacity within a global organization
Strong ability to present technical compliance concepts clearly to both technical developers and non-technical stakeholders
Relevant certifications such as CISSP, CISM, CCSP, or CISA are a plus