Skip to content

Open nowFirst seen 56 minutes ago

Regulatory Intelligence & Implementation Specialist - Global Security Organization - Security Solutions & Delivery

TikTok4,268 open roles

Where
San Jose, California, United States of America
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowRegulatory Intelligence & Implementation Specialist - Global Security Organization - Security Solutions & DeliveryTikTok · San Jose, California, United States of America
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on TikTok's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.2% of postings close within 7 days. Measured by our own scanner across the market. TikTok postings stay open a median of 7 days.

Share of postings closed within
  1. 1.8%1 day
  2. 3.8%3 days
  3. 8.2%7 days
  4. 15.2%14 days
  5. 34.2%30 days
This job: first seen 56 minutes ago

TikTok median: 7 days open

The posting

The Security Solutions and Delivery (SSD) team turns security requirements into practical, auditable outcomes that help the business move faster and reduce risk.

We support revenue through Customer Assurance, sustain critical third-party integrations through Partner Compliance, translate evolving regulatory requirements into action through Regulatory Intelligence, and drive systemic fixes to security risks through Security Remediation. Our Organizational Excellence pillar supports the wider Global Security Organization with the finance, coordination, and operational foundations it needs to run effectively.

You will work where security meets the commercial side of the business, on outcomes that show up quickly: faster deals, stronger partner continuity, and greater trust with customers and partners.

The mission of TikTok's Global Security Organization is to build and earn trust by reducing risk and securing our businesses and products. Also known as "GSO", this team is the foundation of our efforts to keep TikTok safe, secure, and operating at scale for over 1 billion people around the world. We work to ensure that the TikTok platform is safe and secure, that our users' experience and their data remains safe from external or internal threats, and that we comply with global regulations wherever TikTok operates.

Trust is one of TikTok's biggest initiatives, and security is integral to our success. In whatever ways users interact with us — whether they're watching videos on their For You page, interacting with a Live video, or buying products on TikTok Shop — GSO protects their data and privacy, so they can have a secure and trustworthy experience.

The GSO provides industry-leading security and privacy services to company, guided by four principles: trust and transparency, business enablement, risk-informed decision-making, and proactive risk reduction. We strive to build sustainable, world-class security capabilities.

We are seeking a Regulatory Intelligence & Implementation Senior Specialist to drive the translation of complex US, EU, and global regulatory requirements into operational security controls. You will inherit and expand upon an established program portfolio that includes USDS joint venture compliance, data sovereignty, and cross-functional security initiatives. This role sits at the intersection of regulatory compliance, security operations, and strategic program management. You will be the person who ensures that when new regulations emerge our security organization is not only aware but has a clear, operational plan to comply.

Responsibilities - Track and analyze emerging US, EU, and global regulatory developments (GDPR, US requirements, data sovereignty) to anticipate security obligations before they land - Translate legal and regulatory requirements into concrete security control implications for the global security organization - Build and maintain a regulatory roadmap that maps compliance deadlines to security implementation efforts - Leverage industry frameworks (ISO, NIST, SOC 2) to bridge regulatory requirements and internal controls - Lead gap assessments comparing current controls against new and evolving regulatory requirements and requests - Partner with European Privacy teams to operationalize GDPR, and other EU requirements across security processes - Serve as the primary Global Security liaison to USDS ,own the relationship and ensure alignment on joint venture compliance obligations - Ensure USDS-negotiated security commitments are reflected in internal controls, processes, and documentation - Build scalable security processes that adapt to multiple regulatory frameworks without bespoke solutions for every new request - Maintain a notification decision tree and escalation paths, know who needs to be notified, when, what evidence is required, and when service timelines slip - Maintain a formal legal review checkpoint for regulatory interpretations before security teams act on them - Establish regulatory compliance metrics that give regular, measurable visibility into posture and progress - Maintain a regular reporting cadence to leadership and relevant committees through dashboards and reports - Develop playbooks and SOPs that enable the broader security team to implement regulatory requirements consistently

Minimum Qualifications: - Demonstrated expertise in translating regulatory requirements into operational security controls — not just compliance reporting, but actual implementation - Strong working knowledge of US and EU regulatory frameworks relevant to technology companies: GDPR, DSA, OSA, CCPA, and data sovereignty requirements - Experience working with or interfacing to government oversight entities, auditors, or regulatory bodies - Proven track record of cross-functional program management, driving initiatives that span Legal, Privacy, Engineering, and Product teams - Experience establishing metrics, reporting cadences, and strategic visibility mechanisms for compliance programs - Excellent ability to brief senior leadership on regulatory matters

Preferred Qualifications - Bachelor's degree in Law, Public Policy, Information Security, Computer Science, or related field, or equivalent practical experience - 5+ years of experience in regulatory compliance, security governance, or privacy programs — preferably in a technology company operating under complex regulatory oversight - Direct experience with US or similar government-negotiated data security arrangements - Experience managing large-scale compliance training programs (1,000+ learners) - Familiarity with IAM governance programs, including User Access Reviews and access management strategy - Industry certifications such as CIPP/E, CIPM, CISSP, or CISA (e.g., company-wide offsites, training drives)

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against TikTok's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on TikTok's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    TikTok's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Nearby

Live postings like this one

Same employer first, then the same role elsewhere.

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.