Apkudo Logo

Apkudo

Security Compliance Analyst

Posted 10 Days Ago
Remote
Hiring Remotely in United States
93K-118K Annually
Mid level
Remote
Hiring Remotely in United States
93K-118K Annually
Mid level
Manage SOC 1, SOC 2, and ISO 27001 compliance programs, including internal and external audits, control enforcement, corrective actions, and policy updates. Monitor security alerts, support incident investigations, coordinate penetration testing, and administer password and phishing management systems. Lead security awareness initiatives, advise stakeholders, collaborate with Legal on encryption regulations, and drive continuous improvements to the organization’s information security posture.
The summary above was generated by AI
About Job

Apkudo’s growth has hit a pivotal point of requiring a dedicated person to take over the more technical aspects of our information security management system and certifications. This role is part of our Apkudo Compliance Team whose mission is to drive a commitment and culture of improvement that ensures we maintain a high level and recognizable standard of compliance, quality and ethics.

If you have proven professional experience, detailed knowledge of information security auditing, and want to make Apkudo more productive and efficient, this is the role and place for you! Apply today!

Skills & Qualification
  • Professional experience in information security auditing with a focus on SOC 1 & 2 standards

  • Detailed knowledge of ISO 27001 standard, ISO Certification Process Audits, and SOC 1 and 2 standards

  • Experience with AWS and Google Workspace

  • Strong analytical problem-solving skills and attention to detail

  • Excellent verbal and written communication skills, as well as strong partnership skills

  • Experience with cybersecurity and auditing, preferably with 3-5 years of experience

  • Degree in Computer Science, Computer Engineering, IT, or similar field, or 3+ years of IT security or cybersecurity related work experience

Responsibilities
  • Manage and enforce Apkudo's SOC 1 & 2 Controls, ensuring that all security practices are compliant with industry standards

  • Be the main point of contact and liaison with external SOC auditors, facilitating effective communication and resolution of audit findings

  • Perform regular internal audits for SOC and ISO controls, identifying areas for improvement and ensuring that corrective actions are implemented

  • Lead the Compliance member of our Information Security Council, driving security awareness and training for key security focuses throughout the organization

  • Monitor and resolve alerts and alarms in critical systems, ensuring that potential security threats are identified and mitigated promptly

  • Manage security event responses and investigations, providing timely and effective resolution to security incidents

  • Coordinate regular penetration testing and drive improvement actions, ensuring that Apkudo's security posture is maintained and improved

  • Be the company administrator for password and phishing management systems, ensuring that security policies and procedures are up-to-date and compliant

  • Review and update security-related policies and procedures to ensure alignment with industry standards and best practices

  • Drive awareness and training of key security focuses throughout the organization, ensuring that all employees are equipped to maintain a high level of security awareness

  • Assist and support company stakeholders with questions regarding information security, providing timely and effective guidance and support

  • Stay up-to-date with the latest information security management trends and best practices, applying this knowledge to drive security improvements within Apkudo

  • Work with Legal to identify and ensure compliance with cryptographic and data encryption regulations

  • Participate in ad-hoc projects related to improving Apkudo's security posture, applying a collaborative and flexible approach to drive security improvements

Similar Jobs

6 Days Ago
In-Office or Remote
55K-70K Annually
Junior
55K-70K Annually
Junior
Fintech • Insurance
Executes recurring information security and compliance activities, including monitoring alerts, vulnerability management, phishing triage, incident response support, access reviews, audit evidence collection, vendor risk assessments, control testing, policy maintenance, security awareness tracking, and compliance metrics. The role supports SOC 2 and PCI DSS audits, maintains security records and runbooks, and partners with internal teams to improve control effectiveness and automate repetitive processes.
Top Skills: AWSAzureGoogle WorkspaceGrafanaJIRAMfaMicrosoft 365Pci DssRole-Based Access ControlSoc 2
6 Days Ago
Remote
United States
97K-131K Annually
Senior level
97K-131K Annually
Senior level
Aerospace • Information Technology • Professional Services • Security • Software
The Security Compliance Analyst manages cybersecurity, data privacy, classification, retention, governance, vulnerability assessments, incident response, and ATO documentation. Responsibilities include monitoring cloud environments and system logs, using SIEM tools, analyzing security risks, supporting security policies, reporting incidents, and ensuring compliance throughout the system lifecycle. The role also collaborates with Agile teams and stakeholders to protect sensitive data and resolve information assurance issues.
Top Skills: AgileAuthority To Operate (Ato)AWSCloud SecurityContainerized ApplicationsCybersecurityData ClassificationData GovernanceData PrivacyDatabricksExcelPower BIPythonQuicksightRSafeSIEMSnowflakeSplunkSQLTableauVulnerability Management
9 Days Ago
Remote
US
50K-73K Annually
Entry level
50K-73K Annually
Entry level
Artificial Intelligence • Cloud • Consumer Web • eCommerce • Information Technology • Software
Support day-to-day GRC operations: assess third-party vendors, maintain vendor risk register, track remediation and control evidence, assist with internal control testing and audits (SOC 2, ISO 27001, PCI-DSS), maintain policies, prepare reporting, and contribute to process improvements.
Top Skills: Claude CodeGoogle WorkspaceIso 27001MS OfficeNistPci-DssSoc 2

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account