Audit Lifecycle Leadership: Lead the end-to-end execution of large-scale consolidated audits (ISO 27001/17/18, SOC 2/3, PCI-DSS, HIPAA, etc.). Manage external auditor relationships and hold accountability for successful, zero-finding audit outcomes.
Compliance Automation & Innovation: Partner with Product Security Engineering to operationalize AI-driven compliance. Lead the implementation of AI-agents, gap analysis tools, and automated evidence mapping. You will be responsible for turning manual, time-intensive processes into streamlined, high-fidelity automated workflows.
Operational Architecture: Beyond maintaining current documentation, you will redesign our compliance "source of truth." Lead the adoption of Git-based workflows, Markdown/YAML documentation, and centralized dashboarding to ensure our data is audit-ready and observable at all times.
Cross-Functional Diplomacy: Act as the primary compliance liaison between Product Security, SRE, Legal, and HR. Proactively resolve complex blockers, negotiate evidence requirements, and facilitate technical tabletop exercises for BC/DR and IR.
Team Mentorship: Serve as a force multiplier. Mentor Associate and Junior Program Managers on audit best practices, interview preparation, and stakeholder communication. You will be expected to raise the bar for the entire team’s output.
Strategy & Roadmap Contribution: Influence our long-term compliance roadmap by identifying systemic bottlenecks, planning for new regulatory requirements (e.g., EU AI Act, QC1/QC2), and supporting the global expansion of our hybrid cloud offerings.
Experience: 5+ years of experience in GRC, Information Security, or IT Program Management. Proven history of leading large-scale external audits in cloud-native or SaaS environments.
Deep Framework Expertise: Subject matter expertise in with current industry frameworks (PCI-DSS, ISO, SOC, HIPAA etc).
Technical Proficiency: Experience in Git, Markdown, and YAML is required, as our compliance documentation lives in version control.
Strategic AI Literacy: Demonstrated ability to leverage AI/LLM tools (e.g., Gemini, Cursor, NotebookLM) to automate compliance tasks.
Project Management & Conflict Resolution: A track record of successfully navigating high-pressure audit cycles and resolving conflicting priorities across engineering and security teams.
Leadership Presence: Ability to represent Red Hat compliance interests confidently in front of external auditors and internal executive stakeholders.
Build the Future: You aren't just maintaining status quo compliance; you are building a modern, automated compliance infrastructure.
Cross-Pollination: You will work directly with our engineering teams, meaning your input directly impacts the security and compliance roadmap of our products.
High Autonomy: We value proactive leaders who identify problems and propose technical solutions before they become audit findings.
Pay Transparency
Red Hat determines compensation based on several factors including but not limited to job location, experience, applicable skills and training, external market value, and internal pay equity. Annual salary is one component of Red Hat’s compensation package. This position may also be eligible for bonus, commission, and/or equity. For positions with Remote-US locations, the actual salary range for the position may differ based on location but will be commensurate with job duties and relevant work experience.
About Red Hat
Red Hat is the world’s leading provider of enterprise open source software solutions, using a community-powered approach to deliver high-performing Linux, cloud, container, and Kubernetes technologies. Spread across 40+ countries, our associates work flexibly across work environments, from in-office, to office-flex, to fully remote, depending on the requirements of their role. Red Hatters are encouraged to bring their best ideas, no matter their title or tenure. We're a leader in open source because of our open and inclusive environment. We hire creative, passionate people ready to contribute their ideas, help solve complex problems, and make an impact.
Benefits
● Comprehensive medical, dental, and vision coverage
● Flexible Spending Account - healthcare and dependent care
● Health Savings Account - high deductible medical plan
● Retirement 401(k) with employer match
● Paid time off and holidays
● Paid parental leave plans for all new parents
● Leave benefits including disability, paid family medical leave, and paid military leave
● Additional benefits including employee stock purchase plan, family planning reimbursement, tuition reimbursement, transportation expense account, employee assistance program, and more!
Note: These benefits are only applicable to full time, permanent associates at Red Hat located in the United States.
Inclusion at Red Hat
Red Hat’s culture is built on the open source principles of transparency, collaboration, and inclusion, where the best ideas can come from anywhere and anyone. When this is realized, it empowers people from different backgrounds, perspectives, and experiences to come together to share ideas, challenge the status quo, and drive innovation. Our aspiration is that everyone experiences this culture with equal opportunity and access, and that all voices are not only heard but also celebrated. We hope you will join our celebration, and we welcome and encourage applicants from all the beautiful dimensions that compose our global village.
Equal Opportunity Policy (EEO)
Red Hat is proud to be an equal opportunity workplace and an affirmative action employer. We review applications for employment without regard to their race, color, religion, sex, sexual orientation, gender identity, national origin, ancestry, citizenship, age, veteran status, genetic information, physical or mental disability, medical condition, marital status, or any other basis prohibited by law.
Red Hat does not seek or accept unsolicited resumes or CVs from recruitment agencies. We are not responsible for, and will not pay, any fees, commissions, or any other payment related to unsolicited resumes or CVs except as required in a written contract between Red Hat and the recruitment agency or party requesting payment of a fee.Red Hat supports individuals with disabilities and provides reasonable accommodations to job applicants. If you need assistance completing our online job application, email [email protected]. General inquiries, such as those regarding the status of a job application, will not receive a reply.
Skills Required
- 5+ years of experience in GRC, Information Security, or IT Program Management
- Experience leading large-scale external audits in cloud-native or SaaS environments
- Subject matter expertise in current industry frameworks (PCI-DSS, ISO, SOC, HIPAA)
- Experience in Git, Markdown, and YAML
- Ability to leverage AI/LLM tools for compliance tasks
- Track record of conflict resolution across engineering and security teams
Red Hat Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Red Hat and has not been reviewed or approved by Red Hat.
-
Healthcare Strength — Healthcare coverage is presented as comprehensive, spanning medical, dental, and vision along with life and disability coverage. Access to HSA/FSA options and broadly positive reception of health benefits support the view that healthcare is a core strength.
-
Leave & Time Off Breadth — Time-off offerings are described as generous, with substantial PTO for new hires plus additional recharge days and an end-of-year shutdown for many non-critical roles. Paid volunteer time, holidays, sick days, and supportive expectations around taking time off reinforce the breadth of leave benefits.
-
Strong & Reliable Incentives — The rewards package includes performance bonuses and a recurring quarterly bonus program tied to company and individual performance. Availability of ESPP participation further adds to incentive pathways beyond base pay.
Red Hat Insights
What We Do
At Red Hat, we connect an innovative community of customers, partners, and contributors to deliver an open source stack of trusted, high-performing solutions. We offer cloud, Linux, middleware, storage, and virtualization technologies, together with award-winning global customer support, consulting, and implementation services. Red Hat is a rapidly growing company supporting more than 90% of Fortune 500 companies.
Why Work With Us
Red Hatters freely exchange different viewpoints, contribute ideas, and solve problems together. Our love of collaboration, accountability, a sense of community, and a measure of autonomy combine to create a powerful force that fosters innovation and makes Red Hat a great place to work.
Gallery









