Nokia Logo

Nokia

Technical Compliance Specialist

Posted 21 Days Ago
In-Office or Remote
Hiring Remotely in United States
Entry level
In-Office or Remote
Hiring Remotely in United States
Entry level
Provides technical cybersecurity compliance and risk assessment support for product vulnerabilities, CVEs, security incidents, and remediation activities. Evaluates customer and regulatory impact, supports National Security Agreement reviews, assists with government notifications and audits, and maintains technical compliance documentation. Acts as a liaison between Product Security, Engineering, Vulnerability Management, and the National Security Office while translating complex technical information into actionable business and regulatory assessments.
The summary above was generated by AI

The Technical Compliance Specialist serves as a member of Nokia's National Security Office (NSO) and provides technical analysis, compliance support, and regulatory assessment capabilities related to product security vulnerabilities, cybersecurity incidents, and technical risk matters affecting Nokia's U.S. operations.

Working closely with Product Security, Engineering, Vulnerability Management, and the National Security Office, the role assists in evaluating security vulnerabilities, understanding potential customer impacts, assessing remediation activities, and supporting the NSA Security Officer in determining whether security-related matters warrant further compliance review or potential notification to U.S. Government stakeholders.

The role acts as a bridge between technical organizations and regulatory compliance functions by transforming complex technical information into actionable compliance and business risk assessments.

Responsibilities

Product Security Analysis

  • Review significant product security vulnerabilities, CVEs, security advisories, and cybersecurity incidents affecting Nokia products and services.
  • Analyze vulnerability severity, exploitability, affected products, remediation plans, and potential customer impact.
  • Evaluate technical risks associated with vulnerabilities affecting U.S. telecommunications customers and critical infrastructure.
  • Monitor emerging cybersecurity threats and vulnerability trends relevant to Nokia products.

Regulatory Impact Assessments

  • Assist the NSA Security Officer in evaluating the regulatory significance of product security vulnerabilities and cybersecurity incidents.
  • Assess potential implications to Nokia's obligations under the U.S. National Security Agreement.
  • Support reviews to determine whether incidents or vulnerabilities may warrant escalation, regulatory review, or government notification.
  • Develop risk-based assessments supporting regulatory decision-making.

Product Security Liaison Activities

  • Work closely with Product Security personnel to understand vulnerability investigations, security findings, and remediation activities.
  • Facilitate information exchange between Product Security organizations and NSO leadership.
  • Support vulnerability governance reviews and related compliance activities.
  • Assist with tracking significant remediation activities and corrective actions.

Technical Compliance Documentation

  • Support maintenance of the NSA Technical Compliance Manual and associated technical compliance procedures.
  • Prepare technical summaries, security assessments, compliance analyses, and executive briefing materials.
  • Maintain records supporting vulnerability reviews and regulatory assessments.
  • Assist with development of technical compliance guidance and reference materials.

Audit & Compliance Support

  • Support third-party audit activities involving product security, vulnerability management, and technical compliance requirements.
  • Assist in gathering technical evidence and documentation required for audits and regulatory reviews.
  • Support responses to government inquiries involving product security matters.
  • Contribute to the continuous improvement of technical compliance and governance processes.
Qualifications

Knowledge & Experience

  • Understanding of product security, cybersecurity, vulnerability management, and security risk assessment concepts.
  • Ability to evaluate technical security information and communicate business and regulatory implications.
  • Experience working with Product Security, Engineering, Information Security, Vulnerability Management, or related technical functions.
  • Familiarity with compliance, audit, governance, or regulatory oversight activities.
  • Strong analytical, organizational, writing, and communication skills.
  • Experience within telecommunications, software development, cybersecurity, or highly regulated environments preferred.

Similar Jobs

5 Days Ago
Remote
United States
Senior level
Senior level
Other
Owns technical execution of government compliance programs, including FedRAMP Moderate, FedRAMP 20x, TX-RAMP, IRAP, and GovRAMP. Responsibilities include continuous monitoring, SSP and SDR documentation, POA&M and remediation tracking, KSI interpretation, evidence automation, assessor coordination, compliance roadmap development, and cross-functional collaboration with engineering, security, cloud operations, legal, and agency stakeholders.
Top Skills: Cloud Compliance AutomationFedrampFedramp 20XGovrampGrc ToolingIrapNist Sp 800-53Tx-Ramp
4 Minutes Ago
Remote or Hybrid
45K-85K Annually
Junior
45K-85K Annually
Junior
Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Handles inbound calls and warm leads, consults customers on insurance needs, recommends appropriate Property and Casualty coverage, and converts prospects into policyholders. The role includes paid training and licensing, customer service, sales closing, and brand representation. Employees work remotely on assigned evening and weekend schedules, using company-provided equipment and a wired high-speed internet connection.
Top Skills: Cable InternetDsl InternetFiber InternetPc
4 Minutes Ago
Remote or Hybrid
45K-100K Annually
Junior
45K-100K Annually
Junior
Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Handles inbound calls and warm leads, consults customers on insurance needs, recommends appropriate Property & Casualty products and coverage, and converts prospects into policyholders. The role includes paid licensing and training, customer communication, sales closing, and maintaining a remote work setup with reliable wired high-speed internet. Employees must work four weekdays and one weekend day on designated shifts and remain in their resident state for at least one year.
Top Skills: Cable/Fiber/Dsl High-Speed InternetPc

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account