Our company

  • Incode — leading provider of identity solutions; Unicorn-status scale-up with a fast-growing Technology, Security and Compliance team.

Your position

  • IT Compliance Analyst — turn security, privacy, and compliance commitments into evidence; navigate SOC 2, ISO/IEC 27001, ISO/IEC 22301, ISO/IEC 42001, HIPAA, GDPR, and CCPA; interface with auditors, customers, and vendors; own policies, processes, and training across the org.

Requirements

  • 5+ years in Privacy Compliance, Risk Management, Information Security, and/or Information Technology within a SaaS environment; experience with frameworks such as SOC 2, HIPAA, GDPR, PCI-DSS, ISO/IEC 27001, or ISO/IEC 42001.
  • Experience developing Privacy, Compliance, and Information Security policies and procedures and executing programs meeting business objectives.
  • Extensive experience dealing with internal and external auditors.
  • Knowledge of GRC best practices for SaaS; familiarity with security standards (SOC 2, ISO/IEC 27001, ISO/IEC 42001, HITRUST, NIST 800) and privacy laws (CCPA, GDPR).
  • Familiarity with SaaS, PaaS, and IaaS providers from a compliance perspective; experience with AI to automate compliance tasks (bonus). Corporate certifications: CISM, NCSF, CCSP, CISSP, or CISA.

Compensation & benefits

  • Authorized to work in the United States or Mexico (no immigration sponsorship).
  • Flexible Working Hours & Workplace; Open Vacation Policy; Equal Opportunities with inclusive, global team; accommodations available during hiring process.