Security Compliance Engineer

ByteDance
Singapore
Workplace: OnsiteFull timeFunction: Legal, Risk & ComplianceExperience: 3+ yearsSkills: ["Communication","Logical reasoning","Continuous learning","Collaboration","Team-oriented mindset"]

Own information security governance and compliance across ByteDance’s business lines by maintaining an internal information security management system and staying current on laws, regulations, and security standards. Support product certification efforts including ISO 27001, SOC 2, and PCI, and ensure security controls meet industry requirements through audits and deep reviews of systems, policies, and configurations. Coordinate with cross-functional teams to sustain ongoing external compliance.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
ByteDance
ByteDance
1 month ago

Security Compliance Engineer

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 29 days agoStatus: Live
Reposted: similar role first listed 1 month ago

Job Summary

Own information security governance and compliance across ByteDance’s business lines by maintaining an internal information security management system and staying current on laws, regulations, and security standards. Support product certification efforts including ISO 27001, SOC 2, and PCI, and ensure security controls meet industry requirements through audits and deep reviews of systems, policies, and configurations. Coordinate with cross-functional teams to sustain ongoing external compliance.
Location: Singapore
Workplace: Onsite
Employment Type: Full time
Job Function: Legal, Risk & Compliance

Key Responsibilities

  • •Stay abreast of laws, regulations, policies, and information security standards for network security, data security, and data protection.
  • •Maintain and update the internal information security management system.
  • •Drive security compliance and privacy protection requirements, addressing and remediating non-compliant items.
  • •Validate and verify security controls against industry requirements by reviewing processes, systems, policies, network diagrams, and configurations.
  • •Collaborate with cross-functional team leaders to ensure ongoing compliance with external certifications.

Key Requirements

  • •More than 3 years of experience managing ISO 27001:2022, SOC 2 audits, and compliance programs in a global organization.
  • •Hands-on knowledge of cybersecurity frameworks including ISO 27001, PCI-DSS, SOC 2, and other regulatory requirements.
  • •Strong communication skills and logical reasoning.
  • •Commitment to continuous learning and a collaborative, team-oriented mindset.
  • •Preferred experience with ISO management systems, SOC audit, and PCI certification; relevant certifications such as CISM, CISA, and CISSP are preferred.
Experience:3+ yearsCybersecurityInformation securityComplianceGlobal organization
Skills:CommunicationLogical reasoningContinuous learningCollaborationTeam-oriented mindset
Certifications:ISO 27001SOC 2PCICISMCISACISSP
Tech Stack:ISO 27001ISO 27001:2022SOC 2SOCPCIPCI-DSSNetwork securityData securityData protection

Company Brief

ByteDance
Develops consumer internet and content platforms, including TikTok and other apps for short-form video, news, and entertainment. It also builds advertising, commerce, and creator tools that connect audiences, brands, and publishers across global markets.
Industry: Digital Media
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Established Company
Headquarters: Beijing, China
Founded: 2012
WebsiteLinkedIn