Compliance Analyst (SOC -2 Type -2)

SITA

Delhi

Hybrid

INR 2,500,000 - 4,000,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Flex Week
Flex Day
Flex-Location
Employee Wellbeing
Professional Development
Competitive Benefits

Job summary

SITA is seeking a SOC 2 Type 2 compliance specialist to drive ongoing compliance across security and operations. You will coordinate audits, validate controls, and maintain evidence in line with Trust Services Criteria, working with cross-functional teams and external auditors.

The role requires 5+ years in QA, information security, or compliance with SOC 2/ISO 27001/PCI DSS and strong audit capabilities. You will develop and maintain documentation, control matrices, and risk assessments,

Qualifications

  • Minimum of 5 years in QA, information security, or compliance with SOC 2/ISO 27001/PCI DSS.
  • Experience implementing and supporting SOC 2 Type 2 programmes with evidence collection and audit readiness.
  • Familiarity with SSDLC, access control, incident response, and risk-based assessments.

Responsibilities

  • Assist in developing and executing a SOC 2 Type 2 compliance programme with documentation and evidence.
  • Coordinate with internal teams and external auditors to deliver artefacts on time.
  • Support implementation and validation of controls including access management and monitoring.
  • Maintain Roles and Responsibilities Matrix for SOC 2 scope participants.
  • Monitor control effectiveness, identify gaps, and propose remediation actions.
  • Lead internal readiness assessments and mock audits for evaluations.
  • Track audit findings and document corrective actions with timely closure.
  • Support SOC 2 awareness and training across teams.
  • Plan and estimate compliance-related activities including resources and timelines.
  • Ensure documentation is updated to meet audit requirements.

Skills

SOC 2 expertise
Information Security
Regulatory Compliance
Audit Readiness
Documentation
Communication

Education

Bachelor's degree in CS / Information Security

Tools

Log Management Tools
Vulnerability Assessments
Change Tracking

Job description

WELCOME TO SITA

We're the team that keeps airports moving, airlines flying smoothly, and borders open. Our tech and communication innovations are the secret behind the success of the world's air travel industry.

Overview

WELCOME TO SITA

We're the team that keeps airports moving, airlines flying smoothly, and borders open. Our tech and communication innovations are the secret behind the success of the world's air travel industry.

You'll find us at 95% of international hubs. We partner closely with over 2,500 transportation and government clients, each with their own unique needs and challenges. Our goal is to find fresh solutions and cutting-edge tech to make their operations run like clockwork. Want to be a part of something big?

Are you ready to love your job? The adventure begins right here, with you, at SITA.

PURPOSE

Support the implementation, control, and continuous improvement of SOC 2 Type 2 compliance across SITA's operational and infrastructure environments. This includes preparing for and supporting external audits, maintaining documentation, and ensuring alignment with the SOC 2 Trust Services Criteria (Security, Availability, Processing Integrity, Confidentiality, and Privacy) as well as SITA's internal security and operational policies.

What You’ll Do
  • Assist in the development and execution of a SOC 2 Type 2 compliance programme, including the creation and maintenance of required documentation, audit evidence, and control matrices aligned with the Trust Services Criteria.
  • Coordinate with internal stakeholders (e.g. GRC, SoC, Infrastructure, Development, and Integration teams) and external auditors to ensure timely and accurate delivery of compliance artefacts.
  • Support the implementation and validation of technical and administrative controls such as access management, system monitoring, incident response, and data protection in line with SOC 2 requirements.
  • Maintain and update the Roles and Responsibilities Matrix to ensure all personnel involved in SOC 2 scope understand and acknowledge their duties.
  • Monitor and report on the effectiveness of SOC 2 controls, identifying gaps and recommending remediation actions.
  • Facilitate internal readiness assessments and mock audits to ensure preparedness for formal SOC 2 Type 2 evaluations.
  • Track and manage audit findings, ensuring timely resolution and documentation of corrective actions.
  • Support the development and delivery of SOC 2 awareness and training sessions for relevant teams.
  • Assist in the planning and estimation of compliance-related activities, including resource needs and timelines.
  • Ensure that all documentation (e.g. policies, procedures, system architecture diagrams, change control logs) is reviewed and updated regularly to meet SOC 2 audit requirements.
Qualifications
EXPERIENCE
  • Minimum of 5 years' experience in a Quality Assurance, Information Security, or Compliance environment, with hands-on involvement in regulatory frameworks and standards such as SOC 2, ISO 27001, or PCI DSS.
  • Demonstrated experience in implementing and supporting SOC 2 Type 2 compliance programmes, including evidence collection, control validation, and audit readiness.
  • Familiarity with secure system development lifecycle (SSDLC), access control management, incident response, and risk-based control assessments aligned with the Trust Services Criteria.
  • Experience working with cross-functional teams (e.g. infrastructure, development, operations, and GRC) to implement security controls, respond to audit findings, and drive continuous improvement.
Knowledge & Skills
  • Strong understanding of SOC 2 Trust Services Criteria (Security, Availability, Processing Integrity, Confidentiality, and Privacy), including scoping, control mapping, and evidence documentation.
  • Knowledge of security best practices for access control, system monitoring, data encryption, secure configuration, and incident response.
  • Ability to interpret audit requirements and translate them into actionable tasks for technical and non-technical stakeholders.
  • Proficiency in preparing and maintaining compliance artefacts such as control matrices, risk assessments, roles and responsibilities documentation, and policy/procedure manuals.
  • Familiarity with tools and platforms used for log management, access reviews, vulnerability assessments, and change tracking.
  • Excellent communication and documentation skills, with the ability to explain complex compliance topics clearly and effectively across diverse teams.
PROFESSION COMPETENCIES
  • SOC 2 Type 2 Implementation
  • Compliance Management
  • Business Process Improvement
  • Managing Risk
  • Audit Readiness & Response
  • Secure System Development Lifecycle
  • Standards, Procedures & Policies
  • Supplier Security Assurance
  • Quality Management
  • Requirements Analysis
  • Systems Thinking
  • Conceptual Thinking
  • Innovation
  • Managing Change
  • Conflict Resolution
  • Technical Writing & Documentation
CORE COMPETENCIES
  • Adhering to Principles & Values
  • Communication
  • Creating & Innovating
  • Customer Focus
  • Developing Talent
  • Impact & Influence
  • Leading Execution
  • Managing Performance
  • Results Orientation
  • Teamwork
Education & Qualifications
  • University degree or equivalent, preferably in Computer Science, Information Security, Engineering, or a related field.
  • Industry certifications such as Certified Information Systems Auditor (CISA), Certified Information Security Manager (CISM), SOC 2 Certified Practitioner, or ISO 27001 Lead Implementer are highly desirable.
  • ISEB Foundation or equivalent quality assurance qualification is a plus.
  • Familiarity with audit frameworks and regulatory standards including SOC 2, ISO 27001, and PCI DSS.
What We Offer

We're all about diversity. We operate in 200 countries and speak 60 different languages and cultures. We're really proud of our inclusive environment. Our offices are comfortable and fun places to work, and we make sure you get to work from home too. Find out what it's like to join our team and take a step closer to your best life ever.

  • Flex Week: Work from home up to 2 days/week (depending on your team's needs)
  • Flex Day: Make your workday suit your life and plans.
  • Flex-Location: Take up to 30 days a year to work from any location in the world.
  • Employee Wellbeing: We have got you covered with our Employee Assistance Program (EAP), for you and your dependents 24/7, 365 days/year. We also offer Champion Health - a personalized platform that supports a range of wellbeing needs.
  • Professional Development: Level up your skills with our training platforms, including LinkedIn Learning!
  • Competitive Benefits: Competitive benefits that make sense with both your local market and employment status.

SITA is an Equal Opportunity Employer. We value a diverse workforce. In support of our Employment Equity Program, we encourage women, aboriginal people, members of visible minorities, and/or persons with disabilities to apply and self-identify in the application process.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Compliance/ Cyber Security Analyst (ISO 27K, SOC 2 Type 2)
Compliance/ Cyber Security Analyst (ISO 27K, SOC 2 Type 2)

SITA Group • Delhi

Hybrid
INR 1,200,000 - 1,800,000
Flexible work from home
Employee Wellbeing Program
Professional Development
+1
Compliance Analyst (SOC -2 Type -2)
Compliance Analyst (SOC -2 Type -2)

Sita • New Delhi

On-site
INR 1,400,000 - 2,100,000
Senior Infrastructure Engineer
Senior Infrastructure Engineer

SITA Group • Delhi

On-site
INR 1,500,000 - 2,600,000
Flex Week: Work from home up to 2 days
Flex Day
Flex-Location: up to 30 days remote
+2
Associate Service Operations Specialist
Associate Service Operations Specialist

SITA • Delhi

On-site
INR 900,000 - 1,300,000
Flex Week
Flex Day
Flex Location
+3
Lead Site Reliability Engineer/ Expert
Lead Site Reliability Engineer/ Expert

SITA • Delhi

Hybrid
INR 4,000,000 - 7,000,000
Flex Week
Flex Day
Flex-Location
+3
Data Analytics & Quality Specialist
Data Analytics & Quality Specialist

SITA Group • Delhi

Hybrid
INR 700,000 - 1,100,000
Flex Week: Work from home up to 2 days
Flex Day
Flex-Location: up to 30 days remote
+3
Associate Service Operations Specialist
Associate Service Operations Specialist

SITA Group • Delhi

On-site
INR 600,000 - 900,000
Senior Test Analyst
Senior Test Analyst

SITA Group • Bengaluru

Hybrid
INR 900,000 - 1,500,000
Flex work options
Wellbeing & learning programs
Global remote work flexibility
Expert Service Operations
Expert Service Operations

SITA • Delhi

Hybrid
INR 1,000,000 - 1,500,000
Flex Week: Work from home up to 2 days/week
Flex Day: Adjust work hours
Flex-Location: Work from any location for 30 days a year
+3
Associate Field Engineer
Associate Field Engineer

SITA Group • Bengaluru

On-site
INR 360,000 - 600,000
Flex Week: Work from home up to 2 days
Flex-Location: Up to 30 days/year
Employee Wellbeing
+1