Enable job alerts via email!

Security Compliance & Risk Analyst

Ontic

United States

On-site

USD 100,000 - 150,000

Full time

3 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading software company in the security sector is seeking a Security Compliance & Risk Analyst. The successful candidate will coordinate third-party audits, manage vendor risk, and maintain compliance with essential security frameworks, making a significant impact in ensuring the organization’s security posture.

Benefits

Medical, Vision & Dental Benefits
401k
Stock Options
Learning Stipend
Flexible PTO Policy

Qualifications

  • 1-3 years experience in information security, compliance or risk-related role.
  • Knowledge of security-related frameworks such as FedRAMP, SOC 2 and ISO27001.
  • Security certifications such as CISA, CISSP or similar preferred.

Responsibilities

  • Coordinate third party audits and assessments such as FedRAMP, SOC 2 and ISO27001.
  • Manage vendor risk management program.
  • Perform quarterly internal security audits and assessments.

Skills

Communication
Organization
Information Security
Risk Management

Education

BA/BS or higher in Cyber Security, Computer Science, Information Technology

Tools

Power BI
OneTrust

Job description

Join to apply for the Security Compliance & Risk Analyst role at Ontic

Join to apply for the Security Compliance & Risk Analyst role at Ontic

Who We Are

Ontic makes software that corporate and government security professionals use to proactively manage threats, mitigate risks, and make businesses stronger. Built by security and software professionals, the Ontic Platform connects and unifies critical data, business processes, and collaborators in one place, consolidating security intelligence and operations. We call this Connected Intelligence. Ontic serves corporate security teams across key functions, including intelligence, investigations, GSOC, executive protection, and security operations.

Who We Are

Ontic makes software that corporate and government security professionals use to proactively manage threats, mitigate risks, and make businesses stronger. Built by security and software professionals, the Ontic Platform connects and unifies critical data, business processes, and collaborators in one place, consolidating security intelligence and operations. We call this Connected Intelligence. Ontic serves corporate security teams across key functions, including intelligence, investigations, GSOC, executive protection, and security operations.

As Ontic employees, we put our mission first and value the trust bestowed upon us by our clients to help keep their people safe. We approach our clients and each other with empathy while focusing on the execution of our strategy. And we have fun doing it.

Who We Are

Ontic makes software that corporate and government security professionals use to proactively manage threats, mitigate risks, and make businesses stronger. Built by security and software professionals, the Ontic Platform connects and unifies critical data, business processes, and collaborators in one place, consolidating security intelligence and operations. We call this Connected Intelligence. Ontic serves corporate security teams across key functions, including intelligence, investigations, GSOC, executive protection, and security operations.

As Ontic employees, we put our mission first and value the trust bestowed upon us by our clients to help keep their people safe. We approach our clients and each other with empathy while focusing on the execution of our strategy. And we have fun doing it.

Who You Are

People are what make Ontic a great place to work. We are looking for a hungry and mission-driven Security Compliance & Risk Analyst that will work closely with all key stakeholders, and play an important role as we continue to grow. Our team is passionate about security, and we are seeking an individual who is enthusiastic about all aspects of IT and Information Security. This role reports to our Director of Information Security.

Responsibilities

  • Coordinate third party audits and assessments such as FedRAMP, SOC 2 and ISO27001
  • Manage vendor risk management program
  • Maintain and manage the enterprise risk register; coordinate risk treatment and remediation planning with GRC stakeholders
  • Coordinate internal risk assessments and business continuity/disaster recovery (BC/DR) and incident response (IR) exercises
  • Perform quarterly internal security audits and assessments
  • Respond to client audits, assessments and questionnaires
  • Assemble compliance reports and dashboards to track progress, identify risks, and support audit readiness
  • Support the data privacy program by participating in privacy risk assessments, vendor privacy reviews, and alignment with ISO 27701 and other applicable privacy frameworks
  • Maintain policies and procedures for continuous compliance with FedRAMP, SOC 2, and ISO27001
  • Assist in asset management efforts, including risk-based asset tracking, documentation, and alignment with security controls

Preferred Qualifications

  • 1-3 years experience in information security, compliance or risk-related role
  • BA/BS or higher in Cyber Security, Computer Science, Information Technology, Management of Information Systems, or a related field
  • Prior experience with Hyperproof administrator is a plus
  • Power BI experience is a plus
  • Prior experience as a OneTrust administrator highly desirable
  • Excellent written and verbal communication skills
  • Extremely organized and able to manage multiple, time-sensitive projects simultaneously
  • Experience with security-related frameworks such as FedRAMP (NIST 800-53 R5), SOC 2 and ISO27001
  • Knowledge and experience with Privacy related regulations such as HIPAA, GDPR, CCPA or PIPEDA
  • Security certifications such as CISA, CISSP or similar

Only U.S. citizens are eligible to apply for this role

Don’t meet every single requirement? Studies have shown that women and people of color are less likely to apply to jobs unless they meet every single qualification. At Ontic we are dedicated to building a diverse, inclusive and authentic workplace, so if you’re excited about this role, we encourage you to apply anyways. You may be just the right candidate for this or other roles.

Ontic prioritizes the full inclusion of qualified individuals, providing necessary accommodations for those with disabilities to perform essential job functions. If you need assistance during the application or interview process or job tasks, please contact us at recruitment@ontic.co or call (512) 572-7400

Ontic Benefits & Perks

Competitive Salary

Medical, Vision & Dental Benefits

401k

Stock Options

HSA Contribution

Learning Stipend

Flexible PTO Policy

Quarterly company ME (mental escape) days

Generous Parental Leave policy

Home Office Stipend

Mobile Phone Reimbursement

Home Internet Reimbursement for Remote Employees

Anniversary & Milestone Celebrations

Ontic is an equal-opportunity employer. We are committed to a work environment that celebrates diversity. We do not discriminate against any individual based on race, color, sex, national origin, age, religion, marital status, sexual orientation, gender identity, gender expression, military or veteran status, disability, or any factors protected by applicable law.

All Ontic employees are expected to understand and adhere to all Ontic Security and Privacy related policies in order to protect Ontic data and our clients data.

Ontic Benefits & Perks

Competitive Salary

Medical, Vision & Dental Benefits

401k

Stock Options

HSA Contribution

Learning Stipend

Flexible PTO Policy

Quarterly company ME (mental escape) days

Generous Parental Leave policy

Home Office Stipend

Mobile Phone Reimbursement

Home Internet Reimbursement for Remote Employees

Anniversary & Milestone Celebrations

Ontic is an equal-opportunity employer. We are committed to a work environment that celebrates diversity. We do not discriminate against any individual based on race, color, sex, national origin, age, religion, marital status, sexual orientation, gender identity, gender expression, military or veteran status, disability, or any factors protected by applicable law.

All Ontic employees are expected to understand and adhere to all Ontic Security and Privacy related policies in order to protect Ontic data and our clients data.

Seniority level
  • Seniority level
    Entry level
Employment type
  • Employment type
    Full-time
Job function
  • Job function
    Finance and Sales
  • Industries
    Software Development

Referrals increase your chances of interviewing at Ontic by 2x

Get notified about new Risk Analyst jobs in United States.

Atlanta, GA $100,000.00-$150,000.00 1 week ago

Charlotte, NC $100,000.00-$150,000.00 1 week ago

Austin, TX $100,000.00-$150,000.00 1 week ago

VP/Director, Fintech Third-Party Risk Manager
Consultant - Chief Risk Officer, Investments (Fractional/Contract Role)
Associate Liquidity Risk Manager, Prime Brokerage

United States $130,900.00-$154,000.00 2 weeks ago

United States $160,000.00-$190,000.00 2 weeks ago

United States $58,656.00-$75,000.00 1 week ago

Boston, MA $115,765.00-$154,353.00 2 weeks ago

King of Prussia, PA $200,000.00-$250,000.00 2 weeks ago

GRC (Governance, Risk, and Compliance) Analyst
Senior Compliance Analyst (Risk Assessment and Oversight) - Remote

Minneapolis, MN $74,000.00-$118,000.00 2 weeks ago

We’re unlocking community knowledge in a new way. Experts add insights directly into each article, started with the help of AI.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Senior Risk Analyst

Davita Inc.

McLean

Remote

USD 125,000 - 150,000

6 days ago
Be an early applicant

Account Executive - $225k+ Earners - Series A Equity - REMOTE - 4.8 Glassdoor

Bravado

Remote

USD 90,000 - 120,000

3 days ago
Be an early applicant

Machine Learning Model Risk Specialist

Upstart

Remote

USD 108,000 - 150,000

2 days ago
Be an early applicant

Risk Adjustment Auditing Specialist

Norwood

Remote

USD 80,000 - 110,000

9 days ago

Machine Learning Model Risk Specialist

Ohiox

Remote

USD 108,000 - 150,000

2 days ago
Be an early applicant

Senior Business Risk & Controls Advisor - Trade Finance

First Citizens Bank

Charlotte

Remote

USD 125,000 - 167,000

Yesterday
Be an early applicant

Cyber Risk Analyst - Remote

501 CSAA Insurance Services, Inc.

Colorado

Remote

USD 90,000 - 120,000

Yesterday
Be an early applicant

Financial Risk Analyst (Hiring Immediately)

Society for Conservation Biology

Phoenix

Remote

USD 127,000 - 244,000

2 days ago
Be an early applicant

Financial Risk Analyst (Hiring Immediately)

Society for Conservation Biology

Guadalupe

Remote

USD 127,000 - 244,000

2 days ago
Be an early applicant