Назад
Company hidden
обновлено 4 часа назад

IT Compliance Analyst

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Mexico
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
IT Compliance Analyst (GRC/Privacy Compliance): Building scalable compliance processes, policies, and evidence programs for an AI-powered identity verification platform with an accent on SOC 2, ISO standards, privacy regulations, and customer trust. Focus on coordinating audits and DPIAs, advising leadership on privacy and compliance risks, and using AI to automate compliance tasks.

Location: Mexico. Candidates must be authorized to work lawfully in the United States or Mexico.

Company

hirify.global provides AI-powered identity verification and security solutions for banks, fintechs, marketplaces, governments, and other global industries.

What you will do

  • Guide departments through SOC 2, ISO/IEC 27001, ISO/IEC 22301, ISO/IEC 42001, HIPAA, GDPR, and CCPA requirements.
  • Respond to customer and prospect security, legal, privacy, questionnaire, contract, and data subject requests.
  • Coordinate third-party audits, privacy risk assessments, DPIAs, and compliance assessments with Engineering.
  • Develop and test Security, Privacy, and Compliance policies, procedures, and whitepapers.
  • Advise senior leadership on compliance and privacy risks, risk-reduction solutions, and change projects.
  • Deliver company-wide training and track new compliance technologies, including AI-based automation.

Requirements

  • 5+ years of experience in privacy compliance, risk management, information security, and/or information technology.
  • Experience supporting compliance programs at a SaaS company across relevant frameworks such as SOC 2, HIPAA, GDPR, PCI-DSS, ISO/IEC 27001, or ISO/IEC 42001.
  • Strong experience developing policies and procedures and executing compliance programs.
  • Extensive experience working with internal and external auditors and applying GRC practices in SaaS organizations.
  • Knowledge of security standards including SOC 2, ISO/IEC 27001, ISO/IEC 42001, HITRUST, and NIST 800, plus CCPA and GDPR.
  • English communication skills are required; Spanish is a plus. Work authorization in the United States or Mexico is required, and immigration sponsorship is not available.

Nice to have

  • CISM, NCSF, CCSP, CISSP, or CISA certification.
  • Experience with SaaS, PaaS, and IaaS providers from a compliance perspective.
  • Experience using AI to automate compliance tasks.
  • Spanish language skills.

Culture & Benefits

  • High-performance environment with freedom and responsibility.
  • Context-driven collaboration and continuous feedback.
  • Opportunities for promotions, development, and learning.
  • Flexible working hours and workplace.
  • Open vacation policy.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →