Elastic1 день назад

Senior Information Security Analyst - Compliance - InfoSec

Зарплата не указана
United States

Навыки

SOC 2ISO 27001PCI DSSFedRAMPTISAXCyber Essentials PlusAI technologiesCloud-nativeSaaS

Обязанности

  • 01Lead and coordinate compliance programs supporting industry and regulatory frameworks, including SOC 2, ISO 27001, PCI DSS, FedRAMP, TISAX, Cyber Essentials Plus, and other applicable certifications
  • 02Plan, manage, and execute internal and external audits by partnering with stakeholders to ensure timely evidence collection, control validation, and successful audit outcomes
  • 03Develop, maintain, and enhance governance processes that strengthen compliance while reducing operational overhead and improving scalability
  • 04Own and continuously evolve Elastic's security awareness and education program to promote a strong culture of security across the organization
  • 05Partner with Engineering, Product, IT, Legal, and business teams to translate compliance requirements into practical, risk-based security controls and operational processes
  • 06Measure and report on compliance health through meaningful metrics, dashboards, and executive-ready reporting that drive informed decision-making
  • 07Identify opportunities to automate compliance activities
  • 08Streamline audit readiness
  • 09Use modern governance methods to improve operational efficiency
  • 10Champion the thoughtful adoption of AI to modernize compliance operations
  • 11Find ways to enhance evidence collection, control monitoring, risk analysis, documentation, and audit workflows
  • 12Encourage the responsible and secure use of AI technologies

Требования

  • 01Experience leading compliance audits and certification programs in a cloud-native or SaaS environment, including some combination of SOC 2, ISO 27001, PCI DSS, FedRAMP, UK Cyber Essentials Plus, and TISAX
  • 02Experience managing or supporting a security awareness and education program
  • 03Strong organizational skills with the ability to independently prioritize work while managing multiple initiatives
  • 04Experience translating complex compliance and regulatory requirements into practical guidance for technical and business stakeholders
  • 05Excellent collaboration skills and the ability to build trusted partnerships across cross-functional teams
  • 06Experience with evaluating or adopting AI technologies to improve governance, compliance, security operations, or risk management
  • 07Understanding AI governance, responsible AI practices or emerging AI related compliance considerations

Условия

  • 01Compensation for this role is in the form of base salary
  • 02This role does not have a variable compensation component
  • 03Typical starting salary range: $133,100 - $210,600 USD
  • 04Select locations salary range: $159,900 - $252,900 USD
  • 05Company-matched 401k with dollar-for-dollar matching up to 6% of eligible earnings
  • 06Range of other benefits offered with a holistic emphasis on employee well-being
  • 07Eligible to participate in Elastic's stock program