Skip to content

Open nowPosted today

Security & Compliance Engineer, Quantum

IBM2,330 open roles

Where
Yorktown Heights, US
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowSecurity & Compliance Engineer, QuantumIBM · Yorktown Heights, US
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on IBM's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.0% of postings close within 7 days. Measured by our own scanner across the market. IBM postings stay open a median of 4 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.5%3 days
  3. 8.0%7 days
  4. 15.0%14 days
  5. 34.1%30 days
This job: posted today

IBM median: 4 days open

The posting

IBM Quantum is an industry-first initiative to build universal quantum computers for business, engineering, and science. This effort includes advancing the entire quantum computing technology stack and exploring applications to make quantum broadly usable and accessible. With a worldwide network of Fortune 500 companies, academic institutions, researchers, educators, and enthusiasts, we are committed to driving innovation for our clients in the IBM Quantum Network and the Qiskit Community.

As IBM Quantum continues to expand its software, cloud, and infrastructure footprint, maintaining a strong security and compliance posture is critical to enabling trust, scalability, and regulatory readiness. We are seeking a Compliance Security Engineer (SOC 2 Compliance Focal) to help drive and automate our compliance program across Quantum software, cloud services, and infrastructure environments.

IBM is seeking a Compliance Focal to join the IBM Quantum security team in the US, reporting to T. J. Watson Research Center in Yorktown Heights, NY. This role will focus on driving and automating the organization's compliance program for a high-tech and sensitive environment like quantum computing, ensuring that security controls, evidence collection, and audit processes are efficient, repeatable, and scalable. The candidate will own the design and automation of compliance workflows, reducing manual effort in control monitoring, evidence gathering, and audit readiness across the software and infrastructure stack.

This position is critical in maintaining the organization's compliance posture against frameworks such as SOC 2, and supporting the pursuit of additional certifications such as FedRAMP, by proactively identifying control gaps, building automated compliance tooling, and working closely with teams such as IBM's CISO, security engineering, and development groups to embed compliance requirements throughout the product lifecycle.

Good communication skills and the ability to handle fast-paced, complex work are essential. A self-motivated and driven individual who can work independently as well as in multi-team settings.

4+ years of experience in compliance, security engineering, audit, or related roles, with direct experience in SOC 2 compliance programs.

  • Degree in Computer Science, Information Security, or equivalent work experience.
  • Hands-on experience with SOC 2 compliance, including control design, evidence collection, readiness assessments, and supporting external audits.
  • Experience building or operating compliance automation tooling to continuously monitor controls, collect evidence, and flag drift or gaps, reducing reliance on manual, point-in-time audit processes.
  • Solid understanding of core security principles, including identity and access management (IAM), data encryption, vulnerability management, and security incident response, and how these map to compliance controls.
  • Experience working with cloud infrastructure (IBM Cloud), containerization (e.g., Docker, Kubernetes), and cloud-based identity management systems in the context of compliance monitoring.
  • Experience working in DevSecOps or secure software development lifecycle (SDLC) environments, partnering with engineering teams to integrate compliance checks into CI/CD pipelines and everyday development practices.
  • Collaboration and Communication Skills: the ability to work effectively with cross-functional teams, including product development, operations, and the CISO team, is essential. Strong communication skills are required to articulate compliance requirements, risks, and remediation plans to both technical and non-technical stakeholders.
  • Understanding of networking concepts and security best practices.
  • Ability to independently manage compliance initiatives and coordinate activities across multiple stakeholders.
  • Experience supporting FedRAMP, including familiarity with NIST SP 800-53 controls, system security plans (SSPs), continuous monitoring, and authorization processes.
  • Experience or familiarity with the security and compliance needs of quantum computing environments, especially given the sensitivity and complexity of quantum software and infrastructure.
  • Expertise in using security and compliance tooling, particularly governance, risk, and compliance (GRC) automation platforms.
  • Understanding of additional regulatory frameworks such as GDPR, HIPAA, and other industry-specific regulations, and the ability to navigate multi-framework compliance audits.
  • Experience developing automation solutions using scripting or programming languages such as Python, Bash, or similar technologies.
  • Experience working in highly regulated, research-focused, or advanced technology environments.
  • Familiarity with cloud security and compliance practices within IBM Cloud, AWS, Azure, or other enterprise cloud platforms.
  • Experience implementing compliance controls within CI/CD pipelines and Infrastructure-as-Code (IaC) environments.
From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against IBM's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on IBM's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    IBM's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.