Skip to content

Security Analyst – Systems Assurance and Compliance
Company | CLEAR |
---|
Location | New York, NY, USA |
---|
Salary | $90000 – $115000 |
---|
Type | Full-Time |
---|
Degrees | |
---|
Experience Level | Mid Level, Senior |
---|
Requirements
- 3+ years of controls assessment, validation, or implementation experience. Experience with Big 4 Accounting is a plus
- Experience with information systems security standards and practices (NIST 800-53, PCI-DSS, HIPAA, SOC 2, etc.)
- Strong understanding of risks and internal controls, as well as the ability to evaluate and determine the adequacy and effectiveness of controls
- Ability to effectively communicate with both technical and non-technical audiences, along with internal and external stakeholders
- Expertise with cybersecurity and privacy principles, as well as controls used to manage data handling risks
- Familiar with application, infrastructure, and data security risks, threats, and vulnerabilities
- Comfortable working independently across verticals and organizational hierarchies
- Strong attention to detail, follow-through capabilities, and escalation of key issues
- Ability to independently organize, prioritize, and complete tasks in a high-pressure environment
Responsibilities
- Maintain a deep understanding of industry-standard security frameworks (NIST 800-53, PCI-DSS, HIPAA, SOC 2) and regulatory requirements
- Lead internal and external security audits and assessments to ensure compliance
- Collaborate with stakeholders to implement and maintain effective security controls, compliance and risk mitigation strategies
- Stay current on emerging threats and vulnerabilities, and implement appropriate security measures
- Develop and maintain comprehensive security documentation, including certification and accreditation materials
- Respond to security inquiries and audits from business partners, ensuring timely remediation of identified issues
- Analyze and assess the security impact of system modifications and technological advancements
- Provide security expertise and guidance to teams across the organization
- Collaborate with Security Architecture, Product Security, Finance, Legal, and other relevant stakeholders to identify and assess security risks, implement appropriate security controls, mitigate identified risks in a timely manner and ensure compliance
Preferred Qualifications
- CISSP, CRISC, CISA, or related certifications preferred