Senior Security Compliance Analyst

4 tygodni temu


Warsaw, Polska Snowflake Pełny etat

Build the future of data. Join the Snowflake team.

Snowflake is seeking a Senior Security Compliance Analyst to join our Global Security Compliance & Risk team and help drive compliance across Product Engineering and Corporate Engineering. 

The Sr. Security Compliance Analyst will be a critical and high-impact individual contributor who would perform compliance risk assessments, compliance impact assessments to determine compliance requirements, guide control owners to follow security and compliance best practices along with monitoring effectiveness of the controls. This role will report to the Security Compliance Manager within the Security and IT organizations. 

JOB RESPONSIBILITIES
  • Conduct Compliance Risk Assessments / Compliance Impact Assessments ( CIA) of cloud based applications against all control domains (NIST or similar) 
    • Analyze project documentation like architecture diagrams and conduct interviews to perform risk and gap assessment
    • Determine impact of new projects/changes on security & compliance posture of the organization.
    • Conduct compliance assessments for complex systems including AI systems and identify and assess correlated risks
  • Provide compliance and control requirements to new projects
  • Provide compliant implementation standards/ best practices to achieve control requirements
  • Integrate compliance and security into solution designs
  • Assess risks of security gaps, and develop remediation plans. Perform follow up activities related to drive remediation efforts.
  • Support design and implementation of automated tools for compliance . Design self service oriented solutions for scaling compliance operations and derive repeatable audit artifacts.
  • Provide Audit Support as required. Engage with Engineering teams for readiness assessments, testing, control review for annual and on-going compliance audits (like SOX, ISO, SOC). Provide compliance consultation to design effective and complaint processes.
  • Identify risks, process improvements and design automated monitoring solutions for control areas like Change Management,Release Management,  SDLC, Configuration Management, Logging, Software Supply Chain, Encryption, Monitoring etc. Drive implementation of effective controls.
  • Assess and provide compliance requirements on data protection techniques and secure data handling practices
  • Assist with development of compliance documentation, policies and processes in support of requirements and ensure that controls are operating effectively. 
  • Develop a close partnership with engineering to educate and inform them around priority and importance of compliance requirements. Ability to identify risk-appropriate control implementation solutions while considering engineering and business priorities with compliance needs.
  • Work cross-functionally to drive security control implementation for the organization.
QUALIFICATIONS
  • 7+ years of related work experience in Information Security Governance, Risk and Compliance (GRC) or relevant Compliance roles in the tech industry. Big 4 consulting experience is a plus.
  • Minimum 3 years prior experience auditing cloud environments (AWS, Azure, and GCP), performing compliance assessments , conducting risk assessments and / or driving audits like SOX,ISO, SOC, PCI DSS
  • Knowledge of AI Security and Compliance Frameworks
  • Knowledge of AI-specific security Threats and Vulnerabilities
  • Ability to multitask and manage simultaneous projects
  • Ability to organize, conduct and drive meetings and outcomes independently.  Must be aware of and deliver quality stakeholder engagement experience in a fast-paced, innovative environment
  • Strong analytical, communication (verbal and written), and project management skills
  • Ability to learn, understand, and work with new emerging technologies, methodologies, and solutions in the Cloud/IT technology space.
  • Certification preferred in one or more of the following: CISA, CISSP, CISM, Cloud platforms such as AWS, Azure or GCP
  • Familiarity with regulatory requirements and standards related to AI and Data security
  • Ability to guide in implementing security compliance AI measures and machine learning systems
LOCATION
  • Warsaw, ability to support, attend meetings with US / Pune based team as required


  • Warsaw, Polska Snowflake Pełny etat

    Build the future of data. Join the Snowflake team. Snowflake is seeking a Senior Security Compliance Analyst to join our Global Security Compliance & Risk team and help drive compliance across Product Engineering and Corporate Engineering.  The Sr. Security Compliance Analyst will be a critical and high-impact individual contributor who would perform...


  • Warsaw, Polska Snowflake Pełny etat

    Build the future of data. Join the Snowflake team. Snowflake is seeking a Senior Security Compliance Analyst to join our Global Security Compliance & Risk team and help drive compliance across Product Engineering and Corporate Engineering.  The Sr. Security Compliance Analyst will be a critical and high-impact individual contributor who would perform...


  • Warsaw, Polska DLA Piper Pełny etat

    The roleThe Information Security team are responsible for security activities across the DLA Piper International firm.The Information Security and Compliance Analyst will ensure security controls are operating effectively and in accordance with relevant regulatory and industry best practices. They will identify, report and act upon audit and compliance...


  • Warsaw, Polska DLA Piper Pełny etat

    The roleThe Information Security team are responsible for security activities across the DLA Piper International firm.The Information Security and Compliance Analyst will ensure security controls are operating effectively and in accordance with relevant regulatory and industry best practices. They will identify, report and act upon audit and compliance...


  • Warsaw, Polska IQVIA Pełny etat

    Location: Portugal or Poland This is a key role within the Global Information Security organization. The individual fulfilling this role will be a member of the Information Security Governance Risk and Compliance Program Delivery and Improvement team, tracking the delivery of all CISO programs and BAU activities through metrics and continuously looking...


  • Warsaw, Polska IQVIA Pełny etat

    Location: Portugal or Poland This is a key role within the Global Information Security organization. The individual fulfilling this role will be a member of the Information Security Governance Risk and Compliance Program Delivery and Improvement team, tracking the delivery of all CISO programs and BAU activities through metrics and continuously looking...


  • Warsaw, Polska Marqeta Pełny etat

    Marqeta is on a mission to change the way money moves. We’re one of the earliest enablers of embedded finance, a market opportunity sized up in the trillions. Our card issuing platform provides unprecedented flexibility and control for companies to issue cards, authorize transactions, and manage payment operations in real time. Marqeta is powering the...


  • Warsaw, Polska Marqeta Pełny etat

    Marqeta is on a mission to change the way money moves. We’re one of the earliest enablers of embedded finance, a market opportunity sized up in the trillions. Our card issuing platform provides unprecedented flexibility and control for companies to issue cards, authorize transactions, and manage payment operations in real time. Marqeta is powering the...


  • Warsaw, Polska Citi Pełny etat

    Post location: Warsaw, Prosta 36 Are you looking for a career move that will put you at the heart of a leading financial institution? Then bring your investigative skills in Compliance Sanctions and Financial Crime to Citi’s Independent Compliance Risk Management (ICRM) Team. By joining Citi, you will become part of a global organisation whose mission...


  • Warsaw, Polska 11101 Citibank Europe plc Poland Pełny etat

    Post location: Warsaw, Prosta 36 Are you looking for a career move that will put you at the heart of a leading financial institution? Then bring your investigative skills in Compliance Sanctions and Financial Crime to Citi’s Independent Compliance Risk Management (ICRM) Team. By joining Citi, you will become part of a global organisation whose mission...


  • Warsaw, Polska 11101 Citibank Europe plc Poland Pełny etat

    Post location: Warsaw, Prosta 36 Are you looking for a career move that will put you at the heart of a leading financial institution? Then bring your investigative skills in Compliance Sanctions and Financial Crime to Citi’s Independent Compliance Risk Management (ICRM) Team. By joining Citi, you will become part of a global organisation whose mission...


  • Warsaw, Polska Sportradar Pełny etat

    Job DescriptionJob Description: All software and systems contain defects or vulnerabilities in them. This role is concerned with the management of vulnerabilities that are known about, so to ensure an effective remediation strategy is in place to avoid them being exploited by threat actors.The Senior Security Vulnerability Analyst role in Sportradar's...

  • Security Analyst @

    2 tygodni temu


    Warsaw, Polska Devire Sp. z o.o. Pełny etat

    Devire IT Outsourcing is a form of cooperation dedicated to IT professionals, based on the principles of own business - B2B, implementing projects for clients running innovative and modern projects.Our client is a global leader in the construction industry with a recognizable brand and high standards of business. It is a company that pays attention to...


  • Warsaw, Polska Robert Bosch Sp. z o.o. Pełny etat

    SAP Security and Compliance Auditor Miejsce pracy: Warszawa Technologies we use Expected SAP Operating system Windows Linux Your responsibilities IT Security analysis of SAP systems operated in Bosch; Recommendation of suitable IT Security measures; Coordination of technical implementation of mitigation measures; Collaboration with corporate SAP Audit...


  • Warsaw, Polska Goldman Sachs Pełny etat

    Financial Crimes Compliance  Financial Crime Compliance has primary responsibility for the execution of the firm’s enterprise-wide Anti-Money Laundering, anti-bribery, and government sanctions compliance programs and, among other things, performs enhanced due diligence and government sanctions screening, as well as surveillance and investigations...


  • Warsaw, Polska Goldman Sachs Pełny etat

    Financial Crimes Compliance  Financial Crime Compliance has primary responsibility for the execution of the firm’s enterprise-wide Anti-Money Laundering, anti-bribery, and government sanctions compliance programs and, among other things, performs enhanced due diligence and government sanctions screening, as well as surveillance and investigations...


  • Warsaw, Polska Intuition Machines, Inc. Pełny etat

    Intuition Machines uses AI/ML to build enterprise security products. We apply our research to systems that serve hundreds of millions of people, with a team distributed around the world. You are probably familiar with our best-known product, the hCaptcha security suite. Our approach is simple: low overhead, small teams, and rapid iteration.As a Senior Cyber...


  • Warsaw, Polska Intuition Machines, Inc. Pełny etat

    Intuition Machines uses AI/ML to build enterprise security products. We apply our research to systems that serve hundreds of millions of people, with a team distributed around the world. You are probably familiar with our best-known product, the hCaptcha security suite. Our approach is simple: low overhead, small teams, and rapid iteration.As a Senior Cyber...


  • Warsaw, Polska Intuition Machines, Inc. Pełny etat

    Intuition Machines uses AI/ML to build enterprise security products. We apply our research to systems that serve hundreds of millions of people, with a team distributed around the world. You are probably familiar with our best-known product, the hCaptcha security suite. Our approach is simple: low overhead, small teams, and rapid iteration.As a Senior Cyber...


  • Warsaw, Polska 11101 Citibank Europe plc Poland Pełny etat

    Location : Warsaw, Prosta 36 Citi Solutions Center is the main EU banking entity for Citi in EMEA with a presence in 25 European countries. It covers several key business lines including Markets and Securities Services, Treasury and Trade Services, Corporate and Investment Banking, Consumer and many others. Role Overview: We are pleased to announce...