Compliance Analyst
Core
Lead security governance, IT audit, and compliance management to support global data protection and cybersecurity efforts for a unified AI platform.
Role type
Senior Security Compliance Analyst / IT Audit Lead
Builds
Security review lifecycle, audit processes, and compliance frameworks for a SaaS AI platform
Domain
Cybersecurity, Compliance, Cloud Infrastructure (AWS, GCP, Azure)
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Security governance, IT audit, Security compliance management, Program management, SOC 2 Type II audits, ISO 27001/27701/42001 audits, PCI-DSS audits, TISAX audits, HIPAA audits, FedRAMP audits, Risk assessment, Vendor risk management, Cloud environments (AWS, GCP, Azure), SaaS start-up experience
Preferred skills
GRC engineering tooling, AI security frameworks (AIUC)
Technologies
AWS, GCP, Azure
Responsibilities
Lead and manage customer-facing security conversations and security review lifecycle, Perform risk assessments and drive gap remediation, Streamline and lead SOC 2 Type II, ISO 27001/27701/42001, PCI-DSS, TISAX, HIPAA, and FedRAMP audit processes, Perform internal audits and maintain documentation, Conduct security awareness training, Oversee vendor risk management framework, Establish metrics to track compliance program effectiveness, Interface with technical and non-technical teams, Respond to customer RFIs and audit requests, Help build common control framework, Build and automate processes for continuous compliance, Assist with sales and marketing materials representing product security
Seniority
Senior, hands-on IC