Apkudo Logo

Apkudo

Security Compliance Analyst

Posted 2 Days Ago
Remote
Hiring Remotely in United States
93K-118K Annually
Mid level
Remote
Hiring Remotely in United States
93K-118K Annually
Mid level
Manage SOC 1, SOC 2, and ISO 27001 compliance programs, including internal and external audits, control enforcement, corrective actions, and policy updates. Monitor security alerts, support incident investigations, coordinate penetration testing, and administer password and phishing management systems. Lead security awareness initiatives, advise stakeholders, collaborate with Legal on encryption regulations, and drive continuous improvements to the organization’s information security posture.
The summary above was generated by AI
About Job

Apkudo’s growth has hit a pivotal point of requiring a dedicated person to take over the more technical aspects of our information security management system and certifications. This role is part of our Apkudo Compliance Team whose mission is to drive a commitment and culture of improvement that ensures we maintain a high level and recognizable standard of compliance, quality and ethics.

If you have proven professional experience, detailed knowledge of information security auditing, and want to make Apkudo more productive and efficient, this is the role and place for you! Apply today!

Skills & Qualification
  • Professional experience in information security auditing with a focus on SOC 1 & 2 standards

  • Detailed knowledge of ISO 27001 standard, ISO Certification Process Audits, and SOC 1 and 2 standards

  • Experience with AWS and Google Workspace

  • Strong analytical problem-solving skills and attention to detail

  • Excellent verbal and written communication skills, as well as strong partnership skills

  • Experience with cybersecurity and auditing, preferably with 3-5 years of experience

  • Degree in Computer Science, Computer Engineering, IT, or similar field, or 3+ years of IT security or cybersecurity related work experience

Responsibilities
  • Manage and enforce Apkudo's SOC 1 & 2 Controls, ensuring that all security practices are compliant with industry standards

  • Be the main point of contact and liaison with external SOC auditors, facilitating effective communication and resolution of audit findings

  • Perform regular internal audits for SOC and ISO controls, identifying areas for improvement and ensuring that corrective actions are implemented

  • Lead the Compliance member of our Information Security Council, driving security awareness and training for key security focuses throughout the organization

  • Monitor and resolve alerts and alarms in critical systems, ensuring that potential security threats are identified and mitigated promptly

  • Manage security event responses and investigations, providing timely and effective resolution to security incidents

  • Coordinate regular penetration testing and drive improvement actions, ensuring that Apkudo's security posture is maintained and improved

  • Be the company administrator for password and phishing management systems, ensuring that security policies and procedures are up-to-date and compliant

  • Review and update security-related policies and procedures to ensure alignment with industry standards and best practices

  • Drive awareness and training of key security focuses throughout the organization, ensuring that all employees are equipped to maintain a high level of security awareness

  • Assist and support company stakeholders with questions regarding information security, providing timely and effective guidance and support

  • Stay up-to-date with the latest information security management trends and best practices, applying this knowledge to drive security improvements within Apkudo

  • Work with Legal to identify and ensure compliance with cryptographic and data encryption regulations

  • Participate in ad-hoc projects related to improving Apkudo's security posture, applying a collaborative and flexible approach to drive security improvements

Similar Jobs

Yesterday
Remote
US
50K-73K Annually
Entry level
50K-73K Annually
Entry level
Artificial Intelligence • Cloud • Consumer Web • eCommerce • Information Technology • Software
Support day-to-day GRC operations: assess third-party vendors, maintain vendor risk register, track remediation and control evidence, assist with internal control testing and audits (SOC 2, ISO 27001, PCI-DSS), maintain policies, prepare reporting, and contribute to process improvements.
Top Skills: Claude CodeGoogle WorkspaceIso 27001MS OfficeNistPci-DssSoc 2
12 Days Ago
In-Office or Remote
80K-100K Annually
Entry level
80K-100K Annually
Entry level
Artificial Intelligence • Healthtech • Software • Database
Supports cybersecurity compliance, governance, and risk management programs across frameworks including NIST 800-53, FedRAMP, GovRAMP, HIPAA, and SOC 2. Responsibilities include maintaining audit documentation, coordinating assessments, testing controls, tracking remediation, managing risk registers and vendor assessments, validating AWS and Azure controls, supporting customer due diligence, and coordinating cross-functional compliance initiatives. The role is fully remote in the United States and requires up to 10% travel.
Top Skills: AWSFedrampGovrampGrc PlatformsHipaaIso 27001AzureNist 800-53Soc 2Vendor Risk Management Tools
One Month Ago
Remote
United States
83K-167K Annually
Senior level
83K-167K Annually
Senior level
Blockchain • Financial Services • Cryptocurrency • Web3
Lead and manage SOC 1/SOC 2 exams and SOX/ICFR activities, assess and remediate ITGCs/ITACs, translate audit requirements into scalable controls, partner with engineering and finance, drive audit readiness, documentation, and automation to improve control effectiveness and audit outcomes in a cloud-native environment.
Top Skills: Access ManagementAicpaChange ManagementCisaCloud-Native ArchitecturesCobitCpaCriscIaasIcfrIso 27001Logging/MonitoringNistPaasSaaSSoc 1Soc 2SoxSox 404

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account