This job might no longer be available.
Security Auditor
1 year ago
The opportunity
Unity is looking for Senior Security Technical Auditors to join the Unity Security Team and lead various vital audits and initiatives that mature the company’s security program. We are seeking auditors with a passion for security and a deep technical focus, to tackle large scale organizational audits, and drive resulting requirements into projects in multiple teams. The assurance on our Security Program is key to maintaining customer confidence in our products. This will be a chance to work on real security problems in a fast-paced, high growth business. The person in this role will be at the helm of critical security initiatives with major impact across the company.
What you’ll be doing
- Conduct security audits and gap analysis of Unity systems and processes, against various compliance frameworks (such as PCI, NIST CSF, NIST 800-171, ISO270001, ISO22301, SOC 2 etc.)
- Evaluate the security-maturity of complex information systems, processes and controls, including but not limited to - applications, cyber infrastructure, business control processes, Security operations, Vulnerability management, personnel security.
- Report findings to management and communicate recommendations for corrective actions.
- Directing technical teams on the implementation of security controls to meet requirements of various compliance frameworks
- Implementing audit review processes and evidence collection automation.
What we’re looking for
- Individuals with a technical focus, strong analytical and problem-solving skills with an attention to detail
- Strong oral, written and presentation communication skills, since this is a high-visibility role.
- Understanding how modern cloud environments and different XaaS environments (SaaS, PaaS, IaaS) work
- Understanding / experience with common enterprise (cloud) security tooling. Ideally at least 3-4 of the following are familiar to you: Vulnerability management tooling, Application security tooling, Configuration management tools, Endpoint security tools, Network security tools (firewalls, IDS, ..)
- Experience with process mapping (preferably on MS Visio / Lucidchart or equivalent).
You might also have
- Professional certifications in security risk management and audit areas are a plus, such as CISA, CISSP or similar
- Experience conducting risk assessment on products and applications (in-house and/or third-party) to inculcate better security and recognize opportunities of security program development.
Life at Unity
Unity (NYSE: U) is the world’s leading platform for creating and operating real-time 3D (RT3D) content. Creators, ranging from game developers to artists, architects, automotive designers, filmmakers, and others, use Unity to make their imaginations come to life. Unity is the foundation upon which the world’s most powerful digital content is created. Specifically, Unity’s platform provides a comprehensive set of software solutions to create, run and monetize interactive, real-time 2D and 3D content for mobile phones, tablets, PCs, consoles, and augmented and virtual reality devices.
In the fourth quarter of 2021, Unity had, on average, 3.9 billion monthly active end users who consumed content created or operated with its solutions. The applications developed by these creators were downloaded, on average, five billion times per month in 2021. For more information, please visit www.unity.com .
Unity is a proud equal opportunity employer. We are committed to fostering an inclusive, innovative environment and celebrate our employees across age, race, color, ancestry, national origin, religion, disability, sex, gender identity or expression, sexual orientation, or any other protected status in accordance with applicable law. Our differences are strengths that enable us to support the growing and evolving needs of our customers, partners, and collaborators. If there are preparations or accommodations we can make to help ensure you have a comfortable and positive interview experience, please fill out this form to let us know.
Headhunters and recruitment agencies may not submit resumes/CVs through this website or directly to managers. Unity does not accept unsolicited headhunter and agency resumes. Unity will not pay fees to any third-party agency or company that does not have a signed agreement with Unity.
#LI-SL1 #SEN
Create Your Profile — Game companies can contact you with their relevant job openings.