Назад
Company hidden
13 часов назад

Senior Compliance Analyst (Cybersecurity)

109 000 - 135 000$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
senior
Английский
c1
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Compliance Analyst (Cybersecurity): Managing and maturing the organization's GRC, data privacy, and customer assurance programs with an accent on SOC 2 Type II audits, vendor risk management, and regulatory compliance. Focus on scaling compliance capabilities, responding to complex security questionnaires, and ensuring privacy-by-design across a B2B SaaS environment.

Location: Must be based in the US

Salary: $109,000 - $135,000 annually

Company

A fast-growing cybersecurity company providing autonomous pentesting and assessment solutions through its NodeZero platform.

What you will do

  • Lead SOC 2 Type II compliance efforts, including control mapping and audit coordination.
  • Oversee the privacy program to ensure compliance with GDPR, CCPA/CPRA, and the EU AI Act.
  • Manage the third-party risk management lifecycle, including vendor due diligence and assessments.
  • Serve as the primary point of contact for customer security questionnaires, RFPs, and due diligence requests.
  • Collaborate with cross-functional teams to implement and validate security and privacy controls.
  • Advise Legal and Product teams on privacy-by-design and data minimization practices.

Requirements

  • 4–6+ years of experience in security compliance, risk, or privacy, preferably in B2B SaaS.
  • Deep understanding of compliance frameworks like SOC2, ISO:27001, and NIST.
  • Expertise in global and US data privacy laws including GDPR and CCPA/CPRA.
  • Strong experience responding to security questionnaires and leading annual audits.
  • Must be authorized to work in the United States.

Nice to have

  • Certifications such as CIPP/US, CIPT, CISA, CRISC, or ISO Lead Implementer.
  • Experience with NIST AI RMF or DORA frameworks.

Culture & Benefits

  • Inclusive and diverse team environment.
  • Competitive salary and equity package in the form of stock options.
  • Comprehensive health, vision, and dental insurance.
  • Flexible vacation policy and generous parental leave.
  • Opportunities for professional growth in a dynamic cybersecurity startup.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →