5 дней назад
Information Security Compliance Analyst (Fintech)
90 000 - 105 000$
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Information Security Compliance Analyst (Fintech): Managing cybersecurity risk, compliance obligations, audits, assessments, and customer security reviews across a financial technology platform with an accent on SOC, ISO, NIST, GRC, and RFP processes. Focus on coordinating evidence collection, tracking remediation, improving compliance automation, and managing vendor and subcontractor security risks.
Location: Hybrid role based in the New York City or Austin office
Salary: $90,000–$105,000 base annually, plus eligibility for the Company Bonus Pool and new hire equity.
Company
is a financial technology company providing savings infrastructure for retirement, education, and healthcare needs.
What you will do
- Manage cybersecurity risk processes in the Governance, Risk and Compliance (GRC) solution, including risk registers, findings, vulnerabilities, remediation plans, ownership, escalation, and business acceptance.
- Manage compliance obligations across regulatory, contractual, and customer requirements, including NIST, ISO, SOC 1, SOC 2, and other cybersecurity frameworks.
- Coordinate cybersecurity audits, assessments, evidence requests, customer reviews, and remediation tracking with Legal, Compliance, IT, Security, Engineering, and business leaders.
- Support customer, vendor, supplier, and subcontractor cybersecurity risk management, including questionnaires, contract reviews, security expectations, and customer-facing services.
- Review SOC controls against current practices, develop compliance automation, and build a knowledge library for efficient RFP responses.
Requirements
- Experience with SOC, ISO, and other audits.
- Experience responding to RFPs.
- Experience working cross-functionally to implement compliance processes.
- Experience with vendor management and reviews.
- Strong analytical, communication, interpersonal, leadership, and attention-to-detail skills.
Nice to have
- Familiarity with CrowdStrike, Vanta, or Responsive.
- Experience leading an audit response.
Culture & Benefits
- Hybrid work model with access to collaborative offices in Midtown Manhattan, Austin, King of Prussia, and Scottsdale.
- Comprehensive health benefits and generous time off.
- Employee Wellbeing Committee.
- Competitive 401(k) plan.
- Company Bonus Pool and potential new hire equity.
Hiring process
- One or two introductory conversations.
- Role-dependent skills or experience assessment.
- Virtual or in-person interview panel followed by reference checks with a current or former manager and a peer.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
10 дней назад
Analyst, GRC – Public Sector (Cybersecurity)
120 000 - 145 000$
9 дней назад
Information Security Operations Specialist
130 000 - 155 000$
6 дней назад
Information Security Analyst (AI)
120 000 - 170 000$
9 дней назад
Senior Security Compliance Specialist (ISO 27001)
90 000 - 110 000$
6 дней назад
Security Governance Risk & Compliance Analyst I (AI)
49 729 - 73 130$
11 дней назад
Senior Technical Risk Analyst (Cybersecurity)
114 500 - 179 500$