Security Compliance Analyst

Posted Aug 27

This is a fully remote position, open to applicants in Mexico, +5 more countries.

📋 Description

• Complete customer security questionnaires, DDQs, RFP security sections, and related security evaluations.

• Conduct research on technical inquiries and provide precise, defensible responses based on the company's actual environment and controls.

• Maintain a reusable repository of approved questionnaire responses and supporting documentation.

• Assess when existing answers are applicable, when information has changed, and when to involve subject-matter experts.

• Engage in customer security calls that necessitate in-depth technical or compliance discussions.

• Enhance the customer assurance process while ensuring accuracy is not compromised.

• Monitor findings, exceptions, remediation activities, and commitments from control owners until completion.

• Oversee deadlines, keep track of and report status, and escalate issues when necessary.

• Collaborate directly with the VP of Information Security & Compliance on customer assurance initiatives, SOC 2 and other audits, control testing, evidence collection, vendor assessments, CMMC, and NIST 800-171 projects.


⛳️ Requirements

• Over 3 years of relevant experience in IT, security, GRC, compliance, cloud operations, systems administration, or a related field.

• Strong understanding of prevalent security concepts.

• Practical experience with security compliance tasks, audit evidence, security questionnaires, or control testing.

• Exceptional spoken English skills, with the capacity to engage confidently in discussions with U.S.-based customers, auditors, and internal teams.

• Excellent organizational abilities and attention to detail, capable of managing multiple questionnaires, audit requests, and deadlines concurrently.

• Direct experience with administering Windows and cloud-based environments, including IT Tier 2 or systems administration tasks.

• Proficient in investigating technical systems directly, such as AWS, identity platforms, endpoint-management tools, GitHub, and ticketing systems, to gather evidence.

• Familiarity with scripting or automation, such as PowerShell.

• Capability to produce clear and accurate technical documentation.


🏝️ Benefits

• U.S. business hours.

• Option to follow either the U.S. holiday calendar or your home country's holiday schedule.

• Healthcare reimbursement eligibility after 90 days.

• Device stipend of up to $1,500, or reimbursement if you utilize your own equipment.

People also viewed

DigitalOcean10 hours ago

Senior Security Analyst

US flagWashington OnlyFull-timeSecurity Analyst$140.8k – $176k/year
ApplyView job
DigitalOcean10 hours ago

Senior Security Analyst

US flagUnited States OnlyFull-timeSecurity Analyst$140.8k – $176k/year
ApplyView job
Ascension15 hours ago

Senior Analyst – Cybersecurity

US flagUnited States OnlyFull-timeSecurity Analyst$96.2k – $134.1k/year
ApplyView job
Arbiter17 hours ago

Security Analyst

US flagUnited States OnlyFull-timeSecurity Analyst$75k – $85k/year
ApplyView job
Selbetti Tecnologia1 day ago

Senior IT Security Analyst

BR flagBrazil OnlyFull-timeSecurity Analyst
ApplyView job
Cadmus Soluções em TI1 day ago

Mid-Level SAP GRC AC Security Analyst/Consultant

BR flagBrazil OnlyFreelanceSecurity Analyst
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers