Regulatory & Security Compliance Analyst

TaktReston, VA
$85,000 - $100,000Hybrid

About The Position

Takt is seeking a Regulatory & Security Compliance Analyst to manage its security, privacy, and compliance programs. This role is crucial for maintaining customer trust as Takt grows globally. The position is based in Reston, Virginia, with an expectation of four days per week in the office. This is a hands-on role for an individual early in their career with a foundation in risk, audit, compliance, or advisory work, offering direct ownership of the company's compliance program. The analyst will work closely with various departments including Engineering, IT, Legal, Sales, and Customer Success, and will report administratively to the CTO. Additionally, the role will serve as Takt's Data Protection Officer (DPO), operating independently with direct access to leadership and the Board of Directors when necessary.

Requirements

  • 2-4 years of experience in risk advisory, technology risk, IT audit, cybersecurity risk, compliance, or a related field.
  • Experience at a professional services firm such as KPMG, Deloitte, PwC, EY, or a similar risk and advisory organization is strongly preferred.
  • Experience working with controls, risk assessments, audit evidence, testing, or compliance frameworks.
  • Familiarity with SOC 2, ISO 27001, ITGCs, cybersecurity controls, or similar frameworks.
  • Strong analytical skills and attention to detail.
  • Strong written communication skills and the ability to turn complex requirements into clear, practical documentation.
  • Comfortable working directly with technical teams, business stakeholders, auditors, and customers.
  • Highly organized and able to manage multiple workstreams, deadlines, and follow-ups.
  • Curious, self-directed, and interested in building deep expertise in security, privacy, and compliance.
  • Strong fundamentals, judgment, and ability to learn.

Nice To Haves

  • Experience with SOC 2 or ISO 27001 audits.
  • Experience performing ITGC, technology risk, cybersecurity, or privacy assessments.
  • Familiarity with Vanta or another GRC/compliance platform.
  • Experience responding to customer security questionnaires or supporting third-party risk assessments.
  • Exposure to GDPR or privacy compliance.
  • Experience working with SaaS or cloud technology companies.
  • Familiarity with Google Cloud Platform, Kubernetes, or modern cloud infrastructure.

Responsibilities

  • Own the day-to-day administration of Takt's compliance program in Vanta, including controls, tests, evidence, policies, risks, vendors, personnel, and remediation activities.
  • Manage and continuously improve our SOC 2 Type II compliance program.
  • Support Takt's implementation and ongoing maintenance of ISO 27001 and related security and privacy frameworks.
  • Coordinate annual audits, assessments, penetration tests, and certification activities with external auditors and vendors.
  • Track compliance findings and remediation activities and work with internal owners to ensure they are resolved.
  • Maintain security and compliance policies and ensure required reviews and approvals occur on schedule.
  • Monitor employee security and compliance requirements, including training, policy acceptance, device compliance, and access reviews.
  • Manage Takt's vendor risk management and third-party assessment processes.
  • Maintain an accurate, audit-ready compliance environment rather than preparing for compliance only when an audit approaches.
  • Serve as Takt's Data Protection Officer (DPO), overseeing compliance with GDPR, UK GDPR, and other applicable privacy requirements.
  • Maintain Takt's Records of Processing Activities, data inventories, privacy policies, subprocessors, Data Processing Agreements, and related documentation.
  • Support privacy reviews for new products, features, integrations, and uses of personal data.
  • Coordinate Data Protection Impact Assessments and other privacy risk assessments when required.
  • Manage processes for responding to data subject requests.
  • Serve as a point of contact for customers, data subjects, supervisory authorities, and Takt's privacy representatives where appropriate.
  • Monitor changes in privacy regulations and help translate them into practical actions for the business.
  • Help ensure privacy principles are incorporated into Takt's product development and operational processes.
  • Own or coordinate responses to customer security questionnaires, privacy questionnaires, RFPs, and due diligence requests.
  • Work with Sales and Customer Success to provide accurate and timely answers to customer security and compliance questions.
  • Maintain a reusable library of approved security, privacy, architecture, and compliance responses.
  • Coordinate customer requests for SOC 2 reports, penetration test summaries, policies, certifications, and other trust documentation.
  • Participate in customer security and privacy calls when deeper compliance expertise is required.
  • Help make the security review process faster and easier for both Takt and our customers.
  • Maintain a clear view of Takt's overall compliance posture, including open risks, control failures, audit findings, privacy issues, and upcoming obligations.
  • Present a monthly compliance and privacy update to Takt's Leadership Team, including key metrics, risks, upcoming audits, and areas requiring leadership attention.
  • Escalate material compliance, security, or privacy concerns directly to executive leadership.
  • Prepare compliance and privacy reporting for the Board as requested or when significant risks warrant Board attention.

Benefits

  • Training and certifications in areas such as GDPR and data protection, CIPP/E or CIPM, ISO 27001 implementation and auditing, SOC 2 and security assurance, Cloud security, GRC and risk management.
  • Work closely with Takt's CTO, engineering leadership, outside counsel, auditors, and external privacy advisors.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service