Senior Security Compliance Analyst

Jobtailor

Burlington (MA)

On-site

USD 120,000 - 165,000

Full time

6 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Jobtailor is actively seeking a Senior Security & Compliance Engineer to lead and scale security programs for a fast-growing SaaS environment in Massachusetts. You will drive ISO 27001, SOC 2, NIST, GDPR alignment and manage security tooling across AWS, Azure, or GCP while collaborating with product, engineering, and legal teams.

Ideal candidates bring 4+ years in information security/compliance, strong audit readiness, and a track record of implementing compliance-as-code.

Qualifications

  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience
  • 4+ years of experience in information security, compliance, or a related technical role
  • Strong knowledge of ISO 27001, SOC 2, NIST, PCI-DSS, HIPAA, and GDPR
  • Hands-on experience with AWS, Azure, or GCP and their security services
  • Familiarity with auditing, logging, monitoring, and vulnerability management tools, including SAST, DAST, and SCA
  • Experience with compliance automation tools such as Terraform, Cloud Custodian, or other compliance-as-code frameworks
  • Background in DevSecOps or secure software development practices is a plus
  • Security certifications such as CISSP, CISM, CISA, or CCSK preferred
  • Excellent documentation, communication, and collaboration skills
  • Repetitive motion of wrists, hands and fingers for using a computer
  • Sitting for extended periods, remaining in a stationary position

Skills

Information Security
Risk Management
Security Policies
Control Testing
Vulnerability Management
DevSecOps
Compliance-as-Code
Access Controls
Logging
Encryption

Education

Bachelor's degree in Computer Science, Information Security, or related field

Tools

Terraform
Cloud Custodian
SAST
DAST
SCA
AWS
Azure
GCP

Job description

Requirements
  • Bachelor's degree in Computer Science, Information Security, or a related field, or equivalent experience
  • 4+ years of experience in information security, compliance, or a related technical role
  • Strong knowledge of ISO 27001, SOC 2, NIST, PCI-DSS, HIPAA, and GDPR
  • Hands-on experience with AWS, Azure, or GCP and their security services
  • Familiarity with auditing, logging, monitoring, and vulnerability management tools, including SAST, DAST, and SCA
  • Experience with compliance automation tools such as Terraform, Cloud Custodian, or other compliance-as-code frameworks
  • Background in DevSecOps or secure software development practices is a plus
  • Security certifications such as CISSP, CISM, CISA, or CCSK preferred
  • Excellent documentation, communication, and collaboration skills
  • Repetitive motion of wrists, hands and fingers for using a computer
  • Sitting for extended periods, remaining in a stationary position
Core Competencies

Demonstrates expertise in building and scaling SaaS security and compliance programs aligned with SOC 2, ISO 27001, NIST, and GDPR. Proficient in implementing security policies, risk management, and compliance automation tools to enhance organizational security posture.

Highest-signal resume keywords
  • ISO 27001
  • SOC 2
  • NIST
  • AWS Security Services
  • Compliance Automation Tools
ATS Optimization Keywords
Hard Skills
  • Information Security
  • Risk Management
  • Security Policies
  • Control Testing
  • Vulnerability Management
  • DevSecOps
  • Compliance-as-Code
  • Access Controls
  • Logging
  • Encryption
Soft Skills
  • Documentation
  • Communication
  • Collaboration
Certifications & Qualifications
  • CISSP
  • CISM
  • CISA
  • CCSK
Industry Keywords
  • Compliance
  • Audit Readiness
  • Third-Party Risk Assessments
  • Security Posture
  • GDPR
  • PCI-DSS
  • HIPAA
Tools & Technologies
  • Terraform
  • Cloud Custodian
  • SAST
  • DAST
  • SCA
  • AWS
  • Azure
  • GCP
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal, Product Security
Principal, Product Security

Jobtailor • Illinois

On-site
USD 140,000 - 200,000
Information Security Specialist – Regional
Information Security Specialist – Regional

Jobtailor • Missouri

On-site
USD 90,000 - 130,000
Senior Security Analyst
Senior Security Analyst

Jobtailor • Columbus (OH)

On-site
USD 120,000 - 155,000
Senior Manager – Product Cybersecurity
Senior Manager – Product Cybersecurity

Jobtailor • Chicago (IL)

On-site
USD 150,000 - 230,000
Senior Product Security Engineer
Senior Product Security Engineer

Jobtailor • Illinois

On-site
USD 120,000 - 180,000
Cybersecurity Manager I
Cybersecurity Manager I

Jobtailor • Colorado

On-site
USD 150,000 - 210,000
Data Security Administrator – SecuPi
Data Security Administrator – SecuPi

Jobtailor • Brooklyn (OH)

On-site
USD 90,000 - 150,000
Cloud Security Architect
Cloud Security Architect

Jobtailor • Massachusetts

On-site
USD 180,000 - 240,000
Information Security Officer
Information Security Officer

Jobtailor • Massachusetts

On-site
USD 200,000 - 320,000
Manager – Cybersecurity Fusion Center
Manager – Cybersecurity Fusion Center

Jobtailor • West Valley City (UT)

On-site
USD 190,000 - 240,000