Senior Staff Engineer, Cybersecurity Compliance & Assurance

GEICO
Palo Alto, Dallas, Seattle
Workplace: HybridFull timeUSD 120,000 - 260,000 annuallyFunction: CybersecurityExperience: 10+ yearsEducation: bachelorsSkills: ["Communication","Leadership","Problem-solving","Strategic thinking","Influence without authority"]

Lead the design, implementation, and continuous improvement of GEICO's cybersecurity compliance and assurance program, driving regulatory alignment, audit readiness, and risk-based assessments across security domains, with a focus on frameworks like NY DFS, PCI DSS, CCPA/CPRA, NIST CSF, SOX, HIPAA, and ISO 27001.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
GEICO
GEICO
3 months ago

Senior Staff Engineer, Cybersecurity Compliance & Assurance

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Status: Live

Job Summary

Lead the design, implementation, and continuous improvement of GEICO's cybersecurity compliance and assurance program, driving regulatory alignment, audit readiness, and risk-based assessments across security domains, with a focus on frameworks like NY DFS, PCI DSS, CCPA/CPRA, NIST CSF, SOX, HIPAA, and ISO 27001.
Location: Palo Alto, Dallas, Seattle
Workplace: Hybrid
Employment Type: Full time
Job Function: Cybersecurity

Key Responsibilities

  • •Own and mature the enterprise cybersecurity compliance program, ensuring alignment with regulatory, contractual, and business requirements.
  • •Lead cybersecurity compliance initiatives supporting NY DFS, PCI DSS, CCPA/CPRA, NIST CSF, SOX, HIPAA, SOC Type II, ISO 27001 and other applicable regulatory frameworks.
  • •Lead and manage security attestations/certifications supporting SOC 2 Type II, ISO 27001
  • •Lead the development, implementation, and continuous monitoring of AI security compliance, ensuring GEICO meets applicable standards such as ISO/IEC 42001 and the NIST AI RMF.
  • •Conduct current-state and future-state assessments, compliance gap analyses, and maturity evaluations, including enterprise NIST Cybersecurity Framework assessments, to identify gaps, prioritize remediation, and develop strategic roadmaps that improve security and compliance posture.

Pay and Benefits

Salary: USD 120,000 - 260,000 annually

Key Requirements

  • •10+ years of experience in governance, risk, and compliance, including leadership of enterprise cybersecurity compliance programs.
  • •Deep expertise supporting NY DFS, PCI DSS, NIST CSF, CCPA/CPRA, ISO 27001, and related frameworks.
  • •Proven ability to lead enterprise cybersecurity compliance initiatives in multi-cloud or hybrid environments (Azure/AWS).
  • •Strong track record leading audits/regulatory engagements and building executive metrics, dashboards, and reporting.
  • •Excellent communication and leadership skills, with the ability to influence across Legal, Privacy, Compliance, Risk Management, and Engineering.
Experience:10+ yearsCybersecurityGovernanceRiskComplianceRegulatory
Education:Bachelor's
Skills:CommunicationLeadershipProblem-solvingStrategic thinkingInfluence without authority
Certifications:CISSPCISMCISACRISC
Tech Stack:AzureAWSNIST CSFISO 27001SOC 2NIST AI RMFISO/IEC 42001PCI DSSSOXHIPAACCPA/CPRA

Eligibility

Work Authorization:Sponsorship available.

Company Brief

GEICO
GEICO is a major US auto insurer offering personal auto policies, roadside assistance, and insurance products through direct-to-consumer channels and agents. Known for competitive rates and national advertising, it operates as a subsidiary of Berkshire Hathaway.
Industry: Insurance
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Established Company
Headquarters: Chevy Chase, United States
Founded: 1936
WebsiteLinkedIn