Senior Security Compliance Analyst

NetBrainBurlington, MA
$140,000 - $180,000

About The Position

NetBrain is seeking a security and compliance leader to build and operationalize a scalable security program for its SaaS environment. This role will define policies, drive alignment with frameworks such as SOC 2, ISO 27001, and NIST, and partner cross-functionally to embed compliance into engineering, infrastructure, and business processes. The individual will own risk management initiatives—including third-party risk, control testing, and audit readiness—while ensuring the organization is prepared for certifications and regulatory requirements. Additionally, they will enhance the security posture through automation, continuous monitoring, and proactive improvements to mitigate evolving threats and compliance risks.

Requirements

  • Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent experience.
  • 4+ years of experience in information security, compliance, or related technical roles.
  • Strong knowledge of security frameworks and regulations (e.g., ISO 27001, SOC 2, NIST, PCI-DSS, HIPAA, GDPR).
  • Hands-on experience with cloud environments (AWS, Azure, or GCP) and related security services.
  • Familiarity with auditing, logging, monitoring, SCA, DAST, SAST and vulnerability management tools.
  • Excellent documentation, communication, and collaboration skills.

Nice To Haves

  • Security certifications (e.g., CISSP, CISM, CISA, CCSK, or equivalent) preferred.
  • Experience with automation tools for compliance (e.g., Terraform, Cloud Custodian, or compliance-as-code frameworks)
  • Background in DevSecOps or secure software development practices preferred.

Responsibilities

  • Own and scale the company’s SaaS security and compliance program, aligning to frameworks such as SOC 2, ISO 27001, NIST, and GDPR.
  • Define and implement security policies, standards, and controls to meet regulatory and business requirements.
  • Lead risk management efforts, including third-party risk assessments, control testing, and gap analysis.
  • Drive audit readiness and execution, coordinating evidence collection and remediation for internal and external audits.
  • Embed security and compliance requirements into engineering, infrastructure, and operational workflows.
  • Partner cross-functionally with engineering, legal, and business teams to align on security and compliance goals.
  • Partner with engineering to implement technical safeguards (e.g., access controls, logging, encryption) and automate compliance processes.
  • Continuously monitor evolving threats and regulations, proactively strengthening the company’s security posture.

Benefits

  • 401k
  • medical/dental coverage
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service