Elastic1 день назад
Senior Information Security Analyst - Compliance - InfoSec
Зарплата не указана
United States
Навыки
SOC 2ISO 27001PCI DSSFedRAMPTISAXCyber Essentials PlusAI technologiesCloud-nativeSaaS
Обязанности
- 01Lead and coordinate compliance programs supporting industry and regulatory frameworks, including SOC 2, ISO 27001, PCI DSS, FedRAMP, TISAX, Cyber Essentials Plus, and other applicable certifications
- 02Plan, manage, and execute internal and external audits by partnering with stakeholders to ensure timely evidence collection, control validation, and successful audit outcomes
- 03Develop, maintain, and enhance governance processes that strengthen compliance while reducing operational overhead and improving scalability
- 04Own and continuously evolve Elastic's security awareness and education program to promote a strong culture of security across the organization
- 05Partner with Engineering, Product, IT, Legal, and business teams to translate compliance requirements into practical, risk-based security controls and operational processes
- 06Measure and report on compliance health through meaningful metrics, dashboards, and executive-ready reporting that drive informed decision-making
- 07Identify opportunities to automate compliance activities
- 08Streamline audit readiness
- 09Use modern governance methods to improve operational efficiency
- 10Champion the thoughtful adoption of AI to modernize compliance operations
- 11Find ways to enhance evidence collection, control monitoring, risk analysis, documentation, and audit workflows
- 12Encourage the responsible and secure use of AI technologies
Требования
- 01Experience leading compliance audits and certification programs in a cloud-native or SaaS environment, including some combination of SOC 2, ISO 27001, PCI DSS, FedRAMP, UK Cyber Essentials Plus, and TISAX
- 02Experience managing or supporting a security awareness and education program
- 03Strong organizational skills with the ability to independently prioritize work while managing multiple initiatives
- 04Experience translating complex compliance and regulatory requirements into practical guidance for technical and business stakeholders
- 05Excellent collaboration skills and the ability to build trusted partnerships across cross-functional teams
- 06Experience with evaluating or adopting AI technologies to improve governance, compliance, security operations, or risk management
- 07Understanding AI governance, responsible AI practices or emerging AI related compliance considerations
Условия
- 01Compensation for this role is in the form of base salary
- 02This role does not have a variable compensation component
- 03Typical starting salary range: $133,100 - $210,600 USD
- 04Select locations salary range: $159,900 - $252,900 USD
- 05Company-matched 401k with dollar-for-dollar matching up to 6% of eligible earnings
- 06Range of other benefits offered with a holistic emphasis on employee well-being
- 07Eligible to participate in Elastic's stock program