Cybersecurity Analyst - Commercial Compliance

Armissecurity

North America
Base: 140,000 - 160,000; bonus/equity: not specifi...
On-site
Soc 2 type 2, iso 27001, iso 27017, iso 27018, iso 42001 compliance
Continuous monitoring and evidence gathering
Automated solutions with ai for evidence collection
Provide direct support for external and internal audit efforts, specifically focusing on frameworks such as SOC 2 Type 2, ISO 27001, ISO 27017, ISO 27018, and ISO 42001

Job Summary

  • Provide direct support for external and internal audit efforts, specifically focusing on frameworks such as SOC 2 Type 2, ISO 27001, ISO 27017, ISO 27018, and ISO 42001.
  • Execute and document procedures for continuous monitoring and evidence gathering, utilizing AI to reduce manual efforts.
  • Review, edit, and update internal security policies, standards, and procedures to ensure they accurately reflect current operational controls and compliance requirements.

Matching Summary

Provide direct support for external and internal audit efforts, specifically focusing on frameworks such as SOC 2 Type 2, ISO 27001, ISO 27017, ISO 27018, and ISO 42001.

Salary

Base: 140,000 - 160,000; Bonus/Equity: Not specified; Benefits: Not specified

Skills & Requirements

Must-have

  • SOC 2 Type 2, ISO 27001, ISO 27017, ISO 27018, ISO 42001 compliance
  • Continuous monitoring and evidence gathering
  • Automated solutions with AI for evidence collection
  • Review and update security policies and procedures
  • Vendor risk management and tracking compliance

Nice-to-have

  • Experience with FedRAMP authorization process
  • Experience with global remote teams
  • Familiarity with JIRA and Asana
  • Experience with Microsoft Office 365 and Google Workspace
  • Experience with GRC automation platforms

Key Requirements

  • 5+ years of experience in security, IT audit, GRC, or related technical field
  • Bachelor's degree in Cybersecurity, IT, Computer Science, or equivalent experience
  • CompTIA Security+ certification
  • Foundational understanding of regulatory environments and security frameworks
  • Foundational understanding of enterprise IT and OT/ICS environments
  • Foundational understanding of AWS and GCP cloud security

Work Rights

Not specified

Tailored Resume

Cover Letter