IT Compliance Analyst

<p>SpecterOps is searching for a junior to mid-level IT Compliance Analyst to join our Compliance team, working to ensure that our business practices align with the compliance frameworks the company currently operates within. This position will aid in the growth and development of the Compliance team and IT solutions used to maintain the Compliance program. This role reports directly to the IT Compliance Manager.</p> <p>This position’s primary duty will be supporting and documenting the use of IT solutions leveraged to manage various Compliance tasks in ensuring the availability, confidentiality, and integrity, of SpecterOps organizational data and systems.  </p> <p><strong>Salary Range</strong>: Base salary annually, commensurate with experience </p> <ul> <li>$90,000 - $120,000</li> </ul> <p><strong>Location: </strong>This position is remote, based in the U.S. with optional travel quarterly for in person company events and other ad hoc meetings </p> <ul> <li>Candidate must be authorized to work and reside in the United States; we do not currently sponsor immigration visas</li> </ul> <p><strong>Responsibilities: </strong></p> <ul> <li>Manage incoming security questionnaires and customer assurance requests and assessments end-to-end, coordinating with Engineering, Security, and other internal stakeholders to provide accurate, timely responses</li> <li>Maintain and update the customer assurance knowledge library and trust center documentation to ensure content is current and accurate</li> <li>Review incoming contracts and identify compliance-related requirements, obligations, or risks, escalating findings to Legal as appropriate</li> <li>Support the development and maintenance of reusable response frameworks and standard documentation to improve the efficiency of the customer assurance process</li> <li>Execute recurring compliance activities within assigned control domains, including evidence collection cycles, control attestations, and scheduled review tasks</li> <li>Manage findings and evidence renewals in the GRC platform, ensuring controls remain current and audit-ready</li> <li>Daily monitoring of compliance IT solutions for the identification and resolution of out of compliance end users, devices, and other company assets</li> <li>Contribute to the development, review, and maintenance of company policies, security controls, and supporting documentation</li> <li>Support the preparation for and completion of internal and external compliance audits, including evidence gathering and auditor coordination within assigned scope</li> <li>Stay current on the evolution of relevant compliance frameworks and communicate changes to team members and leadership</li> <li>Perform vendor due diligence and compliance reviews for vendor evaluation requests, documenting findings and requirements in relevant systems</li> <li>Coordinate with SecOps to review vendor risk findings and track remediation to resolution</li> <li>Support the continuous improvement of vendor risk assessment processes and documentation standards</li> <li>Stay up to date on the evolution of compliance frameworks, providing updates to team members, departments, and management when changes occur</li> <li>Educate and train team members, departments, and management on security best practices that align with compliance frameworks</li> <li>Additional duties as assigned</li> </ul> <p><strong>Requirements:</strong></p> <ul> <li>1-5 years of experience in IT Security, Compliance, Operations, or other technical, customer-facing roles within the tech industry</li> <li>Ability to quickly learn new technologies and have an ongoing desire to stay current with the latest developments in Compliance</li> <li>Strong attention to detail and written and oral communication skills</li> <li>Ability to organize and prioritize groups of tasks</li> <li>Desire to embody our core values of passionate curiosity, consistent improvement, empathy, sustainability, humility, and empowerment through transparency.</li> <li>Successfully complete a criminal background investigation</li> <li>Ability to work west coast hours</li> <li>Travel: up to 25%</li> </ul> <p><strong>Nice to haves:</strong></p> <ul> <li>Bachelor of Science in Computer Science or related field is preferred</li> <li>Experience with compliance IT solutions like Conveyor and Drata</li> <li>Experience with compliance audits, working with external auditors</li> <li>Experience administering Active Directory or Azure</li> <li>Experience with open-source BloodHound, BloodHound Enterprise, or BloodHound CE</li> </ul> <p><strong>What We Offer:</strong> </p> <ul> <li>Health/Dental/Vision/life insurance: 100% covered for both the employee and their family </li> <li>Flexible time off policy  </li> <li>13 paid holidays annually </li> <li>401(k) with up to 4% company match </li> <li>Stock options and bonus based on company performance </li> <li>Remote work: $1,500 first year allowance to set up home office </li> <li>$150 monthly cell phone and internet reimbursement </li> <li>$5,000 annual professional development allowance </li> <li>$5,250 towards continuing education or student loan repayment </li> <li>$1,200 annual budget for lifestyle, wellness, pet insurance or home office expenses </li> <li>A one-time $10,000 benefit towards family planning  </li> <li>In person and virtual employee events throughout the year </li> <li>And of course, company swag! </li> </ul> <p> <em>All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status. </em><em>To request reasonable accommodations, please contact us at </em><a href="mailto:careers@specterops.io"><em>careers@specterops.io</em></a> </p> <p><em>Unsolicited resumes are not accepted. </em> </p> <p>#LI-REMOTE</p>

Back to blog

Common Interview Questions And Answers

1. HOW DO YOU PLAN YOUR DAY?

This is what this question poses: When do you focus and start working seriously? What are the hours you work optimally? Are you a night owl? A morning bird? Remote teams can be made up of people working on different shifts and around the world, so you won't necessarily be stuck in the 9-5 schedule if it's not for you...

2. HOW DO YOU USE THE DIFFERENT COMMUNICATION TOOLS IN DIFFERENT SITUATIONS?

When you're working on a remote team, there's no way to chat in the hallway between meetings or catch up on the latest project during an office carpool. Therefore, virtual communication will be absolutely essential to get your work done...

3. WHAT IS "WORKING REMOTE" REALLY FOR YOU?

Many people want to work remotely because of the flexibility it allows. You can work anywhere and at any time of the day...

4. WHAT DO YOU NEED IN YOUR PHYSICAL WORKSPACE TO SUCCEED IN YOUR WORK?

With this question, companies are looking to see what equipment they may need to provide you with and to verify how aware you are of what remote working could mean for you physically and logistically...

5. HOW DO YOU PROCESS INFORMATION?

Several years ago, I was working in a team to plan a big event. My supervisor made us all work as a team before the big day. One of our activities has been to find out how each of us processes information...

6. HOW DO YOU MANAGE THE CALENDAR AND THE PROGRAM? WHICH APPLICATIONS / SYSTEM DO YOU USE?

Or you may receive even more specific questions, such as: What's on your calendar? Do you plan blocks of time to do certain types of work? Do you have an open calendar that everyone can see?...

7. HOW DO YOU ORGANIZE FILES, LINKS, AND TABS ON YOUR COMPUTER?

Just like your schedule, how you track files and other information is very important. After all, everything is digital!...

8. HOW TO PRIORITIZE WORK?

The day I watched Marie Forleo's film separating the important from the urgent, my life changed. Not all remote jobs start fast, but most of them are...

9. HOW DO YOU PREPARE FOR A MEETING AND PREPARE A MEETING? WHAT DO YOU SEE HAPPENING DURING THE MEETING?

Just as communication is essential when working remotely, so is organization. Because you won't have those opportunities in the elevator or a casual conversation in the lunchroom, you should take advantage of the little time you have in a video or phone conference...

10. HOW DO YOU USE TECHNOLOGY ON A DAILY BASIS, IN YOUR WORK AND FOR YOUR PLEASURE?

This is a great question because it shows your comfort level with technology, which is very important for a remote worker because you will be working with technology over time...