Information Security Compliance Specialist

Docebo

Milano

In loco

EUR 70.000 - 110.000

Tempo pieno

14 giorni+
Generatore di candidature

Fatti notare per questo impiego — genera un curriculum e una lettera di presentazione personalizzati in circa un minuto.

Supera i filtri ATS

Descrizione del lavoro

Docebo is seeking a Cybersecurity Compliance Analyst to safeguard security posture across our global SaaS platform. You will translate complex frameworks like NIS2, NIST, GDPR, ISO, SOC, and FedRAMP into actionable actions that accelerate deal cycles and strengthen customer trust.

You’ll lead audits, respond to security requests, map client requirements to standard processes, and collaborate with legal and GRC teams to ensure ongoing compliance and risk management.

Competenze

  • 4+ years supporting security activities, audits, and compliance in SaaS.
  • Familiar with ISO/IEC standards and SOC 2.
  • Strong knowledge of GDPR, privacy regulations, and data protection.
  • Experience with vendor risk management and audits.
  • Excellent written and verbal English communication.

Mansioni

  • Respond to prospect and customer security requests and deliver flawless responses regarding Docebo's compliance and security posture.
  • Lead and support annual customer audits and CAPs with the GRC team.
  • Review Customer Agreements, Terms & Conditions, and Data Processing Addendums with the legal team.
  • Monitor security controls and maintain dashboards for vendor risk management.
  • Publish and curate compliance materials on Docebo trust pages and automate processes where possible.

Conoscenze

SaaS security
Compliance audits
Privacy regulations
Regulatory frameworks
Vendor risk management
Automation tooling

Formazione

Bachelor's degree in Computer Science or related field

Strumenti

Vanta
1UP

Descrizione del lavoro

\

Artificial Intelligence. Actual Impact.\

\

At Docebo, we’re using AI to change how people learn at work—and we mean actually change it. We’re an AI-powered learning platform that helps organizations create, deliver, and manage training all in one place. But our real mission goes deeper: we help teams move faster, work smarter, and focus on the work that truly matters. Our platform is built with intelligent, time-saving tools that personalize learning, eliminate busywork, and turn training from a checkbox into a superpower. The result? Better experiences for learners and real results for businesses.\

\

We’re shaping the future of learning with a team that isn’t afraid to challenge the status quo. If you're excited by the idea of using AI to make work-life better for real people–you’ll feel right at home here. And it’s not just what we build, it’s how we show up. At Docebo, our values aren’t just posters on the wall—they guide how we work every day. We call it the Docebo Heart: trust by default, assume positive intent, and create space for different perspectives to thrive.\

\

So… what are you waiting for? Join 900+ Docebians around the world and help us reinvent the way people learn, because learning never stops.\

\
THE ADVENTURE AHEAD
\

As our Cybersecurity Compliance Analyst, you will be the front-line champion and strategist safeguarding Docebo's security posture and driving customer trust. You will bridge the gap between technical rigor and client confidence, translating complex compliance frameworks (like NIS2, NIST, GDPR, ISO, SOC, and FedRAMP) into competitive advantages. In this role, your work directly accelerates deal cycles, empowers our sales and legal teams, and ensures our global SaaS ecosystem remains fortress-secure.\

\
THE DAY-TO-DAY
\
    \
  • Champion Customer Trust: Respond to prospect and customer security requests, review RFIs/RFQs, and deliver flawless responses regarding Docebo's compliance and security posture.
  • \
  • Drive Compliance & CAPs: Tackle customer security questionnaires head-on and collaborate internally to establish Corrective Action Plans (CAPs) for outstanding requirements.
  • \
  • Power Legal Alignment: Partner with the Docebo legal team to review Customer Agreements, Terms & Conditions, and Data Processing Addendums, seamlessly mapping client requirements to standard processes.
  • \
  • Spearhead Audit Readiness: Lead and support annual customer audits while partnering with the GRC team during SOC2, ISO (27001, 9001, 42001), and NIS2 assessments.
  • \
  • Automate for Efficiency: Leverage AI tools and basic programming capabilities to automate internal processes and optimize compliance workflows.
  • \
  • Publish & Curate Insights: Organize internal compliance documentation and publish up-to-date materials directly to Docebo’s "trust pages" using platforms like Vanta.
  • \
  • Evaluate Vendor Risk: Support third-party vendor risk assessments, monitor security controls, and maintain management reporting dashboards to mitigate external supplier risks.
  • \
\
YOUR SUPERPOWERS
\
    \
  • Proven SaaS Expertise: 4+ years of hands-on experience supporting security activities, audits, and compliance in SaaS environments, backed by a Bachelor's degree in Computer Science or a related field.
  • \
  • Cloud & Privacy Mastery: Solid working knowledge of cloud environments (AWS, Azure, GCloud) alongside data privacy regulations like GDPR, CCPA, and PIPEDA.
  • \
  • Framework Fluent: Deep familiarity with security and compliance standards including ISO/IEC (27001, 27017, 27018, 27701, 9001, 42001), SOC 2, PCI, NIS2, and CFR21 Part 11.
  • \
  • Technical Savvy & Automation Mindset: Basic coding skills and hands-on experience with modern security governance platforms like Vanta and 1UP.
  • \
  • Articulate Communicator: Exceptional written and verbal English communication skills, with a knack for translating complex technical concepts into clear customer answers.
  • \
  • Problem-Solver Extraordinaire: Proactive, adaptable, and deeply passionate about the intersection of technology, business, and enterprise learning.
  • \
\
BONUS POINTS
\
    \
  • Certified Specialist: Holding certifications such as CISA, CIPP (or CIPT), or CompTIA Security+.
  • \
  • FedRAMP Familiarity: Basic understanding and exposure to the FedRAMP framework.
  • \
  • Advanced Academic Background: Specialized degree focus in Information Security or Auditing.
  • \
\
OUR INTERVIEW PROCESS
\
    \
  • Step 1: We’ll kick things off with a 30-minute video call with a member of our Talent team. We’ll get to know you, share more about the role and team, and make sure we’re aligned.
  • \
  • Step 2: A 60-minute video call with the hiring manager, where they’ll dig deeper into your experience, approach, and what excites you most about this opportunity.
  • \
  • Step 3: A 45-minute practical case study/technical discussion with key members of the Compliance & GRC team.
  • \
  • Step 4: A final 30-minute chat with our Security Leadership team to discuss long-term vision, growth, and team alignment.
  • \
Ottieni la revisione del curriculum gratis e riservata.
o trascina qui il file.
Similar jobs

Offerte di lavoro simili che vale la pena confrontare

Cybersecurity Compliance Analyst
Cybersecurity Compliance Analyst

Docebo • Milano

Ibrido
EUR 70.000 - 100.000
ESPP (Employee Share Purchase Plan)
Health benefits
Paid vacation days
+4
Information Security Compliance Specialist
Information Security Compliance Specialist

Docebo • Biassono

Ibrido
EUR 38.000 - 50.000
Health benefits
ESPP 15% discount
Paid vacation days
+5
Senior Security Engineer
Senior Security Engineer

Docebo • Milano

Ibrido
EUR 80.000 - 110.000
ESPP discount
Health benefits
Docebo Days
+3
Senior Security Engineer
Senior Security Engineer

Docebo • Turbigo

In loco
EUR 51.000 - 55.000
Senior Security Engineer
Senior Security Engineer

Docebo • Biassono

Ibrido
EUR 51.000 - 55.000
Employee Share Purchase Plan (ESPP) at
Health benefits
Paid vacation days
+1
Senior Product Engineer I - Go
Senior Product Engineer I - Go

Docebo • Milano

Ibrido
EUR 90.000 - 120.000
Hybrid SaaS Cybersecurity Compliance Analyst
Hybrid SaaS Cybersecurity Compliance Analyst

Docebo • Milano

Ibrido
EUR 70.000 - 100.000
ESPP (Employee Share Purchase Plan)
Health benefits
Paid vacation days
+4
Workplace Experience Manager
Workplace Experience Manager

Docebo • Milano

In loco
EUR 60.000 - 90.000
Health benefits
Paid vacation days
Docebo Days (company-wide)
+3
Staff Product Engineer
Staff Product Engineer

Docebo • Milano

In loco
EUR 90.000 - 130.000
SaaS InfoSec & Compliance Specialist (Hybrid)
SaaS InfoSec & Compliance Specialist (Hybrid)

Docebo • Biassono

Ibrido
EUR 38.000 - 50.000
Health benefits
ESPP 15% discount
Paid vacation days
+5