Engineering Manager I, Commercial Audit
Datadog
- Location
- New York, New York, USA
- Work model
- On-Site
- Level
- Mid
- Salary
- $192k/yr
- H-1B history
- 14 approvals (FY2023)
- Posted
- 2h ago
Skills
About this role
As the Engineering Manager for Commercial Audit, you will lead a high-performing team responsible for scaling Datadog’s security and compliance posture through automation, tooling, and engineering excellence. Our GRC (Governance, Risk, and Compliance) function is a critical partner to the broader Security and Engineering organizations, ensuring that Datadog not only meets rigorous global regulatory standards but does so in a way that is efficient, scalable, and integrated into our cloud-native infrastructure. You will manage a team of engineers and analysts who are transitioning to a GRC engineering direction to treat compliance as a software problem, leveraging AI, custom tooling, CI/CD pipelines, and cloud-native services to turn complex regulatory requirements into actionable, automated controls.
You will lead the strategy, roadmap, and execution of Datadog’s Commercial Audit initiatives. This is a high-impact leadership role where you will grow a team of engineers and analysts responsible for directly maintaining our compliance programs and related audits (e.g., SOC2, PCI, HIPAA, ISO) while looking to improve efficiency and effectiveness through platforms and tooling. You will act as a bridge between technical engineering, legal, and compliance, enabling the organization to move fast while maintaining a secure and compliant environment. You will champion a culture of "compliance-as-code," identifying opportunities to automate evidence collection, streamline control testing, and reduce manual toil for both your team and our partner engineering teams.
At Datadog, we place value in our office culture - the relationships and collaboration it builds, and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them.
What You'll Do
• Lead the strategy, roadmap, and execution of Datadog’s commercial security compliance efforts, shifting from manual audit processes to automated, scalable platforms and methodologies.
• Build, mentor, and grow a high-performing team of engineers and analysts, fostering a culture of technical excellence, continuous learning, and cross-functional collaboration.
• Partner within Information Security to operationalize a common control framework that integrates seamlessly into Datadog’s architecture and processes.
• Drive the development of internal tooling to automate evidence collection and dashboarding, reducing operational friction across the organization.
• Define and track program metrics: control coverage, audit efficiency, and automation adoption
• Collaborate with broader internal engineering teams to embed compliance-by-design into our infrastructure, CI/CD pipelines, and cloud-native service adoption.
Who You Are
• You build strong, trusted relationships across engineering, legal, product, and executive stakeholders. You remain calm under pressure, navigate disagreement with diplomacy, and consistently bring people to alignment without creating unnecessary friction.
• You are a steady, low-ego leader who earns trust through consistency, diplomacy, and sound judgment. You can navigate difficult conversations, resolve conflict constructively, and maintain strong working relationships across diverse teams.
• You have experience leading or managing teams in security engineering, GRC, or risk management with a focus on leveraging AI to build automation and tooling for transitioning to a GRC engineering approach.
• Strong technical background with the ability to review code (Python, Go), interpret architecture diagrams, and understand infrastructure (Kubernetes, AWS/GCP/Azure).
• Deep understanding of the modern compliance landscape (e.g., HIPAA, SOC2, PCI, ISO 27001, FedRAMP) and experience implementing them at scale in cloud-native