2 open positions available
Manage enterprise-wide security control assurance and compliance program and lead a team while collaborating with engineering to automate control monitoring and report risks to senior leadership. | 8+ years in information security governance, risk, and compliance with 4+ years in security control assessment, bachelor's degree, and professional security certifications such as CISSP, CISA, CISM, or CRISC. | Verisign helps enable the security, stability, and resiliency of the internet. We are a trusted provider of internet infrastructure services for the networked world and deliver unmatched performance in domain name system (DNS) services. We are a mission focused, values driven company where each individual can contribute to building a stronger, more secure internet. We offer a dynamic and flexible work environment with competitive benefits and the ability to grow your career. Verisign is seeking a hands-on technical manager to join an impactful Information Security Governance, Risk, and Compliance (GRC) team. In this role, you will support an enterprise-wide governance, risk, and compliance program focusing on security control assurance, security risk management, policies and standards, continuous control monitoring, and ensuring compliance with internal and external security requirements. Some immediate focus areas include: Reviewing information security control design and conducting tests Standing up automated evidence collection practices Responding to external regulatory information requests An ideal candidate cares deeply about automation and reducing friction. We expect the candidate to possess competencies that allow them to bring noticeable and measurable improvements in some of the above-mentioned areas. This position requires the technical depth and communication range to brief audiences from system engineers to senior leadership. Primary Responsibilities: Manage a security control assurance program, including planning and executing test procedures, assessing design and operating effectiveness, and driving identified gaps to remediation. Manage compliance with external regulatory obligations, translating requirement into control objectives, coordinating regulator information requests, and tracking remediation commitments. Build a continuous control monitoring program by collaborating with control and system owners and translating security control requirements into automated tests. Interface directly with technical engineering teams to design and improve security controls, define implementation requirements, and determine what effective security control operations should look like. Report on compliance and control assessment results, risk trends, and remediation priorities to audiences ranging from controls owners to senior leadership through clear reporting, executive briefings, and dashboards. Assist with the development of enterprise information security policies and standards. Lead a team of practitioners, setting priorities and quality standards, and ensuring commitments are met. Qualifications: Domain expertise in cyber security standard methodologies and security control frameworks such as CIS Controls, SOC 2/3 Trust Services Criteria, NIST Cybersecurity Framework, and NIST SP800-53; with hands-on experience testing and mapping controls across frameworks Experience in a public company environment managing compliance across multiple regulatory and security frameworks Technical understanding of security controls, identifying control objectives, and how to implement them in a complex enterprise IT environment Ability to creatively develop and refine control tests tailored to specific control implementations 8+ years progressively responsible experience in information security governance, risk, compliance, or security assessment/audit 4+ years of security control assessment experience required 2+ years of related experience leading or managing others Professional security management certification, such as a Certified Information Systems Security Professional (CISSP), Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), or Certified in Risk and Information Systems Control (CRISC) are preferred Bachelor's degree in Information Systems, Computer Science, or related field, or equivalent experience, required This position is based in our Reston, VA office and offers a hybrid work schedule. The pay range is $135,800 - $183,800. The anticipated annual base salary range for this position is noted above, however, base pay offered may vary depending on job-related knowledge, skills, experience. Verisign offers a discretionary bonus which is based on individual and company performance, and certain roles may be eligible for discretionary stock awards. Verisign is an equal opportunity employer. That means we recruit, hire, compensate, train, promote, transfer, and administer all terms and conditions of employment without regard to their race, color, religion, national origin, sex, sexual orientation, gender identity, age, protected veteran status, disability, or other protected categories under applicable law. Additional Information: Our Careers Page Our Benefits Summary Verisign in the Community Our EEO Statement Our Privacy Notice for Job Applicants/Candidates Reasonable Accommodations Staffing agency policy: No fees will be paid for unsolicited resumes submitted to Verisign or our employees by third parties.
Develop, deploy, and maintain customer-facing web applications collaborating across teams. | Strong software engineering fundamentals with hands-on JavaScript web development experience and familiarity with AWS, Docker, and Jenkins. | Verisign helps enable the security, stability, and resiliency of the internet. We are a trusted provider of internet infrastructure services for the networked world and deliver unmatched performance in domain name system (DNS) services. We are a mission focused, values driven company where each individual can contribute to building a stronger, more secure internet. We offer a dynamic and flexible work environment with competitive benefits and the ability to grow your career. Candidate Verisign is looking for a junior engineer to expand the Verisign Web Marketing Development team. An ideal candidate should be familiar with JavaScript and have prior experience in web development, including building frontend pages and components, and managing site tooling and dependencies. We build and manage high visibility websites that are informational and educational in nature, so creating performant UX components and templates is a priority for the team. Exposure to additional languages and technologies (AWS/Cloud, Docker, Jenkins, Ansible, Bash) is advantageous. We seek a candidate with strong understanding of software engineering fundamentals, including core Computer Science concepts, as well as hands-on problem-solving experience building software systems. The candidate will be involved in all aspects of product development including ideation, design, implementation, deployment, and issue resolution. This will usually imply cross-team collaboration with Product, Marketing, Engineering, Security and Operations teams. The candidate is expected to provide technical contributions and work collaboratively with other team members. Product Web Marketing operates a set of customer-facing web applications and static sites, which deliver informational content and the latest news from Verisign. This includes the primary corporate site of verisign.com, several product and campaign focused sites, and a public blog. The team is on course to unify all these sites under a common framework, toolset, and design system which allows for reuse of front-end components. Additionally, the team operates their infrastructure in the public cloud and is responsible for maintaining and improving those platforms. This team manages a collection of front-end components, including site templates, themes, and Web Components for interactivity, as well as a git-based content editing workflow. Team The team possesses extensive technical ownership over the product. The work style of the team is closer to an internal startup where all the team members are involved in the majority of product development phases and are flexible moving between focus areas. The team follows Agile Development methodology relying on daily Scrums with tickets prioritized in Jira. Our code is located on internal GitHub; we utilize pull request code reviews. For continuous delivery, we use Jenkins with pipelines and our product deployments are automated with Docker, Ansible, and Terraform. It is clearly beneficial if the candidate has experience working with some of the tools mentioned. Skills Required Expertise in JavaScript Frontend web development experience: HTML, CSS, JavaScript, TypeScript Ability to optimize webpage loading and rendering Working knowledge of at least one version control system: Git, SVN, etc. Experience with common website toolchains and dependencies: npm, webpack/babel, prettier, postCSS, etc. OS: Familiarity with UNIX-like operating systems Demonstration of understanding of Secure Coding standards. Excellent communication skills (verbal and written), eager to learn new technologies Advantageous Frameworks: StencilJS, Astro, Tailwind CSS Frontend Testing frameworks: Jest, Enzyme, Mocha, BrowserStack, StoryBook Test Automation: Unit/Integration/UI testing (Playwright, Selenium, Puppeteer) AWS Public cloud services including Cloudfront, S3 and Route53 Methodology: Scrum Scripting: Bash, Python Containerization: Docker CI/CD/CM: Git, Jenkins, Gradle, Yarn Deployment Automation: Ansible, Terraform CDN configuration/management experience Education and experience: Bachelor’s degree in computer science or a related field with 2+ years software development experience or a Master’s degree with hands-on software development work experience through demonstrable projects or internships or equivalent experience This position is based in our Reston, VA office and offers a hybrid work schedule. The pay range is $89,900 - $121,700. The anticipated annual base salary range for this position is noted above, however, base pay offered may vary depending on job-related knowledge, skills, experience. Verisign offers a discretionary bonus which is based on individual and company performance, and certain roles may be eligible for discretionary stock awards. Verisign is an equal opportunity employer. That means we recruit, hire, compensate, train, promote, transfer, and administer all terms and conditions of employment without regard to their race, color, religion, national origin, sex, sexual orientation, gender identity, age, protected veteran status, disability, or other protected categories under applicable law. Additional Information: Our Careers Page Our Benefits Summary Verisign in the Community Our EEO Statement Our Privacy Notice for Job Applicants/Candidates Reasonable Accommodations Staffing agency policy: No fees will be paid for unsolicited resumes submitted to Verisign or our employees by third parties.
Create tailored applications specifically for Verisign with our AI-powered resume builder
Get Started for Free