Compliance Security Engineer

New York City - NY, US Remote

Hyperscience

Hyperscience helps you automate your document processes and turn unstructured content into structured actionable data. Find out more!

View company page

Company DescriptionHyperscience modernizes mission-critical processes and operations for the world's largest organizations and government agencies. Since 2014, Hyperscience’s automation technology has helped data-centric companies parse through vast amounts of unstructured inputs and raw information to get to swifter and smarter business outcomes. Through the Hyperscience Platform, enterprises are empowered to transform their operations, and drive operational efficiency as well as human productivity by fully unlocking the power of their data.
Ranked on the Inc. Fastest-Growing Company List, Hyperscience has raised $190M from investors including Tiger Global, BOND, Bessemer Venture Partners, Stripes, and FirstMark. The company has consistently been recognized as one of the best places to work with a collaborative and innovative culture and best-in-class benefits.
The company has a global footprint with offices in New York City, Sofia, Bulgaria, Toronto, Canada, and London, UK.
We are seeking an experienced Compliance Security  Engineer to support the Security team in all aspects of our IT security and compliance process. This individual will be engaging various process owners in the design, evaluation, documentation and monitoring of the appropriate manual and automated IT controls in our computing environments, as well as interacting with external auditors. The Security Compliance Engineer plays a key role in ensuring that the company meets the requirements from a variety of regulation and compliance standards. (I.e. SOC2, ISO 27001, HIPAA, etc).
It is essential that the Compliance Security Engineer have experiences in IT compliance and operational audits, as well as prior hands-on IT experiences.

Responsibilities:

  • Perform risk assessments to determine if the company’s information assets are protected from internal and external threats and are aligned with regulatory requirements.
  • Conduct internal security audits and provide technical and business recommendations to process owners to remediate all findings and suggest improvement.
  • Partner with various teams on automating manual security controls to achieve continuous complianceDrive continual processes improvement to ensure that the company maintains its security posture that meets audit requirements.
  • Coordinate audit activities with process and control owners and external auditorsManage 3rd party vendor security assessments in collaboration with Legal and Security teams.
  • Perform other IT security and assurances related tasks as assigned by management.

Qualifications:

  • Minimum of 5 years working full-time in information security assurance for a technology company or as an IT auditor with "Big Four".
  • Experiences conducting IT audits with various process owners based on various frameworks such as SOC Trust Service Criteria, ISO 27001 and 27002
  • A breadth of experience in performing IT controls testing and developing recommendations based on confirmed observations.
  • Knowledgeable in both qualitative and quantitative risk assessment methodologies
  • Hands-on experiences in cloud technologies and security (AWS, Okta, etc.)
  • In-depth knowledge in IT security frameworks and best practices, such as NIST-800 publications, CoBIT, CCM and Trust Principles and Criteria. 
  • Strong cross-functional team program management abilities, including managing multiple assessments concurrently with different stakeholders and timelines
  • Strong analytical and problem solving skills and the ability to “think-out-of-the-box”.Certifications (CISA, CISSP, SANS GIAC, etc.)
Benefits- Top notch healthcare for you and your family- 30 days of paid leave annually to help nurture work-life symbiosis- A 100% 401(k) match for up to 6% of your annual salary- Stock Options- Wellness stipend- Pre-tax transportation and commuter benefits- 6-month parental leave (or double salary to pay for your partner's unpaid leave)- Free travel for any person accompanying a breastfeeding mother and her baby on a business trip- A dependent care stipend up to $3,000 per month, per child, under the age of 21 for a maximum of $6,000 per month total- Daily catered lunch, snacks, and drinks- Budget to attend conferences, train, and further your education- $1,000 one-time-use WFH stipend and $75 monthly WFH stipend- Relocation assistance
We are an equal opportunity employer. We welcome people of different backgrounds, experiences, abilities and perspectives. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.

Tags: Audits Automation AWS CISA CISSP Cloud COBIT Compliance GIAC HIPAA ISO 27001 Monitoring NIST Risk assessment SANS Security assessment SOC 2

Perks/benefits: 401(k) matching Conferences Equity Parental leave Relocation support Travel Wellness

Regions: Remote/Anywhere North America
Country: United States
Job stats:  15  3  0

More jobs like this

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.