Information Security Compliance Analyst
Role details
Job location
Tech stack
Job description
The Information Security Compliance Analyst supports the Manager, Identify & Protect in the design, implementation, operation, and continuous improvement of the organization's information security compliance program. This role focuses on day-to-day compliance activities including but not limited to; control identification, testing, risk evaluation, audit support and coordination. The Information Security Compliance Analyst will coordinate with internal stakeholders to ensure adherence to applicable data protection laws, regulatory requirements, and internal security standards, such as, NIS2, HIPAA, GDPR and other relevant frameworks.
Requirements
- Working knowledge of regional and global cybersecurity and data privacy regulations such as GDPR, HIPAA, NIS2, and similar frameworks.
- Understanding of information security risk concepts and control frameworks such as NIST CSF 2.0, SSAE18 SOC 2, ISO 27001, CIS Controls, etc..
- Ability to analyze compliance requirements and map them to security controls.
- Strong attention to detail and organizational skills.
- Effective written and verbal communication skills.
- Ability to work collaboratively with cross-functional teams and stakeholders.
- Strong analytical and problem-solving skills.
- Ability to manage multiple tasks and priorities in a structured and timely manner.
Work Environment:
- Normal office environment.
- Prolonged sitting in front of a computer.
Experience:
- Minimum of two to five years of cumulative, full-time experience in Information Security, IT Audit, Risk, or Compliance-related roles preferred.
- Familiarity with legal and regulatory requirements such as SOX, HIPAA, GDPR, PCI DSS, and other domestic or international privacy and security regulations.
- Experience supporting audits, risk assessments, or compliance programs is preferred.
Education:
- Bachelor's degree in computer science, cybersecurity, information systems, or a related field; or an equivalent combination of education and experience.
- Security or compliance certifications such as CISA, Security+,ISC² CC or similar are a plus.
Benefits & conditions
For U.S. locations that require disclosure of compensation, the starting base pay for this role is between $94,220.00 and $125,626.00 per year and may include cost of living adjustments. The actual base pay includes many factors and is subject to change and modification in the future. This position may also be eligible for other types of compensation and benefits.