Security Compliance Analyst

Neara

Northern (KY)

Hybrid

USD 90,000 - 140,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Apkudo is seeking an experienced Information Security & Compliance Specialist to lead SOC 1/2 controls, ISO audits, and security program improvements. You will coordinate audits with external auditors, conduct internal reviews, and drive security awareness across the organization.

The role requires proven auditing expertise, strong communication, and the ability to partner with Legal and IT teams to maintain a high security posture.

Qualifications

  • Professional experience in information security auditing with a focus on SOC 1 & 2 standards.
  • Detailed knowledge of ISO 27001 standard, ISO Certification Process Audits, and SOC 1 and 2 standards.
  • Experience with AWS and Google Workspace
  • Strong analytical problem-solving skills and attention to detail
  • Excellent verbal and written communication skills, as well as strong partnership skills
  • Experience with cybersecurity and auditing, preferably with 3-5 years of experience
  • Degree in Computer Science, Computer Engineering, IT, or similar field, or 3+ years of IT security or cybersecurity related work experience

Responsibilities

  • Manage and enforce Apkudo's SOC 1 & 2 Controls, ensuring that all security practices are compliant with industry standards
  • Be the main point of contact and liaison with external SOC auditors, facilitating effective communication and resolution of audit findings
  • Perform regular internal audits for SOC and ISO controls, identifying areas for improvement and ensuring that corrective actions are implemented
  • Lead the Compliance member of our Information Security Council, driving security awareness and training for key security focuses throughout the organization
  • Monitor and resolve alerts and alarms in critical systems, ensuring that potential security threats are identified and mitigated promptly
  • Manage security event responses and investigations, providing timely and effective resolution to security incidents
  • Coordinate regular penetration testing and drive improvement actions, ensuring that Apkudo's security posture is maintained and improved
  • Be the company administrator for password and phishing management systems, ensuring that security policies and procedures are up-to-date and compliant
  • Review and update security-related policies and procedures to ensure alignment with industry standards and best practices
  • Drive awareness and training of key security focuses throughout the organization, ensuring that all employees are equipped to maintain a high level of security awareness
  • Assist and support company stakeholders with questions regarding information security, providing timely and effective guidance and support
  • Stay up-to-date with the latest information security management trends and best practices, applying this knowledge to drive security improvements within Apkudo
  • Work with Legal to identify and ensure compliance with cryptographic and data encryption regulations
  • Participate in ad-hoc projects related to improving Apkudo's security posture, applying a collaborative and flexible approach to drive security improvements

Skills

SOC auditing experience
ISO 27001 & SOC 1/2 knowledge
Cybersecurity auditing
Analytical problem-solving
Communication skills

Education

Degree in CS/IT/CompEng or 3+ years IT security experience

Tools

AWS
Google Workspace

Job description

About Job

Apkudo’s growth has hit a pivotal point of requiring a dedicated person to take over the more technical aspects of our information security management system and certifications. This role is part of our Apkudo Compliance Team whose mission is to drive a commitment and culture of improvement that ensures we maintain a high level and recognizable standard of compliance, quality and ethics.

If you have proven professional experience, detailed knowledge of information security auditing, and want to make Apkudo more productive and efficient, this is the role and place for you!

Skills & Qualification
  • Professional experience in information security auditing with a focus on SOC 1 & 2 standards

  • Detailed knowledge of ISO 27001 standard, ISO Certification Process Audits, and SOC 1 and 2 standards

  • Experience with AWS and Google Workspace

  • Strong analytical problem-solving skills and attention to detail

  • Excellent verbal and written communication skills, as well as strong partnership skills

  • Experience with cybersecurity and auditing, preferably with 3-5 years of experience

  • Degree in Computer Science, Computer Engineering, IT, or similar field, or 3+ years of IT security or cybersecurity related work experience

Responsibilities
  • Manage and enforce Apkudo's SOC 1 & 2 Controls, ensuring that all security practices are compliant with industry standards

  • Be the main point of contact and liaison with external SOC auditors, facilitating effective communication and resolution of audit findings

  • Perform regular internal audits for SOC and ISO controls, identifying areas for improvement and ensuring that corrective actions are implemented

  • Lead the Compliance member of our Information Security Council, driving security awareness and training for key security focuses throughout the organization

  • Monitor and resolve alerts and alarms in critical systems, ensuring that potential security threats are identified and mitigated promptly

  • Manage security event responses and investigations, providing timely and effective resolution to security incidents

  • Coordinate regular penetration testing and drive improvement actions, ensuring that Apkudo's security posture is maintained and improved

  • Be the company administrator for password and phishing management systems, ensuring that security policies and procedures are up-to-date and compliant

  • Review and update security-related policies and procedures to ensure alignment with industry standards and best practices

  • Drive awareness and training of key security focuses throughout the organization, ensuring that all employees are equipped to maintain a high level of security awareness

  • Assist and support company stakeholders with questions regarding information security, providing timely and effective guidance and support

  • Stay up-to-date with the latest information security management trends and best practices, applying this knowledge to drive security improvements within Apkudo

  • Work with Legal to identify and ensure compliance with cryptographic and data encryption regulations

  • Participate in ad-hoc projects related to improving Apkudo's security posture, applying a collaborative and flexible approach to drive security improvements

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Compliance & Controls Lead
Security Compliance & Controls Lead

Neara • Northern (KY)

Hybrid
USD 90,000 - 140,000
Security Compliance Analyst
Security Compliance Analyst

Managed IT & Security Provider • Alexandria (VA)

On-site
USD 75,000 - 100,000
401(k)
401(k) matching
Bonus based on performance
+3
Security Compliance Analyst III
Security Compliance Analyst III

Bridgehead IT LLC • San Antonio (TX)

On-site
USD 90,000 - 135,000
Security Compliance Analyst III
Security Compliance Analyst III

Bridgehead IT • San Antonio (TX), Northern (KY)

Hybrid
USD 90,000 - 130,000
Application Security Architect
Application Security Architect

Alarm.com • Tysons (VA)

On-site
USD 140,000 - 210,000
Senior Security Risk & Compliance Analyst
Senior Security Risk & Compliance Analyst

APCO Holdings, LLC • Ponte Vedra Beach (FL)

On-site
USD 115,000 - 165,000
Competitive compensation
Medical, dental, and vision benefits
401(k) with company match
+2
Senior Information Security Engineer
Senior Information Security Engineer

Grayson Search Partners • Nashville (TN)

On-site
USD 120,000 - 150,000
GRC Analyst - Public Sector
GRC Analyst - Public Sector

Apply • Washington, Northern (KY)

Hybrid
USD 110,000 - 140,000
Senior Analyst, Digital Trust and Resilience
Senior Analyst, Digital Trust and Resilience

Crypto.com • Abbeyville (CO)

On-site
USD 90,000 - 140,000
Senior Manager of Risk and Compliance
Senior Manager of Risk and Compliance

PTR Global • United States

On-site
USD 100,000 - 130,000