Compliance Analyst

Type: Contract to Hire – Term 6 Months +

Location: San Francisco

 

Description:

Join the Cloud Security team as a security analyst and gain valuable insight and experience with protecting high scale cloud services. As a Cloud Security Analyst, you can be a part of the talented team that designs, builds and deploys solutions that protect customers against advanced adversaries. You will work across many teams including sales, compliance,  infrastructure, engineering and operations.

Responsibilities:

  • Be the single point of contact for all customer security RFI & communications. Work with Sales, Cloud Operations and Engineering teams to manage RFI process complete and deliver RFIs to customers in a timely fashion
  • Automate manual tasks related to RFIs, Audits and Other compl­­­­­­iance programs
  • Participate in planning, scheduling and preliminary analysis for all internal and external audit projects.
  • Coordinate audit activities including notification and scheduling for all affected parties of audit timing, scope, objectives, approach and deliverables.
  • Work closely with external auditors and internal audit teams on managing and supporting the audits.
  • Identify, document, and map technology processes and internal controls of applicable technology infrastructure and operational areas per the scope of the audit project.
  • Perform risk assessments of technology infrastructure and operational processes and controls for assigned areas.
  • Complete audit testing, inquiry, observation and other analysis required to meet objectives of  audit projects.
  • Keep existing policies and procedures aligned with audit and security requirements
  • Communicate progress and results of audit throughout the audit engagements.
  • Develop value added recommendations to deal with issues identified during assigned audits and draft audit reports to formally communicate the results of the audit and related recommendations.
  • Monitor implementation of outstanding audit recommendations and validate their implementation.
  • Request and review vendors auditing documentation to insure alignment with Cloud Ops internal controls and provide assessments and recommendations.

Requirements:

  • Bachelor’s degree in Information Systems or related field, or equivalent experience
  • Certified Information Systems Auditor (CISA) and/or Certified in Risk and Information Systems Control (CRISC) strongly preferred.  Other certifications add value such as Certified in Governance of Enterprise IT (CGEIT), Certified Information Security Manager (CISM), Certified Information Security Professional (CISSP), CPA, and/or CIA.
  • Minimum 3 years of internal or external audit experience with Big 4 Audit Firms, with exposure to the following compliance frameworks AT101 Type2 SoC1 and SoC2 (SSAE16), ISO2700x, FedRamp, COPPA, ITIL, NIST
  • Knowledge base related to controlling and securing system platforms (including Unix and Windows), database platforms, endpoint platforms, and network infrastructures is preferred.
  • Understanding of Cloud industry technologies and IaaS, PaaS, SaaS platforms preferred.  Ability to quickly acquire and apply knowledge of changing technologies implemented is essential.
  • Goodunderstanding of audit process/methodology, and risk management/advisory ability.
  • Ability to adapt to a changing environment, meet deadlines and handle multiple projects.
  • Experience in using a risk-based audit approach in evaluations of and recommendations for management processes.
  • Ability to present audit findings and recommendations in a manner that will be understood and accepted by all responsible parties.
  • Posses the tenacity to pursue difficult and sensitive issues to acceptable conclusion
  • Excellent communication, interpersonal, time management and issue resolution skills.
  • Excellent analytical skills, organizational skills, ingenuity and the ability to work as part of a team
  • Ability to effectively promote ideas and collaboration at the various levels of the organization
  • Demonstrated ability to learn quickly and take on new challenges.
  • Motivated, self-driven, and passionate about your work
  • Innovative thinker
  • Ability to solve complex problems

To Apply for this Position Send your Cover Letter and Resume with Job Title in the Subject Line. Thank you.