Tech Stack
Tag name is followed by "@" symbol and proficiency level value.
About proficiency levels:
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
AWS @ 7
Audit @ 4
Azure @ 7
ClickHouse
Communication @ 7
Compliance @ 6
GCP @ 7
GDPR @ 3
Product Management @ 7
Security @ 7
- 1-2 — basic awareness. Minimal hands-on experience, and a rudimentary understanding of the technology's purpose;
- 3-6 — daily use. Comfortable and regular usage, capable of handling common tasks and challenges related to the technology;
- 7-9 — you are an expert, you can teach others, you know all the pitfalls and tricks;
- 10 — exceptional knowledge, comprehensive understanding, and adeptness in all aspects of the technology, including advanced problem-solving. Think twice before claiming or demanding such level.
Details
This role sits at the intersection of product management, security engineering, compliance, legal, and cloud infrastructure. You will own the information security strategy for regulated cloud offerings, certifications, sovereign cloud deployments, and specialized regional offerings that enable customers to operate ClickHouse in highly restricted environments.
Responsibilities
- Define and execute the multi-year roadmap for achieving ClickHouse for Government certifications, including FEDRAMP, DOD-IL, StateRAMP, and CJIS.
- Partner with Security, Engineering, Compliance, Legal, GTM, and Operations teams to ensure ClickHouse Cloud meets requirements for SOC 2, ISO 27001/27701, HIPAA, PCI DSS, FIPS, Common Criteria / Protection Profile, NIST SP 800-171, CMMC, Section 508/VPAT, and DISA STIG.
- Translate complex regulatory and security requirements into scalable product capabilities across identity and access management (IAM), encryption, key management, audit logging, access controls, and operational security.
- Drive product requirements for FIPS-compliant cryptographic modules and government-specific deployment and licensing models.
- Establish a long-term strategy for enterprise security capabilities supporting regulated industries worldwide.
- Own the product strategy and roadmap for sovereign cloud offerings, including the European Sovereign Cloud (ESC), Kingdom of Saudi Arabia (KSA), and future sovereign cloud regions.
- Own and deliver long-term Five-Eyes Sovereign Cloud Deployments.
- Define product capabilities addressing data residency, personnel access controls, customer-managed encryption, and operational sovereignty requirements.
- Work with cloud providers and strategic partners to enable deployments in restricted and regulated environments, including offerings such as Assured Workloads and sovereign cloud frameworks.
- Partner with legal, compliance, and regional stakeholders to navigate evolving global regulations and regional market requirements.
Requirements
- 8+ years of product management experience, including significant experience building cloud infrastructure, platform, security, or enterprise SaaS products.
- Deep understanding of FedRAMP certification requirements and the challenges of operating compliant multi-tenant cloud services.
- Strong technical understanding of modern cloud architectures across AWS, Azure, and GCP.
- Experience with IAM, network isolation, private connectivity, encryption, key management systems (KMS/BYOK), audit logging, and access controls.
- Familiarity with global data residency and sovereignty requirements, including GDPR and emerging regional regulatory frameworks.
- Demonstrated success leading complex cross-functional initiatives involving engineering, security, compliance, legal, and GTM teams.
- Strong written and verbal communication skills, with the ability to influence technical and executive audiences.
Preferred Qualifications
- Experience with US Government Security and Risk Frameworks, including FEDRAMP, DOD IL, and RMF.
- Experience with sovereign clouds, government cloud regions, and regulated industry offerings.
- Background in databases, data platforms, analytics, or infrastructure software.
- Experience commercializing open-source technologies for enterprise and government customers.
- Familiarity with FIPS 140-2/140-3 validation requirements and government procurement processes.
Bonus Qualifications
- Experience working directly with federal, defense, intelligence, or public-sector customers.
- Existing security clearance or ability to obtain one.
Compensation
- Typical starting salary in the United States: $180,000–$265,000 USD per year.
- Typical starting salary in US premium markets: $210,000–$300,000 USD per year.
- Premium market ranges may apply in locations such as the San Francisco Bay Area and the New York City Metro Area.
- Actual compensation depends on factors including education, qualifications, certifications, experience, skills, location, performance, and business needs.
Benefits
- Flexible work environment at a globally distributed, remote-friendly company operating in over 20 countries.
- Employer contributions toward healthcare.
- Stock options for every new team member.
- Flexible time off in the US and generous entitlement in other countries.
- $500 home office setup for remote employees.
- Opportunities to engage with colleagues at company-wide offsites.
Equal Opportunity
ClickHouse provides equal employment opportunities to all employees and applicants and prohibits discrimination and harassment based on protected characteristics under applicable federal, state, and local laws.
More jobs at ClickHouse
Director of Product Management, Security
ClickHouse · United States
USD 230,000-310,000 per year
Finance Systems & Transformation Manager
ClickHouse · United States
USD 180,000-240,000 per year
Director of Product, ClickHouse Cloud
ClickHouse · United States
USD 180,000-290,000 per year
Product Security Engineer
ClickHouse · United States
USD 169,200-225,000 per year
Certification Manager
ClickHouse · United States
USD 169,000-191,000 per year
Similar jobs
Sr. Security Engineer - GRC Fintech & Financial Services
SpaceXAI · Washington, United States, New York City, United States, Palo Alto, United States
USD 152,000-258,000 per year
Senior Security Engineer - GRC Frameworks & AI Governance
SpaceXAI · Washington, United States, New York City, United States, Palo Alto, United States
USD 152,000-258,000 per year
Senior Software Engineer - Cloud Infrastructure
ClickHouse · United States
USD 141,000-230,000 per year
Applied AI Security Architect
Anthropic · London, United Kingdom
GBP 190,000-230,000 per year
Senior Cloud Engineer
ClickHouse · United States
USD 141,000-230,000 per year
Incident Response Security Engineer
ClickHouse · United States
USD 169,200-225,000 per year
Infrastructure Security Engineer
SpaceXAI · Palo Alto, United States, Washington, United States, Austin, United States, New York City, United States
USD 100,000-258,000 per year
Engineering Manager, GRC Platform
Anthropic · San Francisco, United States, New York City, United States, Seattle, United States
USD 320,000-405,000 per year