Full-Time

VCF Compliance Engineer

Confirmed live in the last 24 hours

Broadcom Limited

Broadcom Limited

10,001+ employees

Designs and supplies semiconductor and software solutions

Compensation Overview

$141k - $225k/yr

+ Bonus + Equity

Expert

Vandenberg AFB, CA, USA

Category
Cybersecurity
IT & Security
Required Skills
Microsoft Azure
AWS
Risk Management
Google Cloud Platform
Requirements
  • Bachelors and 12+ years of related experience, or a Masters degree and 10+ years of related experience
  • Strong knowledge of compliance frameworks: ISO 27001, NIST 800-53, SOC 2, PCI DSS, etc.
  • Familiarity with information security fundamentals, including risk management, access control, encryption, and secure software development lifecycle (SDLC)
  • Experience with control design, implementation, and gap analysis
  • Understanding of cloud security controls and standards (AWS, Azure, GCP)
  • Strong analytical and problem-solving skills with attention to detail
  • Excellent communication and stakeholder management skills.
Responsibilities
  • Interpret and map technical security controls to industry-recognized compliance frameworks (ISO 27001, SOC 2, NIST 800-53, PCI DSS, DORA etc.)
  • Collaborate with engineering, DevOps, and security teams to ensure implementation of security controls aligns with compliance requirements
  • Support audit readiness and coordinate internal and external security assessments and compliance audits
  • Develop and maintain security policies, standards, and procedures in alignment with best practices and regulatory requirements
  • Monitor and assess regulatory changes, translating them into actionable tasks and updated compliance objectives
  • Evaluate and integrate automated compliance tools (e.g., GRC platforms, CSPM solutions) to streamline evidence collection and control monitoring
  • Support risk assessments, vendor risk management, and third-party due diligence processes
  • Educate and promote security and compliance awareness across the organization
  • Generate compliance documentation and reports for leadership, customer collateral, and auditors.
Desired Qualifications
  • Security or compliance certifications: CISSP, CISM, CCSP, ISO 27001 Lead Implementer/Auditor, CRISC, CISA, etc.
  • Experience supporting SOC 2 Type 2, ISO 27001 certification, or PCI DSS initiatives
  • Hands-on experience conducting risk assessments and managing corrective action plans
  • Familiarity with privacy regulations such as GDPR and CCPA
  • Understanding of DevOps security and CI/CD pipeline integrations for compliance.

Broadcom Limited designs and develops semiconductor and infrastructure software solutions for a wide range of clients, including enterprises, data centers, and telecommunications providers. Their products focus on enhancing data processing and connectivity, which are essential for applications in networking, broadband, wireless communications, and data storage. A key offering is the DX Unified Infrastructure Management solution, which helps manage various infrastructure environments, including traditional, public cloud, and hybrid setups, ensuring they perform reliably. Broadcom stands out from competitors by providing a comprehensive suite of high-performance products tailored for efficient data management and connectivity. The company's goal is to enable optimal performance and reliability in technology and infrastructure markets.

Company Size

10,001+

Company Stage

IPO

Headquarters

San Jose, California

Founded

2005

Simplify Jobs

Simplify's Take

What believers are saying

  • Collaboration with Apple on AI server chips enhances Broadcom's semiconductor portfolio.
  • Brocade G710 SAN switch strengthens Broadcom's position in data storage and networking markets.
  • Incident Prediction capability attracts enterprise clients with proactive cybersecurity measures.

What critics are saying

  • VMware acquisition poses data integration challenges with 1,800 applications and 187,000 SKUs.
  • Dependency on Apple for AI server chips may affect market position if partnership falters.
  • 3.5D F2F technology requires significant R&D investment, risking financial strain if adoption lags.

What makes Broadcom Limited unique

  • Broadcom's Incident Prediction uses AI to predict and disrupt cyberattacks effectively.
  • The 3.5D F2F technology offers high-efficiency, low-power computing for AI applications.
  • Broadcom's data simplification strategy integrates disparate data sources without added complexity.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

401(k) Retirement Plan

401(k) Company Match

Employee Stock Purchase Plan

Employee Assistance Program

Paid Vacation

Paid Sick Leave

Paid Holidays

Company News

GlobeNewswire
Apr 15th, 2025
Broadcom Introduces Industry'S First Incident Prediction Capability To Stop Living-Off-The-Land Attacks

PALO ALTO, Calif., April 15, 2025 (GLOBE NEWSWIRE) -- Broadcom Inc. (NASDAQ:AVGO) today announced Incident Prediction, an industry-first security capability that extends Adaptive Protection , a unique feature of Symantec Endpoint Security Complete (SES-C) , by leveraging AI to identify and disrupt living-off-the land (LOTL) attacks and other cyberthreats.Trained on a catalog of over 500,000 real-world attack chains built by the world-class Symantec Threat Hunter Team, Incident Prediction puts the advantage back in defenders’ hands by: predicting attackers’ behaviors, preventing their next move in the attack chain even when they’re using legitimate software, and then quickly returning the enterprise to its normal state. With Incident Prediction, SES-C delivers exceptional cyber resilience against motivated adversaries.“The inspiration for Incident Prediction came from how GenAI can ‘predict’ the next word when generating text,” said Eric Chien, Fellow, Symantec Threat Hunter Team, Broadcom. “By leveraging our extensive attack chain repository and threat intelligence using advanced AI and ML, Incident Prediction can predict the next four or five possible moves attackers will make in a customer’s environment, disrupt them, and then revert to normalcy right away. As a result, security analysts no longer need to triage the event to figure out mitigation strategies; Incident Prediction does that automatically for them.”With Incident Prediction, SOC analysts and other security professionals can:Automate mitigation and disrupt attackers : Automatically identify the next steps that a specific attacker will most likely take based on past attack patterns. It then applies mitigation policies to block those predicted actions, disrupting most attacker’s progress before they can reach their end goal of encrypting data or exfiltrating information.: Automatically identify the next steps that a specific attacker will most likely take based on past attack patterns

VentureBeat
Mar 10th, 2025
Inside Broadcom’S Data Simplification Strategy That Enables 26 Business Units To Use The Same Data Analytics Platform

Join our daily and weekly newsletters for the latest updates and exclusive content on industry-leading AI coverage. Learn MoreManaging lots of different business units with all manner of applications is generally not an easy data management task. Making sense of all that information with data analytics can be even more challenging.As Broadcom has grown through the acquisition of numerous software and hardware companies, the company has grappled with the challenge of integrating disparate data sources and systems.Particularly, When the tech giant closed its $61 billion acquisition of VMware in late 2023, it faced a monumental data integration challenge. VMware operated with 1,800 disparate applications and a staggering 187,000 product SKUs. For most acquiring companies, the playbook would be familiar — implement master data management systems, build elaborate data lakes and create complex integrations to bridge the systems while gradually migrating them over several years.Broadcom took a dramatically different approach. Instead of adding layers of complexity to manage existing systems, it wiped the slate clean

PR Newswire
Mar 6th, 2025
Broadcom Inc. Announces First Quarter Fiscal Year 2025 Financial Results And Quarterly Dividend

Revenue of $14,916 million for the first quarter, up 25 percent from the prior year period. GAAP net income of $5,503 million for the first quarter; Non-GAAP net income of $7,823 million for the first quarter. Adjusted EBITDA of $10,083 million for the first quarter, or 68 percent of revenue

GlobeNewswire
Jan 15th, 2025
Broadcom Launches The Industry'S Lowest Latency And Highest Efficiency San Switch For Rack-Based Infrastructure

PALO ALTO, Calif., Jan. 15, 2025 (GLOBE NEWSWIRE) -- Broadcom Inc. (NASDAQ:AVGO), today announced the availability of the Brocade G710 24-port 64G switch, the industry’s most responsive and efficient top-of-rack SAN switch. Brocade Gen 7 Fibre Channel combines cyber-resilient and autonomous SAN technology into this cost-effective platform that seamlessly integrates into rack-based storage solutions. The Brocade G710 switch extends the industry’s most complete and extensive 64G SAN portfolio that includes fixed port switches, modular directors, extension switches and management software. It reflects Broadcom’s commitment, innovation and leadership in Fibre Channel technology

PR Newswire
Dec 12th, 2024
Broadcom Inc. Announces Fourth Quarter And Fiscal Year 2024 Financial Results And Quarterly Dividend

Revenue of $14,054 million for the fourth quarter, up 51 percent from the prior year period. GAAP net income of $4,324 million for the fourth quarter; Non-GAAP net income of $6,965 million for the fourth quarter. Adjusted EBITDA of $9,089 million for the fourth quarter, or 65 percent of revenue