SlipstreamJobsFresh Startup & VC-Backed Jobs

Senior Compliance Engineer

Anduril - Costa Mesa, CA, United States - In-office - posted 2026-08-02

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Anduril Industries is seeking a Senior Compliance Engineer to join the Corporate Assurance Team, which manages enterprise cybersecurity governance, risk, and compliance (GRC) across the organization. This is a technically hands-on role focused on driving automation and security engineering principles into the design and operation of Anduril's internal systems. The role bridges regulatory requirements and engineering execution, ensuring Anduril's rapidly evolving technology stack meets the highest security and compliance standards. You will architect and automate compliance infrastructure that enables engineering teams to deploy secure, compliant applications by default, removing bottlenecks rather than creating them. Key responsibilities include: Infrastructure & Automation: Design, develop, and maintain Infrastructure as Code (IaC) and Policy as Code (PaC) that enforce compliance with NIST SP 800-171 and 800-53, CMMC, and other applicable frameworks. Architect security controls across corporate, development, and production cloud environments (AWS, Azure, GCP) and on-premise systems. Develop automated IaC pipelines for secure deployments, build automation for procedural compliance controls, and integrate Continuous Monitoring (ConMon), DISA STIG scanning, and compliance reporting into unified workflows. Compliance Engineering & Framework Implementation: Analyze and operationalize federal and industry cybersecurity regulations including NIST SP 800-171/800-53, CMMC, FedRAMP, and SOC 2, translating regulatory requirements into actionable engineering guidance and enforceable technical controls. Evaluate system architectures for alignment with security controls, interface with infrastructure teams to verify compliance, conduct compliance testing and assessments, and develop cybersecurity policies and procedures. Stay current on regulatory changes and communicate impact to engineering and leadership. The ideal candidate brings strong DevSecOps expertise with deep knowledge of cloud infrastructure security, embedded systems security, and federal compliance frameworks. You should be equally comfortable writing Terraform modules as interpreting NIST controls, thriving at the intersection of security policy and engineering execution. This is a builder's role focused on enabling rapid, secure deployment rather than traditional compliance paperwork.

Similar roles