Назад
Company hidden
5 дней назад

Information Security Compliance Analyst (Fintech)

90 000 - 105 000$
Формат работы
hybrid
Тип работы
fulltime
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Information Security Compliance Analyst (Fintech): Managing cybersecurity risk, compliance obligations, audits, assessments, and customer security reviews across a financial technology platform with an accent on SOC, ISO, NIST, GRC, and RFP processes. Focus on coordinating evidence collection, tracking remediation, improving compliance automation, and managing vendor and subcontractor security risks.

Location: Hybrid role based in the New York City or Austin office

Salary: $90,000–$105,000 base annually, plus eligibility for the Company Bonus Pool and new hire equity.

Company

hirify.global is a financial technology company providing savings infrastructure for retirement, education, and healthcare needs.

What you will do

  • Manage cybersecurity risk processes in the Governance, Risk and Compliance (GRC) solution, including risk registers, findings, vulnerabilities, remediation plans, ownership, escalation, and business acceptance.
  • Manage compliance obligations across regulatory, contractual, and customer requirements, including NIST, ISO, SOC 1, SOC 2, and other cybersecurity frameworks.
  • Coordinate cybersecurity audits, assessments, evidence requests, customer reviews, and remediation tracking with Legal, Compliance, IT, Security, Engineering, and business leaders.
  • Support customer, vendor, supplier, and subcontractor cybersecurity risk management, including questionnaires, contract reviews, security expectations, and customer-facing services.
  • Review SOC controls against current practices, develop compliance automation, and build a knowledge library for efficient RFP responses.

Requirements

  • Experience with SOC, ISO, and other audits.
  • Experience responding to RFPs.
  • Experience working cross-functionally to implement compliance processes.
  • Experience with vendor management and reviews.
  • Strong analytical, communication, interpersonal, leadership, and attention-to-detail skills.

Nice to have

  • Familiarity with CrowdStrike, Vanta, or Responsive.
  • Experience leading an audit response.

Culture & Benefits

  • Hybrid work model with access to collaborative offices in Midtown Manhattan, Austin, King of Prussia, and Scottsdale.
  • Comprehensive health benefits and generous time off.
  • Employee Wellbeing Committee.
  • Competitive 401(k) plan.
  • Company Bonus Pool and potential new hire equity.

Hiring process

  • One or two introductory conversations.
  • Role-dependent skills or experience assessment.
  • Virtual or in-person interview panel followed by reference checks with a current or former manager and a peer.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →