Talent.com
Security Compliance Analyst
Security Compliance AnalystZIP • San Francisco, CA, United States
No longer accepting applications
Security Compliance Analyst

Security Compliance Analyst

ZIP • San Francisco, CA, United States
23 days ago
Job type
  • Full-time
Job description

The simple task of buying software, services, or tools at work has become hopelessly complicated at even the most innovative companies in the world. Today, enterprises spend $120T+ per year globally (>

30 times larger than annual consumer e-commerce spend) and rely on vendors more than ever before to run their businesses.

Our cofounders started Zip in 2020 to address this seemingly intractable problem with a purpose-built procurement platform that provides a simple, consumer-grade user experience. Within the last 4 years, Zip has created a new category and developed the leading solution in this $50B+ TAM space. Today, the world's leading companies like OpenAI, Snowflake, Anthropic, Coinbase, and Prudential rely on Zip to manage billions of dollars in spend.

We have a world-class team coming from category-defining companies like Airbnb, Meta, Stripe, Salesforce, Apple, and Google. With a $2.2 billion valuation and $370 million in funding from Y Combinator, Tiger Global, BOND, DST Global, and CRV, we're focused on developing cutting-edge technology, expanding into new global markets, and-above all-driving incredible value for our customers. Join us!

Your Role

The Security & Compliance team at Zip is committed to providing a high level of security assurance to customers, aligning security goals with business objectives and customer requirements. As a GRC Analyst at Zip, you'll be a key driver for ensuring the success of compliance programs at a fast-growing company. Your contributions will be pivotal to the overall growth and competitive edge of Zip's GRC program. You'll ensure we can securely and compliantly build new features, help design and scale the compliance programs that power our expansion, from supporting new certifications to enabling secure AI development and entry into new markets like the EU and U.S. Federal sector.

You Will

  • Drive and perform periodic compliance-related activities, such as user access reviews, internal audits, and third party risk management
  • Develop, implement, and improve core compliance projects, such as leading security awareness training initiatives and helping drive adoption of best practices across the company
  • Curate responses for customer due diligence and security questionnaires and maintain our security knowledge base
  • Collaborate with internal stakeholders and external auditors to support third party audits including SOC 1, SOC 2, and ISO 27001
  • Develop, maintain, and lead the adoption of security policies, standards, and guidelines to ensure compliance with applicable regulatory requirements

Qualifications

  • Bachelor's degree in a related field
  • 2+ years of experience in GRC, information security consulting, cybersecurity risk, audits, or similar roles
  • Strong written and verbal communication skills with both technical and non-technical stakeholders
  • Familiarity with and participation in one or more of the following frameworks : ISO 27001, SOC 1, SOC 2, FedRAMP, PCI DSS
  • Familiarity with information security fundamentals for cloud software systems
  • Nice to Haves

  • Professional certifications in information security are a plus but not required
  • The salary range for this role is $95,000 - $150,000. The salary for this position is determined based on a variety of job-related factors that may include location, relevant experience, education, or particular skills and expertise.

    Perks & Benefits

    At Zip, we're committed to providing our employees with everything they need to do their best work.

  • Start-up equity
  • Full health, vision & dental coverage
  • Catered lunches & dinners for SF employees
  • Commuter benefit
  • Team building events & happy hours
  • Flexible PTO
  • Apple equipment plus home office budget
  • 401k plan
  • We're looking to hire Zipsters and that means hiring people who take ownership, communicate openly, have an underdog mindset, and are excited to increase the pace of innovation for every business in the world. We encourage all candidates to apply even if your experience doesn't exactly match up to our job description. We are committed to building a diverse and inclusive workspace where everyone (regardless of age, religion, ethnicity, gender, sexual orientation, and more) feels like they belong. We look forward to hearing from you!

    Create a job alert for this search

    Compliance Analyst • San Francisco, CA, United States

    Related jobs
    Security Analyst

    Security Analyst

    EY • San Francisco, CA, United States
    Full-time
    At EY, we're all in to shape your future with confidence.We'll help you succeed in a globally connected powerhouse of diverse teams and take your career wherever you want it to go.Join EY and help ...Show more
    Last updated: 30+ days ago • Promoted
    GRC Analyst : FedRAMP & Security Compliance

    GRC Analyst : FedRAMP & Security Compliance

    Medium • San Francisco, CA, United States
    Full-time
    A digital health technology leader is seeking a mid-level GRC Analyst to join their Information Security team.This role focuses on supporting security and compliance programs with a strong emphasis...Show more
    Last updated: 7 days ago • Promoted
    Associate Security Trust Analyst

    Associate Security Trust Analyst

    RingCentral • Belmont, CA, United States
    Full-time
    It's not everyday that you consider starting a new career.We're RingCentral, and we're happy that someone as talented as you is considering this role. First, a little about us, we're a $2 Billion an...Show more
    Last updated: 15 hours ago • Promoted • New!
    Lead Governance, Risk, and Compliance (GRC) Analyst

    Lead Governance, Risk, and Compliance (GRC) Analyst

    Morrison & Foerster LLP • San Francisco, CA, United States
    Full-time
    Lead Governance, Risk, and Compliance (GRC) Analyst.Position Type : Information Technology.At MoFo, we couldn't write our own success story without yours. This role can be based in San Francisco, Pal...Show more
    Last updated: 14 days ago • Promoted
    Partner 16, Compliance Analyst

    Partner 16, Compliance Analyst

    a16z • San Francisco, California, USA
    Part-time
    Founded in Silicon Valley in 2009 by Marc Andreessen and Ben Horowitz Andreessen Horowitz (aka a16z) is a venture capital firm that backs bold entrepreneurs. We invest in seed to venture to growth-s...Show more
    Last updated: 26 days ago • Promoted
    IAM Security Analyst

    IAM Security Analyst

    Cloudflare Inc • San Francisco, CA, United States
    Full-time
    At Cloudflare, we are on a mission to help build a better Internet.Today the company runs one of the world's largest networks that powers millions of websites and other Internet properties for cust...Show more
    Last updated: 30+ days ago • Promoted
    Senior Compliance Analyst, Duals (D-SNP) Products

    Senior Compliance Analyst, Duals (D-SNP) Products

    Centene • Oakland, CA, US
    Full-time +2
    You could be the one who changes everything for our 28 million members.Centene is transforming the health of our communities, one person at a time. As a diversified, national organization, you'll ha...Show more
    Last updated: 28 days ago • Promoted
    Senior Compliance Analyst

    Senior Compliance Analyst

    Cerebras • San Francisco, CA, United States
    Full-time
    Compliance Analyst, you will monitor and ensure that the activities of Kikoff are in compliance with legal and regulatory standards and internal policies. As a part of the compliance analyst’s role,...Show more
    Last updated: 30+ days ago • Promoted
    Security Analyst

    Security Analyst

    eTeam Inc. • San Francisco, CA, United States
    Full-time
    Location : Near San Francisco Office to be able to come onsite (1-2 times a week).We seek a diligent and organized Contract Security Analyst in the IAM space to join our BT team and support day-to-d...Show more
    Last updated: 30+ days ago • Promoted
    Hybrid GRC Security Analyst — Cyber Risk & Compliance

    Hybrid GRC Security Analyst — Cyber Risk & Compliance

    San Francisco • San Francisco, CA, United States
    Full-time
    A major city government in San Francisco is seeking a Business Analyst for the cybersecurity team.This full-time position involves performing risk assessments, vendor evaluations, and developing re...Show more
    Last updated: 10 days ago • Promoted
    Senior Security Analyst

    Senior Security Analyst

    Carta • San Francisco, CA, United States
    Full-time
    Carta connects founders, investors, and limited partners through world-class software, purpose-built for everyone in venture capital, private equity and private credit. Trusted by 65,000+ companies ...Show more
    Last updated: 19 days ago • Promoted
    Penetration Tester / Security Analyst

    Penetration Tester / Security Analyst

    RAPSYS TECHNOLOGIES PTE LTD • San Francisco, CA, United States
    Full-time
    Penetration Tester / Security Analyst.Penetration Tester / Security Analyst.Conduct comprehensive penetration tests on various applications and networks. Identify security weaknesses and provide act...Show more
    Last updated: 1 day ago • Promoted
    Senior Product Security Analyst

    Senior Product Security Analyst

    iRhythm Technologies, Inc. • San Francisco, CA, United States
    Full-time
    At iRhythm, you'll have the opportunity to grow your skills and your career while impacting the lives of people around the world. Rhythm is shaping a future where everyone, everywhere can access the...Show more
    Last updated: 30+ days ago • Promoted
    Protective Intelligence & Threat Analyst

    Protective Intelligence & Threat Analyst

    OpenAI • San Francisco, CA, United States
    Full-time
    The Corporate Security team ensures the physical safety and security of the organization's assets, operations, and personnel. We are committed to maintaining a secure environment that enables our te...Show more
    Last updated: 30+ days ago • Promoted
    Technical Security Analyst

    Technical Security Analyst

    Tekfortune Inc • San Francisco, CA, United States
    Full-time
    Job Title : Technical Security Analyst.Location : California (Major cities) Oakland, San Francisco, Sacramento, Pleasanton, San Jose, Pasadena, San Diego CA. Demonstrate ability to identify, contain, ...Show more
    Last updated: 30+ days ago • Promoted
    Security Compliance Lead

    Security Compliance Lead

    Fal • San Francisco, CA, US
    Full-time
    We're looking for a Security Compliance Lead to join our team and build scalable, efficient, and practical security and compliance foundations that align with our fast pace.In this role, you'll hav...Show more
    Last updated: 30+ days ago • Promoted
    Security Analyst

    Security Analyst

    Minted • San Francisco, CA, United States
    Full-time
    As a Security Analyst II / III at Minted, you'll play a key role in protecting the systems and data that power our global artist community and e-commerce customers. You'll monitor our environment, res...Show more
    Last updated: 23 days ago • Promoted
    Risk and Compliance Analyst II

    Risk and Compliance Analyst II

    Munger, Tolles & Olson • San Francisco, CA, United States
    Full-time
    Full Time, Non-exempt, Offsite (in-office based on business needs).Must be within commutable distance to the office.Los Angeles, CA or San Francisco, CA or Washington, D. Maryland, or Virginia and w...Show more
    Last updated: 17 days ago • Promoted