4 дня назад
Senior Technical Compliance Analyst
111 200 - 139 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Technical Compliance Analyst (SOC 2/ISO 27001/PCI DSS): Strengthening technical compliance programs and leading audit, certification, evidence, and control-validation activities with an accent on regulatory frameworks, scalable controls, and cross-functional risk remediation. Focus on building evidence strategies, automating compliance workflows with Python and AI tools, and improving governance, risk, and compliance reporting.
Location: Boston, Massachusetts, United States
Salary: $111,200–$139,000 USD annually, plus bonus, equity, and benefits as applicable.
Company
is a publicly traded technology company operating in the regulated gaming industry.
What you will do
- Own technical compliance domains across SOC 2, ISO 27001, PCI DSS, SOX ITGC, NIST, and related requirements.
- Lead audit and certification activities, including planning, evidence collection, control validation, deliverables, and responses.
- Partner with Engineering, Security, Legal, Privacy, Internal Audit, and external auditors to assess controls and resolve gaps.
- Translate regulatory, contractual, and certification requirements into technical controls, workflows, and stakeholder guidance.
- Build reusable evidence strategies, compliance metrics, audit reporting, and leadership-ready risk insights.
- Improve governance, risk, and compliance capabilities through tooling, automation, repeatable evidence gathering, and remediation tracking.
Requirements
- Bachelor’s degree in Computer Science, Information Technology, or a related field, plus at least five years of relevant experience.
- Working knowledge of SOC 2, ISO 27001, PCI DSS, SOX ITGC, NIST, or similar frameworks.
- Experience with audit readiness, evidence collection, control validation, remediation tracking, and external audits or certifications.
- Technical fluency in access management, change management, vulnerability management, logging and monitoring, incident response, data protection, cloud infrastructure, and secure development.
- Strong stakeholder management, communication, attention to detail, and continuous improvement skills.
- A gaming license issued by the appropriate state agency may be required as a condition of employment.
Nice to have
- Experience writing Python scripts and using AI tools to automate evidence collection, control testing, or compliance workflows.
- Certifications such as CISA, CISSP, CRISC, CISM, or similar credentials.
Culture & Benefits
- Work in a regulated gaming and technology environment focused on innovation and emerging technology.
- Compensation includes bonus, equity, and benefits as applicable.
- Support is provided for the gaming license process when relevant to the role.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
4 дня назад
Sr. Security Compliance Analyst - PCI DSS & SOC 2 (East Coast)
119 078 - 174 648$
6 дней назад
Lead Security Governance, Risk & Compliance Analyst (Payments)
116 000 - 145 000$
5 дней назад
GRC Cybersecurity Controls Analyst (Cybersecurity)
98 800 - 196 000$
6 дней назад
Compliance Analyst (CMMC/NIST)
90 000 - 110 000$
OKX
6 дней назад
Tech Governance - Security Compliance & Governance Engineer (Mandarin Bilingual Required) (AI)
223 611 - 268 333$
10 дней назад
Senior Manager, Cyber Risk Insights (Cybersecurity)
175 000 - 219 000$