Security Governance & Compliance Specialist

Cisco
San Jose
Workplace: OnsiteFull timeFunction: Legal, Risk & ComplianceExperience: 3-5 yearsEducation: bachelorsSkills: ["Communication","Judgment","Documentation","Attention to detail","Cross-functional collaboration"]

Perform technical security risk assessments for Splunk’s Global Security organization, partnering with engineering teams to evaluate product and business risks. Build and facilitate risk assessment exercises, prepare risk findings and trend reporting for both technical and leadership audiences, and monitor remediation against SLA targets. Review risk exceptions, maintain risk register data quality, and support internal/external audits with evidence and walkthroughs.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Cisco
Cisco
1 day ago

Security Governance & Compliance Specialist

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 7 hours agoStatus: Live

Job Summary

Perform technical security risk assessments for Splunk’s Global Security organization, partnering with engineering teams to evaluate product and business risks. Build and facilitate risk assessment exercises, prepare risk findings and trend reporting for both technical and leadership audiences, and monitor remediation against SLA targets. Review risk exceptions, maintain risk register data quality, and support internal/external audits with evidence and walkthroughs.
Location: San Jose
Workplace: Onsite
Employment Type: Full time
Job Function: Legal, Risk & Compliance
Seniority: Mid level

Key Responsibilities

  • •Build and facilitate technical risk assessment exercises, using AI-assisted tools where applicable.
  • •Prepare and present risk findings, metrics, and trend reporting for technical and business/leadership audiences.
  • •Monitor and report risks continually, tracking remediation plans against SLA targets and escalating aged or overdue risks.
  • •Review and process risk exception requests, assessing residual risk and appropriate compensating controls.
  • •Maintain risk register data quality and support internal and external audits with evidence, documentation, and walkthroughs.

Key Requirements

  • •Bachelor's degree or equivalent work experience required.
  • •Professional certification(s) such as GIAC, CISSP, CRISC, CISM, CISA, ISO 27001 Lead Implementer/Auditor, CCSK, or CCSP.
  • •3-5+ years performing hands-on technical risk assessments in a security risk management role.
  • •Demonstrable technical knowledge in cloud environments (AWS, Azure, GCP) and the ability to identify control gaps and real risks.
  • •Hands-on assessment experience against security risk management frameworks (e.g., NIST CSF/RMF, ISO 27001/27002, ISO 42001).
Experience:3-5 yearsSecurity risk managementCloud securityGovernance risk compliance (GRC)
Education:Bachelor's
Skills:CommunicationJudgmentDocumentationAttention to detailCross-functional collaboration
Certifications:GIACCISSPCRISCCISMCISAISO 27001 Lead Implementer/AuditorCCSKCCSP
Tech Stack:SplunkSPLAWSAzureGCPJiraConfluenceMicrosoft 365ClaudeCodexPythonSQLNIST CSFRMFISO 27001ISO 27002ISO 42001

Company Brief

Cisco
Global technology company that designs, manufactures, and sells networking hardware, telecommunications equipment, and high-technology services and products for enterprises, service providers, and governments worldwide.
Industry: Networking Equipment
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: San Jose, United States
Founded: 1984
Glassdoor
Glassdoor: 4.0
WebsiteLinkedInGlassdoor