Kraken Digital Asset Exchange logo
Kraken Digital Asset Exchange

We put the power in your hands to buy, sell, and trade digital currency 🌏

Senior Analyst, Security Compliance

Security EngineerSecurity EngineerOtherRemoteSeniorTeam 1,001-5,000Since 2011H1B No SponsorCompany SiteLinkedIn

Location

United States

Posted

115 days ago

Salary

$83.4K - $166.8K / year

Seniority

Senior

Bachelor Degree5 yrs expEnglish

Job Description

Senior Analyst, Security Compliance

Kraken Digital Asset Exchange

• Lead and manage SOC 1 and SOC 2 examinations under AICPA standards in a complex, rapidly evolving technology environment, partnering with external auditors and internal teams to design, implement, and continuously improve IT control processes • Support end-to-end SOX planning and execution, including IT system scoping, audit readiness, and development and delivery of training for control owners operating in a high-growth, regulated business • Act as a trusted advisor to Security, IT, Infrastructure, Engineering, Data, and Finance teams, translating SOX and audit requirements into practical, scalable controls aligned with modern technology stacks • Lead security and IT control gap assessments, evaluate control design and operating effectiveness, and drive remediation efforts through to completion in partnership with control owners • Facilitate the ongoing maturation of IT general controls (ITGCs) and IT application controls (ITACs), balancing regulatory expectations with the pace of product and platform innovation • Oversee the quality and execution of audit initiatives, applying strong professional judgment to identify control gaps, assess risk, and guide teams through complex audit and compliance matters • Perform impact assessments for SOX control deficiencies and design risk-based, pragmatic remediation plans that stand up to auditor scrutiny without slowing the business • Implement and enhance controls monitoring and defense-in-depth across key IT risk areas to improve audit outcomes and strengthen the overall control environment • Partner cross-functionally to identify systemic program challenges, recommend process improvements, and drive durable solutions in a scaling organization • Develop and maintain clear, auditor-ready documentation, including data flow diagrams and process flowcharts for high-risk security and financial processes • Work closely with internal and external auditors, helping them navigate a sophisticated IT control environment and ensuring efficient, high-quality audits • Support audit evidence collection and continuous improvement initiatives, including leveraging automation to improve efficiency, consistency, and scalability

Job Requirements

  • 5+ years of experience in external IT audit and/or technology risk assurance or advisory, with demonstrated ownership of complex audit requirements
  • Strong hands-on experience with Internal Controls over Financial Reporting (ICFR), including SOX 404 frameworks, control design, and operating effectiveness testing
  • Prior experience at a Big 4 or other large public accounting firm, or equivalent experience working with external auditors in a highly regulated environment
  • Proven ability to lead compliance and audit initiatives end to end, from planning and risk assessment through remediation and audit close
  • Experience auditing or assessing hybrid and cloud-based environments (e.g., IaaS, PaaS, SaaS), including access management, change management, and logging/monitoring controls
  • Ability to operate autonomously in ambiguous, fast-paced environments, driving outcomes across cross-functional teams with minimal supervision
  • Strong organizational and time management skills, with a high degree of self motivation and effectiveness in a remote or distributed working environment

Benefits

  • Offers Equity
  • Offers Bonus
  • Wellness allowance
  • Other benefits [US Only] (including medical, dental, vision and 401(k))

Related Categories

Related Job Pages

More Security Engineer Jobs

Datavant logo

Security Customer Assurance Specialist

Datavant

Connecting the world’s health data to improve patient outcomes.

Security Engineer115 days ago
OtherRemoteTeam 201-500Since 2017H1B Sponsor

• Coordinate and manage responses to customer enquiries, including contributing to Request for Proposals (RFP), responding to customer security enquiries, diligence assessments, customer audits, etc. • Perform technical assessments and documentation around key controls and security processes, including working knowledge of key controls across a number of industry best practices • Liaise with customers, articulating control implementation, and describing considerations for applying security and compliance concepts to a technical environment. Simplify security compliance requirements into clear technical control specifications and policies. • Field and address requests for team support in collaboration with internal and external stakeholders. • Communicate effectively and regularly with internal teams and customers • Continuously build and refine knowledge base information, whitepapers, frequently asked questions, control narratives, etc. and contribute to ongoing development and improvement. • Understand the impact of security in our go-to-market pipeline, report on trends and help us improve how we invest in security. • Stay apprised on industry standards and regulations for security and compliance

United States
$112K - $140K / year
Job Closed
Bounteous logo

Information Security Lead

Bounteous

Creating digital solutions for today's challenges and tomorrow's opportunities.

Security Engineer115 days ago
OtherRemoteTeam 501-1,000Since 2003H1B Sponsor

• Information Security Operations Engineer is a member of the Gen Re Security team, who will leverage extensive experience in security operations to oversee and enhance proactive defenses and response capabilities. • The candidate shall work closely with Security and other IT practice leads to ensure that detection logic, incident response workflows, data quality, automation, and team collaboration are continuously improved and effectively managed. • The role entails strategic planning, research, testing, and implementation of new solutions, as well as the operation and maintenance of current solutions. • Refine detection logic and improve alert fidelity across platforms such as CrowdStrike, Taegis, and Varonis. • Enhance incident response workflows and update runbooks to reflect current tooling and evolving threat scenarios. • Perform gap analysis and coverage mapping to ensure security data quality, log integrity, and timestamp accuracy. • Implement security automation and orchestration to reduce manual effort and improve operational efficiency. • Conduct reviews of alerts and enforce effective timely incident investigation.

United States
Job Closed
Bounteous logo

Security Access Management Lead

Bounteous

Creating digital solutions for today's challenges and tomorrow's opportunities.

Security Engineer115 days ago
OtherRemoteTeam 501-1,000Since 2003H1B Sponsor

• Oversee and coordinate day-to-day responsibilities including employee/consultant onboarding and off-boarding. • Fulfill access requests and handle audit/compliance requests. • Troubleshoot access-related incidents and provide exceptional customer service to end users and role owners. • Play a key role in all security access management related projects. • Partner and mentor effectively with other teams on an ongoing basis.

United States
Job Closed
RTX logo

Senior Manager, Compliance and Legal Advisor, Data Privacy, Cybersecurity

RTX

At RTX, the world largest aerospace and defense company, 185,000 great minds are united by purpose and inspired to make a difference solving the world’s most complex problems. With our three market leading businesses, world-class operations and investments in research and development, we offer capabilities and opportunity no one else can. Together, we push the boundaries of known science and find new ways to connect and protect our world. Pratt & Whitney is a world leader in the design, manufacture and service of aircraft engines and auxiliary power systems and has been revolutionizing modern flight for over 100 years. Join us and help shape the future of aerospace and defense.

Security Engineer115 days ago
OtherRemoteTeam 10,001+Since 2020H1B No Sponsor

• Lead and manage data incident response investigations and reporting under legal privilege, ensuring compliance with applicable regulatory requirements • Oversee and maintain the Privacy and Cyber SharePoint site, risk metrics, and control tower to ensure proper documentation and tracking • Collaborate with cybersecurity subject matter expert (SME) on NIST 800-171, and Cybersecurity Maturity Model Certification 2.0 (CMMC) to support cyber legal counsel • Review purchase orders and subcontract terms and conditions to ensure compliance with company policies, procedures, internal guidance, and legal requirements, including the FAR and DFARS • Collaborate with Supply Chain personnel, and members of LCC and Program Counsel to conduct contract reviews, with a focus on privacy and cybersecurity contract terms • Conduct privacy impact assessments and regular compliance-related risk assessments and develop and implement action plans • Brief on areas of concern to all levels of the business including at times senior leadership

Virginia
$132.4K - $251.6K / year
Job Closed