This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
As the API Standards & Compliance Lead, you will define, implement, and enforce enterprise-wide API governance frameworks that ensure consistency, security, and scalability across all APIs. This strategic role focuses on establishing API design standards, lifecycle governance, and compliance policies aligned with industry best practices and regulatory requirements. You will partner closely with Enterprise Architecture, Security, Platform Engineering, and Developer Experience teams to advance an API-first strategy and enable seamless integration across the enterprise.
Job Responsibility:
Define and maintain enterprise-wide API design and governance policies aligned with architecture principles and industry standards (OpenAPI, REST, GraphQL)
Use Apigee Analytics and GCP monitoring to identify gaps and refine standards based on data insights and evolving business needs
Establish controls and evidence for audits (design-time and runtime), including conformity checks against policy and standards
Coordinate remediation plans for non-compliant APIs
manage waivers/exceptions with clear time-bound conditions
Requirements:
10+ years in IT, including strong API development/governance experience
5+ years in API governance or platform leadership roles (enterprise scale)
Deep familiarity with OpenAPI/Swagger, REST fundamentals, GraphQL design considerations, and API lifecycle management
Hands-on experience with security standards (OAuth2, JWT, JWKS, mTLS) and regulatory frameworks (Open Banking/PSD2, HIPAA, GDPR)
Experience with Apigee X on GCP (or similar API management platforms like Kong, MuleSoft, AWS API Gateway, Azure APIM) from a governance/architecture perspective
Demonstrated ability to write clear policies, standards, and procedures
facilitate governance forums
drive alignment across stakeholders
Strong communication, stakeholder management, and change management skills
Nice to have:
GCP certifications (e.g., Cloud Architect)
Apigee certifications a plus
Experience with Ping Identity integration and enterprise IAM
Familiarity with GCP services (Cloud Armor, IAM, VPC networking) and platform security controls
Background in DevSecOps, CI/CD automation, and policy-as-code for API compliance
Experience improving API portals, catalogs, and developer experience, including analytics-driven enhancements
What we offer:
medical, vision, dental, and life and disability insurance