Senior Security Compliance Analyst
Core
Build and scale a SaaS security and compliance program, leading risk management, control testing, and audit readiness while embedding compliance into engineering workflows.
Role type
Senior Security & Compliance Analyst (SaaS)
Builds
Security policies, standards, controls, and automated compliance processes for a SaaS environment
Domain
Cybersecurity, Compliance, Cloud Infrastructure
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
Risk management, control testing, audit readiness, security policy definition, regulatory alignment (SOC 2, ISO 27001, NIST, GDPR), cloud security (AWS/Azure/GCP), vulnerability management, compliance automation (Terraform, Cloud Custodian)
Preferred skills
DevSecOps practices, secure software development, security certifications (CISSP, CISM, CISA, CCSK)
Technologies
AWS, Azure, GCP, Terraform, Cloud Custodian, SAST, DAST, SCA
Responsibilities
Define and implement security policies and standards; lead third-party risk assessments and gap analysis; coordinate evidence collection for internal and external audits; partner with engineering to implement technical safeguards and automate compliance; monitor evolving threats and regulations
Seniority
Senior, hands-on IC
