Compliance Analyst
Docebo
This job is no longer accepting applications
See open jobs at Docebo.See open jobs similar to "Compliance Analyst" Work In Tech.Responsibilities
- Customer Engagement and Response: respond to customers' security and privacy related inquiries, compile comprehensive responses (mainly RFl, RFP, and RFQ), and questionnaires, address compliance questionnaires, ensuring timely and accurate information dissemination and actively supporting the sales process.
- Customer Audit Support and Documentation: Coordinate Docebo's activities related to customer compliance audits, assist with agreement and term reviews, and prepare management reports on compliance and security initiatives in collaboration with the GRC team.
- Support Internal Compliance Management: maintain internal compliance documentation, and coordinate the conduction of risk assessments and internal company audits to ensure organisational readiness in collecting the needed evidence.
- Vendor Risk Assessment and Monitoring: Support the evaluation of company third-party vendor-associated risks, monitor security controls, and maintain risk management reporting dashboards to mitigate risk and effectively qualify company suppliers; in collaboration with the GRC team.
- Security Awareness: develop and coordinate the implementation of security & privacy awareness programs to promote a culture of security consciousness; in collaboration with the GRC team.
- Cross-functional collaboration: collaborate across the company departments to align compliance, security, and privacy efforts with business objectives; consult the company's departments to assess changes and compliance obligations and support updating company compliance programs and controls.
- Documentation and Reporting: Maintain comprehensive documentation of compliance activities, including policies, procedures, and audit findings, and prepare reports for management and regulatory authorities; in collaboration with the GRC team.
- Trust Page management: support the definition of content, and keep it updated. Gather information regarding clients' and prospects' requests related to the content of the Trust Page to offer expertise and feedback to other departments to ensure that the content is relevant and up to date with the latest standards.
Education & Experience
- Typically 4+ years of relevant work experience
- Working experience supporting audits and compliance & security activities for SaaS companies
- Working knowledge of information security principles, trends, and best practices, specifically cloud environments and services (eg: AWS, Azure, GCloud)
- Knowledge of GDPR requirements and other data privacy laws (eg: CCPA, PIPL)
- Knowledge of ISO/IEC 27001, ISO/EC 27017, ISO/EC 27018, ISO/EC 27701, ISO
- 9001, and AICPA/ISAE 3000 SOC 2 & PCI
- Knowledge of CFR21 Part 11
- FedRamp framework knowledge
This job is no longer accepting applications
See open jobs at Docebo.See open jobs similar to "Compliance Analyst" Work In Tech.