Назад
Company hidden
4 дня назад

Senior Technical Compliance Analyst

111 200 - 139 000$
Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Technical Compliance Analyst (SOC 2/ISO 27001/PCI DSS): Strengthening technical compliance programs and leading audit, certification, evidence, and control-validation activities with an accent on regulatory frameworks, scalable controls, and cross-functional risk remediation. Focus on building evidence strategies, automating compliance workflows with Python and AI tools, and improving governance, risk, and compliance reporting.

Location: Boston, Massachusetts, United States

Salary: $111,200–$139,000 USD annually, plus bonus, equity, and benefits as applicable.

Company

hirify.global is a publicly traded technology company operating in the regulated gaming industry.

What you will do

  • Own technical compliance domains across SOC 2, ISO 27001, PCI DSS, SOX ITGC, NIST, and related requirements.
  • Lead audit and certification activities, including planning, evidence collection, control validation, deliverables, and responses.
  • Partner with Engineering, Security, Legal, Privacy, Internal Audit, and external auditors to assess controls and resolve gaps.
  • Translate regulatory, contractual, and certification requirements into technical controls, workflows, and stakeholder guidance.
  • Build reusable evidence strategies, compliance metrics, audit reporting, and leadership-ready risk insights.
  • Improve governance, risk, and compliance capabilities through tooling, automation, repeatable evidence gathering, and remediation tracking.

Requirements

  • Bachelor’s degree in Computer Science, Information Technology, or a related field, plus at least five years of relevant experience.
  • Working knowledge of SOC 2, ISO 27001, PCI DSS, SOX ITGC, NIST, or similar frameworks.
  • Experience with audit readiness, evidence collection, control validation, remediation tracking, and external audits or certifications.
  • Technical fluency in access management, change management, vulnerability management, logging and monitoring, incident response, data protection, cloud infrastructure, and secure development.
  • Strong stakeholder management, communication, attention to detail, and continuous improvement skills.
  • A gaming license issued by the appropriate state agency may be required as a condition of employment.

Nice to have

  • Experience writing Python scripts and using AI tools to automate evidence collection, control testing, or compliance workflows.
  • Certifications such as CISA, CISSP, CRISC, CISM, or similar credentials.

Culture & Benefits

  • Work in a regulated gaming and technology environment focused on innovation and emerging technology.
  • Compensation includes bonus, equity, and benefits as applicable.
  • Support is provided for the gaming license process when relevant to the role.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →