Sr. Security Compliance Analyst - PCI DSS & SOC 2  (East Coast)

EntrustMinneapolis, MN
$119,078 - $174,648Remote

About The Position

Entrust is seeking a highly skilled Senior Security Compliance Analyst to lead and sustain compliance for multiple PCI DSS environments while supporting the maturity and execution of our SOC 2 program. This role is responsible for designing and executing continuous compliance monitoring activities, identifying gaps and leading associated remediation efforts, planning and leading third-party audits, and measuring control effectiveness across cloud-based, on-prem and hybrid environments. The ideal candidate brings deep PCI DSS expertise, strong SOC 2 familiarity, and modern GRC experience that enable scalable, automated, and evidence-driven compliance operations. This position partners closely with Security, Engineering, Product, and third-party providers to ensure controls are designed effectively, operating consistently, and aligned to business, statutory and regulatory expectations.

Requirements

  • 5+ years in security compliance, audit, or GRC with a strong understanding of administrative, technical, and physical controls, including how they support one another
  • Hands-on technical and audit experience with PCI DSS and SOC 2 compliance
  • Ability to work across multiple time zones with virtual global teams
  • Strong technical understanding of: Cloud environments and shared responsibility models
  • Access control, change management, logging and altering, and vulnerability management and other security domains
  • Experience working in SaaS or cloud-native environments
  • Experience working cross-functionally with engineering and infrastructure teams
  • Must be a US citizen

Nice To Haves

  • Experience supporting multiple compliance frameworks (PCI DSS, PCI CP, SOC 2, FedRAMP, ISO 27001, etc.)
  • Experience with modern GRC platforms and control automation
  • Familiarity with continuous compliance / continuous monitoring models
  • Certifications such as: CISSP, CISA, CISM, CRISC, PCI ISA/QSA/PCIP (preferred but not required)

Responsibilities

  • Lead and support end-to-end compliance efforts across multiple environments, including readiness assessments, audits, and continuous monitoring activities to ensure sustained security posture and audit readiness.
  • Leading PCI DSS compliance-related activities and certification.
  • Supporting the evolution and execution of the SOC 2 program, including control design, testing, and evidence collection.
  • Maintaining required evidence artifacts and ensuring traceability of evidence.
  • Interpreting and operationalizing security and compliance requirements into actionable control activities for engineering and operations.
  • Serving as SME for PCI DSS and SOC 2 compliance, advising internal teams and customers.
  • Partnering with control owners to ensure controls meet PCI DSS requirements and Trust Services Criteria (Security, Availability, Confidentiality, etc.).
  • Supporting external audits by preparing evidence, responding to auditor requests, coordinating audit activities, and tracking remediation.
  • Driving coordination with third parties (e.g., service providers, hosting partners) to ensure shared control alignment.
  • Ensuring audit readiness through continuous proactive gap assessments and control testing throughout the year.
  • Identifying, assessing, and communicating compliance and security risks to stakeholders.
  • Identifying, tracking, and driving closure of audit findings and control deficiencies.
  • Contributing to the development and maintenance of security policies, standards, and procedures.

Benefits

  • Comprehensive health and well-being programs which include medical, vision, dental
  • a generous 401(k) matching contribution
  • life and disability insurance
  • mental health coaching
  • virtual fitness programs
  • paid personal time off
  • 12 paid holidays
  • parental leave
  • education reimbursement
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service