Associate Security Compliance Analyst
Massachusetts - Boston
Applications have closed
Veeva Systems
Veeva Systems Inc. is a leader in cloud-based software for the global life sciences industry. Committed to innovation, product excellence, and customer success, Veeva has more than 1,100 customers, ranging from the world's largest...
Veeva [NYSE: VEEV] is the leader in cloud-based software for the global life sciences industry. Committed to innovation, product excellence, and customer success, our customers range from the world’s largest pharmaceutical companies to emerging biotechs. Veeva’s software helps our customers bring medicines and therapies to patients faster.
We are the first public company to become a Public Benefit Corporation. As a PBC, we are committed to making the industries we serve more productive, and we are committed to creating high-quality employment opportunities.
Veeva is a Work Anywhere company which means that you can choose to work in the environment that works best for you - on any given day. Whether you choose to work remotely from home or work in an office - it’s up to you.
The Role
As a security and compliance analyst, you will help ensure ongoing compliance with relevant regulations and maintain current certification status against select standards and certifying bodies. You will be responsible for identifying control gaps; advising internal teams on how to close those gaps; and collecting, organizing, and reviewing control evidence for Veeva products in scope for various standards and regulations. You will perform third-party security assessments and periodic maintenance as needed, foster a compliance culture throughout Veeva, communicate effectively, and build positive relationships with other Veeva teams.
Veeva’s headquarters is located in the San Francisco Bay Area with offices in more than 15 countries around the world.
Veeva is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity or expression, religion, national origin or ancestry, age, disability, marital status, pregnancy, protected veteran status, protected genetic information, political affiliation, or any other characteristics protected by local laws, regulations, or ordinances. If you need assistance or accommodation due to a disability or special need when applying for a role or in our recruitment process, please contact us at talent_accommodations@veeva.com. Position may not be eligible for remote work in Colorado.
We are the first public company to become a Public Benefit Corporation. As a PBC, we are committed to making the industries we serve more productive, and we are committed to creating high-quality employment opportunities.
Veeva is a Work Anywhere company which means that you can choose to work in the environment that works best for you - on any given day. Whether you choose to work remotely from home or work in an office - it’s up to you.
The Role
As a security and compliance analyst, you will help ensure ongoing compliance with relevant regulations and maintain current certification status against select standards and certifying bodies. You will be responsible for identifying control gaps; advising internal teams on how to close those gaps; and collecting, organizing, and reviewing control evidence for Veeva products in scope for various standards and regulations. You will perform third-party security assessments and periodic maintenance as needed, foster a compliance culture throughout Veeva, communicate effectively, and build positive relationships with other Veeva teams.
What You’ll Do
- Monitor compliance with Veeva policies and procedures
- Perform third-party security risk analyses
- Identify policy and process improvement opportunities, automation opportunities, develop recommendations, and communicate with stakeholders collaboratively
- Perform third-party risk assessments for new and existing systems
- Aid in the administration of compliance support systems
- Collect and evaluate control evidence to determine whether it demonstrates compliance with industry frameworks (ISO, SOC 2)
- Advise management on risk and control issues, and provide practical recommendations to ensure that risks are properly managed
Requirements
- Bachelor’s degree
- 2+ years of hands-on technical experience in an IT role, information security role, or security compliance role including one or more of the following: system administration, technical business or requirements analysis, script writing, system troubleshooting
- Demonstrated ability to lead and work independently and learn quickly
- Team-first attitude
- Strong oral and written communication skills
- Proven ability to form working relationships with internal and external stakeholders
- Basic understanding of security compliance and compliance frameworks
Nice to Have
- 2+ years of experience, with at least one of the relevant standards or certifications such as ISO27001, SOC2, NIST 800-XXX, HITRUST, HIPAA, GDPR, State/Fed RAMP
- Bachelor’s degree in IT, Computer Science, Engineering, Mathematics, or Information Security
Veeva’s headquarters is located in the San Francisco Bay Area with offices in more than 15 countries around the world.
Veeva is an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, sex, sexual orientation, gender identity or expression, religion, national origin or ancestry, age, disability, marital status, pregnancy, protected veteran status, protected genetic information, political affiliation, or any other characteristics protected by local laws, regulations, or ordinances. If you need assistance or accommodation due to a disability or special need when applying for a role or in our recruitment process, please contact us at talent_accommodations@veeva.com. Position may not be eligible for remote work in Colorado.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Automation Business Intelligence Cloud Compliance Computer Science GDPR HIPAA HITRUST ISO 27001 Mathematics NIST Risk assessment Security assessment SOC SOC 2
Regions:
Remote/Anywhere
North America
Country:
United States
Job stats:
105
51
1
Categories:
Analyst Jobs
Compliance Jobs
More jobs like this
Explore more InfoSec / Cybersecurity career opportunities
Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.
- Open Staff Security Engineer jobs
- Open Information Security Specialist jobs
- Open Senior Security Analyst jobs
- Open Security Operations Engineer jobs
- Open Senior Cyber Security Engineer jobs
- Open Cyber Security Architect jobs
- Open Senior Information Security Analyst jobs
- Open Product Security Engineer jobs
- Open Consultant infrastructure sécurité H/F jobs
- Open Cybersecurity Analyst jobs
- Open Cyber Security Specialist jobs
- Open Principal Security Engineer jobs
- Open Cybersecurity Consultant jobs
- Open Consultant SOC / CERT H/F jobs
- Open Senior Information Security Engineer jobs
- Open IT Security Analyst jobs
- Open Cybersecurity Specialist jobs
- Open Security Specialist jobs
- Open Chief Information Security Officer jobs
- Open Security Researcher jobs
- Open Senior Penetration Tester jobs
- Open Senior Security Architect jobs
- Open Information Systems Security Officer (ISSO) jobs
- Open Senior Cyber Security Specialist jobs
- Open Information System Security Officer (ISSO) jobs
- Open Agile-related jobs
- Open ISO 27001-related jobs
- Open Application security-related jobs
- Open Windows-related jobs
- Open Network security-related jobs
- Open Pentesting-related jobs
- Open CISM-related jobs
- Open GCP-related jobs
- Open Vulnerability management-related jobs
- Open Analytics-related jobs
- Open SaaS-related jobs
- Open IAM-related jobs
- Open CISA-related jobs
- Open Threat intelligence-related jobs
- Open Security assessment-related jobs
- Open DevOps-related jobs
- Open Java-related jobs
- Open Kubernetes-related jobs
- Open EDR-related jobs
- Open Malware-related jobs
- Open APIs-related jobs
- Open IDS-related jobs
- Open Security Clearance-related jobs
- Open CI/CD-related jobs
- Open DevSecOps-related jobs