SlipstreamJobsFresh Startup & VC-Backed Jobs

Sr. Security Compliance Engineer

Scopely - Barcelona, Catalonia, Spain - Hybrid - posted 2026-08-12

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Scopely, a global mobile games publisher and developer, is seeking a Senior Security Compliance Engineer to join the Information Security team in Barcelona on a hybrid basis (2 days/week on-site). The role combines technical execution with privacy and regulatory expertise to design, build, and scale privacy-aware compliance systems across a global technology organization. Key responsibilities include embedding privacy by design into product and operational workflows; designing and building privacy engineering capabilities for data subject rights requests, data lifecycle management, and regulatory compliance; translating legal and regulatory requirements into technical specifications and implementation guidance; and developing tools and automations in Python to support privacy operations. You will work with AWS environments to operate secure, scalable privacy systems; write and deploy SQL for data archival, purging, and privacy audits; and conduct privacy impact assessments to identify and mitigate risks. The role requires close collaboration with cross-functional teams including Security, Legal, Engineering, Product, and Player Experience to implement data solutions that balance business needs with data protection. You will manage projects from requirements through delivery, improve compliance documentation and reporting processes, and identify automation opportunities to reduce manual work and strengthen operational consistency. Required qualifications include 5+ years in information security, privacy, compliance, or related technical roles; hands-on Python development experience; strong background in software engineering, backend systems, security, or data architecture; AWS and cloud architecture experience; familiarity with workflow orchestration tools like Temporal; and working knowledge of APIs, JSON, and SQL. You should have strong understanding of privacy engineering principles, privacy by design, GDPR, and security frameworks (ISO 27001, NIST, COBIT); experience working cross-functionally with Legal and Engineering teams; and excellent communication skills for explaining technical concepts to non-technical audiences. Experience with data systems, large datasets, and AI-enabled GRC tools is valued.

Similar roles