Back to jobs

Product Security and Regulatory Expert

Remote
Build More Than Just a Career. Build Your Future.

At Vailexa, we’re not just hiring — we’re building thinkers, creators, and future leaders.

We believe in giving people the space to grow, the freedom to think, and the opportunity to create real impact from day one. If you’re someone who wants to learn fast, take ownership, and grow beyond limits, you’ll feel right at home here.

Required Qualifications

  • 7+ years of experience in product security, IT compliance/regulatory, product, IT security
  • Must have deep expertise of: EU CRA, EU RED, IEC 62443
  • Strong understanding of:
    • Cloud environments (AWS, Azure, GCP)
    • Enterprise networking
    • Identity & access management
    • Data protection and encryption technologies
    • Logging, monitoring, and security tooling
  • Experience leading or supporting external audits.
  • Ability to translate legal/regulatory language into technical requirements.
  • Strong documentation and stakeholder communication skills.

 
Preferred Qualifications

  • Experience in highly regulated industries (financial services, healthcare, defense, telecom).
  • Certifications such as:
    • CISA
    • CRISC
    • CISSP
    • ISO 27001 Lead Implementer / Lead Auditor
  • Experience with GRC platforms (ServiceNow GRC, Archer, OneTrust, etc.).
  • Experience managing cross-border data compliance and data residency requirements.

 Regulatory & Technical Compliance

  • Interpret and operationalize global and regional regulations into actionable technical controls.
  • Translate regulatory requirements into technical standards for infrastructure, cloud, network, application, and data environments.
  • Partner with legal, risk, audit, and security teams to ensure consistent global compliance posture.

Control Implementation & Validation

  • Design and implement technical controls to meet regulatory requirements.
  • Conduct control testing, gap assessments, and remediation planning.
  • Lead internal and external audits; coordinate evidence collection and auditor responses.
  • Automate compliance validation through tooling where possible (e.g., CSPM, SIEM, GRC platforms).

 
Global Program Management

  • Support compliance strategy across multiple countries and regions.
  • Monitor regulatory changes globally and assess impact to IT systems.
  • Establish repeatable compliance processes for global rollouts.
  • Work with regional IT leaders to ensure localized regulatory adherence.

Risk & Governance

  • Perform risk assessments related to regulatory exposure.
  • Maintain risk registers and remediation roadmaps.
  • Support policy development and technical standards documentation.
  • Provide executive-level reporting on compliance posture and risk.

Key Competencies

  • Strong analytical and risk-based decision-making skills
  • Ability to operate in complex, matrixed global organizations
  • Executive-level communication capability
  • Process-oriented mindset with automation focus
  • Ability to balance regulatory rigor with business enablement

 

Ready to take the next step?

If you’re excited about this role and ready to grow with a team that values ambition, ideas, and impact — we’d love to hear from you.

👉 Apply now and start building your journey with Vailexa.

Apply for this job

*

indicates a required field

Phone
Resume/CV

Accepted file types: pdf, doc, docx, txt, rtf

Cover Letter

Accepted file types: pdf, doc, docx, txt, rtf


Select...
Select...
Select...

Voluntary Self-Identification

For government reporting purposes, we ask candidates to respond to the below self-identification survey. Completion of the form is entirely voluntary. Whatever your decision, it will not be considered in the hiring process or thereafter. Any information that you do provide will be recorded and maintained in a confidential file.

As set forth in Vailexa ’s Equal Employment Opportunity policy, we do not discriminate on the basis of any protected group status under any applicable law.

Select...
Select...
Race & Ethnicity Definitions

If you believe you belong to any of the categories of protected veterans listed below, please indicate by making the appropriate selection. As a government contractor subject to the Vietnam Era Veterans Readjustment Assistance Act (VEVRAA), we request this information in order to measure the effectiveness of the outreach and positive recruitment efforts we undertake pursuant to VEVRAA. Classification of protected categories is as follows:

A "disabled veteran" is one of the following: a veteran of the U.S. military, ground, naval or air service who is entitled to compensation (or who but for the receipt of military retired pay would be entitled to compensation) under laws administered by the Secretary of Veterans Affairs; or a person who was discharged or released from active duty because of a service-connected disability.

A "recently separated veteran" means any veteran during the three-year period beginning on the date of such veteran's discharge or release from active duty in the U.S. military, ground, naval, or air service.

An "active duty wartime or campaign badge veteran" means a veteran who served on active duty in the U.S. military, ground, naval or air service during a war, or in a campaign or expedition for which a campaign badge has been authorized under the laws administered by the Department of Defense.

An "Armed forces service medal veteran" means a veteran who, while serving on active duty in the U.S. military, ground, naval or air service, participated in a United States military operation for which an Armed Forces service medal was awarded pursuant to Executive Order 12985.

Select...