Incode — leading provider of identity solutions; Unicorn-status scale-up with a fast-growing Technology, Security and Compliance team.
Your position
IT Compliance Analyst — turn security, privacy, and compliance commitments into evidence; navigate SOC 2, ISO/IEC 27001, ISO/IEC 22301, ISO/IEC 42001, HIPAA, GDPR, and CCPA; interface with auditors, customers, and vendors; own policies, processes, and training across the org.
Requirements
5+ years in Privacy Compliance, Risk Management, Information Security, and/or Information Technology within a SaaS environment; experience with frameworks such as SOC 2, HIPAA, GDPR, PCI-DSS, ISO/IEC 27001, or ISO/IEC 42001.
Experience developing Privacy, Compliance, and Information Security policies and procedures and executing programs meeting business objectives.
Extensive experience dealing with internal and external auditors.
Knowledge of GRC best practices for SaaS; familiarity with security standards (SOC 2, ISO/IEC 27001, ISO/IEC 42001, HITRUST, NIST 800) and privacy laws (CCPA, GDPR).
Familiarity with SaaS, PaaS, and IaaS providers from a compliance perspective; experience with AI to automate compliance tasks (bonus). Corporate certifications: CISM, NCSF, CCSP, CISSP, or CISA.
Compensation & benefits
Authorized to work in the United States or Mexico (no immigration sponsorship).
Flexible Working Hours & Workplace; Open Vacation Policy; Equal Opportunities with inclusive, global team; accommodations available during hiring process.