Overview
Senior Compliance Specialist responsible for scaling security, privacy, and compliance programs. Manages key certifications, privacy program operations, DORA compliance, and BCMS maturity.
What you'll do
- Support governance activities for the security, privacy, and compliance program, including ISMS documentation, evidence, policies/P&Ps, and audit trails.
- Maintain and improve active certifications/attestations (e.g., ISO 27001, SOC 2 Type II, HIPAA, PCI DSS) with cross-functional stakeholders.
- Develop and operate the privacy program in partnership with Legal, Security, IT, and business stakeholders.
- Lead DORA-related compliance work, including control mapping, gap assessments, remediation tracking, evidence collection, and readiness planning.
- Develop and mature the Business Continuity Management System (BCMS), including governance, documentation, testing coordination, and continuous improvement.
- Support enterprise risk management activities, including risk methodology, risk assessments, treatment planning, and follow-up.
What you'll need
- 3+ years of experience in security, privacy, or compliance.
- 2+ years of experience working for an Independent Software Vendor, SaaS provider, or other technology company.
- Strong understanding of security and compliance frameworks/regulations including ISO 27001, SOC 2 Type II, HIPAA, PCI DSS, GDPR, CCPA, and DORA.
- Experience with compliance operations, audits, risk management processes, and control-based programs.
- Experience coordinating cross-functional workstreams across engineering, IT, legal, and business teams.
- Working knowledge of cloud technologies and managed service environments.
- Strong written and verbal communication skills for technical and non-technical audiences.
Details
Read the full description and apply on the company’s own careers page.