Job Closed

This listing is no longer active.

Security Compliance Analyst

Location

United States

Posted

82 days ago

Salary

0

Seniority

Mid Level

Job Description

Security Compliance Analyst

Apkudo

Role Description Apkudo’s growth has hit a pivotal point of requiring a dedicated person to take over the more technical aspects of our information security management system and certifications. This role is part of our Apkudo Compliance Team whose mission is to drive a commitment and culture of improvement that ensures we maintain a high level and recognizable standard of compliance, quality and ethics. If you have proven professional experience, detailed knowledge of information security auditing, and want to make Apkudo more productive and efficient, this is the role and place for you! Apply today! Qualifications - Professional experience in information security auditing with a focus on SOC 1 & 2 standards - Detailed knowledge of ISO 27001 standard, ISO Certification Process Audits, and SOC 1 and 2 standards - Experience with AWS and Google Workspace - Strong analytical problem-solving skills and attention to detail - Excellent verbal and written communication skills, as well as strong partnership skills - Experience with cybersecurity and auditing, preferably with 3-5 years of experience - Degree in Computer Science, Computer Engineering, IT, or similar field, or 3+ years of IT security or cybersecurity related work experience Requirements - Manage and enforce Apkudo's SOC 1 & 2 Controls, ensuring that all security practices are compliant with industry standards - Be the main point of contact and liaison with external SOC auditors, facilitating effective communication and resolution of audit findings - Perform regular internal audits for SOC and ISO controls, identifying areas for improvement and ensuring that corrective actions are implemented - Lead the Compliance member of our Information Security Council, driving security awareness and training for key security focuses throughout the organization - Monitor and resolve alerts and alarms in critical systems, ensuring that potential security threats are identified and mitigated promptly - Manage security event responses and investigations, providing timely and effective resolution to security incidents - Coordinate regular penetration testing and drive improvement actions, ensuring that Apkudo's security posture is maintained and improved - Be the company administrator for password and phishing management systems, ensuring that security policies and procedures are up-to-date and compliant - Review and update security-related policies and procedures to ensure alignment with industry standards and best practices - Drive awareness and training of key security focuses throughout the organization, ensuring that all employees are equipped to maintain a high level of security awareness - Assist and support company stakeholders with questions regarding information security, providing timely and effective guidance and support - Stay up-to-date with the latest information security management trends and best practices, applying this knowledge to drive security improvements within Apkudo - Work with Legal to identify and ensure compliance with cryptographic and data encryption regulations - Participate in ad-hoc projects related to improving Apkudo's security posture, applying a collaborative and flexible approach to drive security improvements

Related Job Pages

More Security Analyst Jobs

Ivanti logo

Senior Security Analyst

Ivanti

Ivanti finds, heals and protects every device, everywhere – automatically.

Security Analyst82 days ago
Full TimeRemoteTeam 1,001-5,000Since 1985H1B Sponsor

• Lead and execute security incident response, leveraging your deep expertise to manage and mitigate threats across Ivanti’s global footprint. • Uncover both known and unknown threats using advanced incident response techniques, threat hunting, threat intelligence, and a strong understanding of attacker TTPs. • Conduct thorough investigations involving external attacks, insider threats, and digital forensics, ensuring stakeholders stay informed with comprehensive reporting. • Analyze security logs from diverse sources (SIEM, EDR, DLP, email threat detection, and cloud platforms such as Azure, AWS, and GCP), proactively identifying and disrupting potential threats before impact. • Develop detection content, craft automation to streamline and elevate security response efficiency, and improve our overall detection and response capabilities. • Provide actionable risk mitigation strategies, recommendations, and thorough documentation to enhance Ivanti’s security posture. • Work closely with Senior Threat Analysts, the Incident Response Manager, and the Security Architecture team to coordinate, escalate, and resolve information security events. • Contribute to knowledge sharing and mentorship within the team to build collective expertise in modern cyber defense.

India
Job Closed
Reply logo

SAP Security Analyst

Reply

Reply designs and implements innovative solutions in the areas: Digital Services, Technology and Consulting.

Security Analyst82 days ago
Full TimeRemoteTeam 10,001+Since 1996H1B Sponsor

• Evaluate and strengthen the security posture of Stellantis SAP environments across all regions. • Assess current security practices, identifying gaps, and defining standardized processes related to patch management, hardening, vulnerability management, access control, and monitoring. • Ensure that SAP operational security processes are properly defined, implemented, and consistently applied across the organization. • Support compliance with corporate cybersecurity standards.

Brazil
Job Closed
OtherHybridTeam 1,001-5,000Since 2005H1B Sponsor

Title: Senior Protective Intelligence Manager Location: Brooklyn United States Hybrid Job Description: Etsy is the global marketplace for unique and creative goods. We build, power, and evolve the tools and technologies that connect millions of entrepreneurs with millions of buyers around the world. As an Etsy Inc. employee, whether a team member of Etsy or Depop, you will tackle unique, meaningful, and large-scale problems alongside passionate coworkers, all the while making a rewarding impact and Keeping Commerce Human. Salary Range: $132,000.00 - $172,000.00 What's the role? We are seeking a Senior Protective Intelligence Manager to join the Workplace Protection team and strengthen our global protective operations through proactive intelligence, crisis response, and incident triage. This role combines intelligence analysis with operational leadership, delivering real-time situational awareness and coordinating response during dynamic events. You will identify emerging risks, manage information flow during crises, and help drive decisions that safeguard employees globally-whether in offices, remote, or traveling on company business. Success requires strong analytical judgment, calm execution under pressure, and the ability to translate intelligence into coordinated action. You will partner closely with security vendors and cross-functional teams to enable swift, informed responses to incidents impacting our people, operations, or brand. This is a full-time position reporting to the Director, Workplace Protection. In addition to salary, you will also be eligible for an equity package, an annual performance bonus, and our competitive benefits that support you and your family as part of your total rewards package at Etsy. This role requires your presence in Etsy's Brooklyn Office. Candidates living within commutable distance of Etsy's Brooklyn Office Hub may be the first to be considered. Learn more details about our work modes and workplace safety policies here. What's this team like at Etsy? The Workplace Protection team works across the company to help keep employees safe and informed during an evolving global risk environment. We monitor emerging threats, coordinate response during incidents, and provide intelligence that supports decisions affecting our people, operations, and leadership. The team partners closely with security vendors and cross-functional partners to ensure employees-whether in offices, working remotely, or traveling-have the support and protection they need. What does the day-to-day look like? - Lead global incident response planning, including development and maintenance of crisis playbooks, emergency notification systems, and response procedures that enable effective coordination during critical events. - Manage incident monitoring, response coordination, and post-incident reporting, identifying patterns and trends from security data to inform future planning, resource allocation, and risk mitigation strategies. - Conduct intelligence analysis and threat assessments to identify, assess, and prioritize risks to personnel, including the investigation and triage of concerning communications, online threats, and persons of concern. - Monitor global security developments, including civil unrest, natural disasters, geopolitical instability, and other emerging threats that could impact employees, offices, or operations, and translate those insights into actionable guidance. - Own the company's travel risk intelligence program, including monitoring global developments, managing external intelligence vendors, and delivering risk briefings for employees traveling to higher-risk destinations. - Support executive protection planning by providing intelligence assessments for leadership travel and vetting international executive protection vendors. - Collaborate with internal stakeholders and external security partners to ensure timely information flow and coordinated response during incidents that impact our people, operations, or brand. - Design and facilitate crisis simulations and tabletop exercises to strengthen leadership readiness and improve organizational response capabilities. - Of course, this is just a sample of the kinds of work this role will require! You should assume that your role will encompass other tasks, too, and that your job duties and responsibilities may change from time to time at the company's discretion or as otherwise required by applicable law. Qualities that will help you thrive in this role are: - 7+ years of experience in intelligence analysis, crisis management, protective intelligence, or corporate security within a corporate, government, or consulting environment. - Demonstrated ability to synthesize complex or incomplete information quickly and translate intelligence, open-source reporting, and situational data into clear, actionable guidance for senior stakeholders. - Experience managing or supporting incident response, crisis coordination, or operational decision-making during time-sensitive events. - Strong familiarity with OSINT tradecraft, social media monitoring, and situational awareness tools, as well as modern intelligence or alerting platforms. - Excellent written and verbal communication skills, with the ability to deliver concise, decision-focused updates to operational teams and leadership audiences. - Experience collaborating closely with cross-functional partners-including security, investigations, cyber, communications, and HR-to manage information flow and coordinate response during critical incidents. - Demonstrated sound judgment and discretion when handling sensitive or confidential information. - Strong organizational and prioritization skills, with the ability to manage multiple evolving issues or incidents simultaneously. - Bachelor's degree or equivalent experience in intelligence, security studies, international relations, or a related field. - Professional certifications in security, intelligence, or crisis management (e.g., CTM, CPP, PCI) are a plus. - Interest in strengthening organizational resilience and helping protect employees, operations, and brand during dynamic global events. - Ability to support critical incidents, large company events, and international travel outside standard hours, including 24/7 on-call rotation when needed. - Occasional travel, including international assignments, in support of protective or crisis operations Additional Information What's Next If you're interested in joining the team at Etsy, please share your resume with us and feel free to include a cover letter if you'd like. As we hope you've seen already, Etsy is a place that values individuality and variety. We don't want you to be like everyone else -- we want you to be like you! So tell us what you're all about. Our Promise At Etsy, we believe that a diverse, equitable and inclusive workplace furthers relevance, resilience, and longevity. We encourage people from all backgrounds, ages, abilities, and experiences to apply. Etsy is proud to be an equal opportunity workplace. We are committed to equal employment opportunity regardless of race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or veteran status, or any other characteristic protected by applicable law. If, due to a disability, you need an accommodation during any part of the application or interview process, please let your recruiter know. While Etsy supports visa sponsorship, sponsorship opportunities may be limited to certain roles and skills.

New York
Job Closed

Role Description Are you passionate about cyber security and ready to make a real impact? Whether you're a newly qualified Cyber Essentials Assessor or an IT professional with a strong technical understanding of cyber security fundamentals, we’d love to hear from you. We’re looking for a proactive and client-focused Cyber Security Advisor to join our team. You’ll support a wide range of clients in improving their cyber resilience through Cyber Essentials assessments and advisory services. Key Responsibilities - Providing clients with high quality consultancy advice and support. - Undertaking Cyber Essentials and Cyber Essentials Plus assessments, where qualified to do so. - Generating client assessments, feedback, reports and certificates within set Service Level Agreements (SLA) targets. - Working with the Head of Cyber Essentials to identify improvements and automation of existing processes. Qualifications - IASME Cyber Essentials Assessor certification. - May consider those with 3 years’ experience in IT, IT security, or cyber security with a strong technical understanding of: - Fundamental security controls such as secure configuration, access control, malware protection, patch management, and boundary firewalls. - Operating systems (Windows, Linux, macOS, iOS, Android). - Networking protocols and server administration. - Cloud services (IaaS, SaaS, PaaS). - Security standards (e.g. ISO 27001, PCI DSS). - Willingness to achieve IASME Cyber Essentials within the initial 3 months if successful. Mentorship and support will be provided by our existing experienced team. - Desirable: - Experience working with clients in a consultancy or advisory capacity. - Experience working with vulnerability assessment and management tools such as Qualys, Nessus, InsightVM etc. - Understanding and knowledge of cloud computing, Kubernetes, docker and other relevant containerisation technology will be considered a bonus. - Junior / beginner level penetration testing qualifications such as eJPT, PNPT, CPSA etc. - Penetration testing qualifications such as OSCP, CRT, CPTS, CRTO, CRTP etc will be an advantage. Requirements - Excellent communication skills – able to explain technical concepts to non-technical audiences. - Strong organisational skills and attention to detail. - A collaborative, team-oriented mindset. - A proactive approach to learning and staying current with cyber security trends. Benefits - Work remotely from anywhere in the UK. - Be part of a supportive and forward-thinking cyber security team. - Gain exposure to a wide range of clients and technologies. - Opportunities for professional development and certification support. Remuneration - £27,500 - £39,999 Salary will be dependent on existing qualifications and experience. Basis - Permanent, full-time. Location - Home based within the UK.

United Kingdom
£27.5K - £40.0K / year
Job Closed