1

Security Compliance Engineer Jobs (NOW HIRING)

next page

Showing results 1-20

Security Compliance Engineer information

See salary details

$90K

$117.7K

$164K

How much do security compliance engineer jobs pay per year?

As of Jul 20, 2026, the average yearly pay for security compliance engineer in the United States is $117,706.00, according to ZipRecruiter salary data. Most workers in this role earn between $106,000.00 and $121,000.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as a Security Compliance Engineer, and why are they important?

To thrive as a Security Compliance Engineer, you need in-depth knowledge of information security frameworks (such as ISO 27001, NIST, SOC 2), risk assessment methodologies, and a relevant bachelor’s degree or certification (e.g., CISSP, CISA). Familiarity with GRC (Governance, Risk, and Compliance) tools, vulnerability management systems, and audit management platforms is typically required. Strong analytical thinking, attention to detail, and effective communication skills help in interpreting regulations and collaborating with cross-functional teams. These skills ensure organizations remain compliant with industry regulations, minimize security risks, and maintain customer trust.

What engineer makes $500,000 a year?

A Security Compliance Engineer with extensive experience, advanced certifications, and leadership responsibilities can earn $500,000 or more annually, especially in high-demand industries or senior executive roles. Such compensation often includes base salary, bonuses, and stock options, typically found in large organizations or specialized consulting firms.

What are some common challenges Security Compliance Engineers face when working with cross-functional teams?

Security Compliance Engineers often collaborate with IT, development, and business teams to ensure that security policies and compliance requirements are integrated into daily operations. A common challenge is bridging the gap between technical security standards and practical business processes, as different teams may have varying priorities and levels of understanding regarding compliance. Effectively communicating complex regulations, coordinating audits, and advocating for necessary changes without disrupting workflow are essential skills for success. Building strong relationships and fostering a culture of security awareness can help overcome these challenges.

What is the difference between Security Compliance Engineer vs Security Analyst?

AspectSecurity Compliance EngineerSecurity Analyst
CertificationsISO 27001, CISSP, CISACompTIA Security+, GIAC Security Essentials
Work EnvironmentFocus on compliance policies, audits, and regulatory standardsMonitor security systems, analyze threats, respond to incidents
Employer & Industry UsageUsed in organizations with strict regulatory requirements, such as finance and healthcareCommon across various industries for threat detection and incident response

While both roles involve security, Security Compliance Engineers primarily focus on ensuring organizations meet regulatory standards and maintain compliance. Security Analysts concentrate on monitoring security threats, analyzing vulnerabilities, and responding to incidents. Understanding these differences helps in choosing the right career path or job focus within cybersecurity.

What are Security Compliance Engineers?

Security Compliance Engineers are professionals who ensure that an organization’s information systems and processes comply with relevant laws, regulations, and internal policies. They assess security controls, identify risks, and implement measures to meet compliance standards such as GDPR, HIPAA, or ISO 27001. Their role often involves conducting audits, preparing documentation, and working with IT and security teams to mitigate vulnerabilities and maintain regulatory compliance.

Can you make $500,000 a year in cyber security?

Security Compliance Engineers with extensive experience, advanced certifications, and specialized skills in compliance frameworks can potentially earn salaries approaching or exceeding $500,000 annually, especially in senior or leadership roles within large organizations or consulting firms. However, such high earnings are uncommon and typically require a combination of expertise, strategic position, and sometimes geographic location or industry sector.

What engineers make $200,000 a year?

Senior security compliance engineers, cybersecurity engineers, and security architects often earn $200,000 or more annually, especially with extensive experience, specialized certifications like CISSP or CISA, and in high-demand industries. These roles typically require strong knowledge of security standards, risk management, and compliance frameworks, along with advanced technical skills and leadership responsibilities.

What does a security compliance engineer do?

A security compliance engineer is responsible for ensuring that an organization's security policies and practices meet industry standards and regulatory requirements. They develop, implement, and monitor security controls, conduct audits, and prepare documentation to demonstrate compliance, often working with tools like risk assessment frameworks and security standards such as ISO 27001 or NIST. Strong knowledge of cybersecurity principles and certifications like CISSP or CISA are common in this role.
More about Security Compliance Engineer jobs
Who are the top companies hiring for Security Compliance Engineer jobs? The top employers for Security Compliance Engineer jobs are:
What states have the most Security Compliance Engineer jobs? States with the most job openings for Security Compliance Engineer jobs include:
What job categories do people searching Security Compliance Engineer jobs look for? The top searched job categories for Security Compliance Engineer jobs are:
Infographic showing various Security Compliance Engineer job openings in the United States as of July 2026, with employment types broken down into 83% Full Time, and 17% Contract. Highlights an 83% In-person, and 17% Remote job distribution, with an average salary of $117,706 per year, or $56.6 per hour.
Security & Compliance Engineer, AWS Security Assurance Services, LLC

Security & Compliance Engineer, AWS Security Assurance Services, LLC

Amazon

Austin, TX

Full-time

Re-posted 5 days ago


Amazon rating

7.4

Company rating: 7.4 out of 10

Based on 6,974 frontline employees who took The Breakroom Quiz

6th of 39 rated national retailers


Job description

AWS Security Assurance Services (SAS) is hiring a Security & Compliance Engineer to design, build, and deploy AWS security and compliance solutions for highly regulated customers. You will own engineering deliverables across the full lifecycle - secure design, implementation, testing, deployment, and maintenance - translating compliance frameworks (SOC2, HIPAA, PCI-DSS, CIS, NIST, FedRAMP) into secure-by-design AWS implementations. You will work autonomously within your team, deliver cross-functional projects with partner teams, and drive measurable risk reduction for customers at scale.
You'll write code, ship custom controls, run security investigations, lead design and code reviews on your team, and mentor junior engineers

You will identify systemic issues, propose pragmatic solutions, and improve the team's mechanisms over time.
Key job responsibilities
- Lead threat modeling, security design reviews, and architecture reviews for customer engagements; identify and mitigate risks across systems and applications.
- Design and implement custom preventive, detective, and proactive controls - Service Control Policies (SCPs), Resource Control Policies (RCPs), policy-as-code (cfn-guard, OPA Rego, Cedar), and automated remediation workflows.
- Build secure-by-design Infrastructure-as-Code controls for Landing Zones, AWS Control Tower customizations, Zero-Trust architectures, and AI/ML workloads.
- Apply AWS security best practices for authentication and authorization, data handling, least privilege, encryption, micro-segmentation, tagging strategy, and API/MCP integration.
- Write and review IaC, scripts, enforcements and detections in Python, Terraform, AWS CDK, CloudFormation, and Rego.
- Build continuous compliance monitoring, automated evidence collection, visualization, reporting, and remediation pipelines that hold up in audit.
- Integrate custom controls with AWS-native and third-party security and compliance tooling.
- Drive emerging-edge ideas into prototyping end-to-end to inform new security and compliance solutions and products.
- Identify risks and edge cases; propose implementation paths and go/no-go gates.
- Apply systematic approaches to risk identification; propose compensating controls when direct remediation isn't possible.
- Help develop technical content
- Identify cross-team patterns, gaps, improvements.
- Travel to customer sites as needed.
About the team
The AWS Security Assurance Services team, within AWS Support, leverages the expertise and ingenuity of our builders to establish scalable security solutions for both internal and external customers that drive business outcomes. Our goal of securing the world's workloads requires reliable delivery of bar-raising security outcomes and investment in security mechanisms and automation on behalf of our customers.
AWS Security Assurance Services LLC, a PCI-QSAC and HITRUST External Assessor Firm, is a team of industry-certified assessors and Compliance Engineers with DevOps and Cloud Infrastructure Architect backgrounds, helping our customers achieve, maintain, and automate compliance in the cloud by tying applicable audit standards to AWS service-specific features and functionality. The SAS team works with our largest enterprise customers to operationalize the shared responsibility model as they migrate to the cloud.


What Amazon employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Amazon logo

About Amazon

Sourced by ZipRecruiter

Amazon.com, Inc., commonly known as Amazon, is an American multinational technology company. It was founded by Jeff Bezos in 1994 and initially started as an online marketplace for books. Since then, Amazon has expanded its operations and become one of the largest e-commerce companies in the world. Amazon's primary business is its online retail platform, where customers can purchase a vast array of products, including electronics, clothing, books, home goods, and much more. The company offers a convenient and user-friendly shopping experience, with features such as fast shipping, customer reviews, and personalized recommendations. In addition to its e-commerce platform, Amazon has diversified its business into various other areas. One of its notable ventures is Amazon Web Services (AWS), a comprehensive cloud computing platform that provides services such as storage, compute power, and database management to individuals and businesses. AWS has become a leader in the cloud computing industry, powering many websites and applications worldwide. Amazon has also developed its own consumer electronics, including the popular Amazon Kindle e-reader, Fire tablets, Fire TV streaming devices, and the Alexa-powered Echo smart speakers. The Alexa voice assistant, integrated into these devices, allows users to interact with their devices using voice commands, perform tasks, and access information. Furthermore, Amazon has expanded into media and entertainment. It operates Prime Video, a streaming service that offers a wide range of movies, TV shows, and original content. Amazon Music provides a platform for streaming and purchasing digital music, while Audible offers audiobooks and other audio content. The company's commitment to customer satisfaction and convenience is demonstrated by its membership program, Amazon Prime. Prime members receive various benefits, including free two-day shipping, access to streaming services, exclusive deals, and more.

Industry

It services, book publishers, retail, real estate and computer and electronic product manufacturing

Company size

10,000+ Employees

Headquarters location

Seattle, WA, US