Posted in

Security Analyst – Systems Assurance and Compliance

Security Analyst – Systems Assurance and Compliance

CompanyCLEAR
LocationNew York, NY, USA
Salary$90000 – $115000
TypeFull-Time
Degrees
Experience LevelMid Level, Senior

Requirements

  • 3+ years of controls assessment, validation, or implementation experience. Experience with Big 4 Accounting is a plus
  • Experience with information systems security standards and practices (NIST 800-53, PCI-DSS, HIPAA, SOC 2, etc.)
  • Strong understanding of risks and internal controls, as well as the ability to evaluate and determine the adequacy and effectiveness of controls
  • Ability to effectively communicate with both technical and non-technical audiences, along with internal and external stakeholders
  • Expertise with cybersecurity and privacy principles, as well as controls used to manage data handling risks
  • Familiar with application, infrastructure, and data security risks, threats, and vulnerabilities
  • Comfortable working independently across verticals and organizational hierarchies
  • Strong attention to detail, follow-through capabilities, and escalation of key issues
  • Ability to independently organize, prioritize, and complete tasks in a high-pressure environment

Responsibilities

  • Maintain a deep understanding of industry-standard security frameworks (NIST 800-53, PCI-DSS, HIPAA, SOC 2) and regulatory requirements
  • Lead internal and external security audits and assessments to ensure compliance
  • Collaborate with stakeholders to implement and maintain effective security controls, compliance and risk mitigation strategies
  • Stay current on emerging threats and vulnerabilities, and implement appropriate security measures
  • Develop and maintain comprehensive security documentation, including certification and accreditation materials
  • Respond to security inquiries and audits from business partners, ensuring timely remediation of identified issues
  • Analyze and assess the security impact of system modifications and technological advancements
  • Provide security expertise and guidance to teams across the organization
  • Collaborate with Security Architecture, Product Security, Finance, Legal, and other relevant stakeholders to identify and assess security risks, implement appropriate security controls, mitigate identified risks in a timely manner and ensure compliance

Preferred Qualifications

  • CISSP, CRISC, CISA, or related certifications preferred