Senior Security Analyst - Compliance

VoltaGridCypress, TX
82d

About The Position

The Senior Security Analyst - Compliance will ensuring our organization's adherence to regulatory requirements, industry standards, and internal policies. The Senior Analyst will collaborate across IT, Security, Legal, Engineering, and Business units to monitor compliance posture, support audits, manage security assessments, and strengthen our risk and compliance framework.

Requirements

  • Bachelor's degree in Information Security, Computer Science, Risk Management, or related field (or equivalent work experience).
  • 5+ years of experience in information security, compliance, or risk management, with at least 2 years of experience in a senior or lead role.
  • Strong knowledge of regulatory frameworks such as SOC 2, ISO 27001, NIST CSF, GDPR, or CCPA.
  • Experience supporting audits, evidence gathering, and compliance assessments.
  • Familiarity with GRC (Governance, Risk, and Compliance) platforms (e.g., Drata, OneTrust, Archer, ServiceNow GRC).
  • Excellent written and verbal communication skills.

Nice To Haves

  • Relevant certifications such as CISA, CISSP, CISM, or CCSK.
  • Experience in cloud security compliance (AWS, Azure, GCP).
  • Knowledge of third-party/vendor risk management.

Responsibilities

  • Monitor, assess, and maintain compliance with frameworks such as SOC 2, NIST, and ISO 27001, as applicable.
  • Support certification, attestation, and regulatory audit activities.
  • Maintain evidence repositories and coordinate responses for internal and external audits.
  • Develop, maintain, and enforce security policies, standards, and procedures.
  • Educate employees on compliance requirements and best practices.
  • Ensure alignment of security operations with company policies and legal obligations.
  • Conduct security and compliance risk assessments across systems, vendors, and business processes.
  • Support regular vulnerability assessments and penetration testing to identify and address system weaknesses.
  • Monitor, prioritize, and manage risks from IT and Operational Technology (OT) environments.
  • Track remediation efforts and verify corrective actions are implemented.
  • Integrate vulnerability scanning tools for live risk scoring.
  • Maintain and manage a centralized risk register tied to controls, with real-time updates.
  • Support ongoing compliance training initiatives.
  • Communicate regulatory and policy updates to stakeholders.
  • Track compliance metrics and prepare regular reports for leadership, IT Security Council, and audit committees, as required.
  • Monitor security systems, including SIEM tools, EDR, DLP, IPS systems, and other security tools to identify and respond to potential threats in real time.
  • Support investigations of security incidents, perform root cause analysis, and coordinate remediation efforts to minimize impact.
  • Maintain and manage updates to policies (e.g. cybersecurity, incident response, disaster recovery) in a centralized, version-controlled repository.
  • Escalate non-compliance issues and propose remediation strategies.

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Senior

Industry

Professional, Scientific, and Technical Services

Education Level

Bachelor's degree

Number of Employees

101-250 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service