Skip to main content
NetBrain Technologies Inc logo

Senior Security Compliance Analyst

NetBrain Technologies Inc
Full TimeseniorHybrid
Burlington, MA | HybridPosted 3 days ago

Resume Keywords to Include

Make sure these keywords appear in your resume to improve ATS scoring

AWSGCPAzureTerraformSaaS

Sign up free to auto-tailor your resume with all these keywords and get a higher ATS score

Job Description

<div class="content-intro"><p class="MsoNormal" style="margin-bottom: 12.0pt;"><span style="font-size: 10pt; font-family: 'trebuchet ms', geneva, sans-serif; color: black;">Founded in 2004, NetBrain is the leader in no-code network automation. Its ground-breaking Next-Gen platform provides IT operations teams with the ability to scale their hybrid multi-cloud connected networks by automating the processes associated with Diagnostic Troubleshooting, Outage Prevention and Protected Change Management. &nbsp;Today, over 2,500 of the world’s largest enterprises and managed services providers leverage NetBrain’s platform.</span></p></div><p><span style="font-size: 14pt; font-family: 'trebuchet ms', geneva, sans-serif;"><em><strong>What We Need</strong></em></span></p> <p><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">We are seeking a security and compliance leader to build and operationalize a scalable security program for our SaaS environment. This role will define policies, drive alignment with frameworks such as SOC 2, ISO 27001, and NIST, and partner cross-functionally to embed compliance into engineering, infrastructure, and business processes. You will own risk management initiatives—including third-party risk, control testing, and audit readiness—while ensuring the organization is prepared for certifications and regulatory requirements. Additionally, you will enhance our security posture through automation, continuous monitoring, and proactive improvements to mitigate evolving threats and compliance risks.</span></p> <p>&nbsp;</p> <p><span style="font-size: 14pt; font-family: 'trebuchet ms', geneva, sans-serif;"><em><strong>What You'll Do</strong></em></span></p> <p data-start="1936" data-end="1969"><span style="text-decoration: underline;"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Security Program &amp; Compliance</span></span></p> <ul data-start="1970" data-end="2218"> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-section-id="1vmf1wj" data-start="1970" data-end="2104"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Own and scale the company’s SaaS security and compliance program, aligning to frameworks such as SOC 2, ISO 27001, NIST, and GDPR.</span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-section-id="wo7me3" data-start="2105" data-end="2218"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Define and implement security policies, standards, and controls to meet regulatory and business requirements.</span></li> </ul> <p data-start="2220" data-end="2248"><span style="text-decoration: underline;"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Risk Management &amp; Audits</span></span></p> <ul data-start="2249" data-end="2481"> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-section-id="1kkwt1k" data-start="2249" data-end="2357"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Lead risk management efforts, including third-party risk assessments, control testing, and gap analysis.</span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-section-id="dzxir4" data-start="2358" data-end="2481"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Drive audit readiness and execution, coordinating evidence collection and remediation for internal and external audits.</span></li> </ul> <p data-start="2483" data-end="2518"><span style="text-decoration: underline;"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Policy Integration &amp; Enablement</span></span></p> <ul data-start="2519" data-end="2744"> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-section-id="3hqcnk" data-start="2519" data-end="2626"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Embed security and compliance requirements into engineering, infrastructure, and operational workflows.</span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-section-id="24vf17" data-start="2627" data-end="2744"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Partner cross-functionally with engineering, legal, and business teams to align on security and compliance goals.</span></li> </ul> <p data-start="2746" data-end="2795"><span style="text-decoration: underline;"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Security Engineering &amp; Continuous Improvement</span></span></p> <ul data-start="2796" data-end="3055"> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-section-id="1v175dl" data-start="2796" data-end="2938"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Partner with engineering to implement technical safeguards (e.g., access controls, logging, encryption) and automate compliance processes.</span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-section-id="1habi3f" data-start="2939" data-end="3055"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Continuously monitor evolving threats and regulations, proactively strengthening the company’s security posture.</span></li> </ul> <p>&nbsp;</p> <p>&nbsp;</p> <p><span style="font-size: 14pt; font-family: 'trebuchet ms', geneva, sans-serif;"><em><strong>What You Bring</strong></em></span></p> <ul> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-leveltext="" data-font="Symbol" data-listid="16" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;hybridMultilevel&quot;}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;"><span data-contrast="auto">Bachelor’s degree in Computer Science, Information Security, or related field, or equivalent experience.</span> </span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-leveltext="" data-font="Symbol" data-listid="16" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;hybridMultilevel&quot;}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">4+ years of experience in information security, compliance, or related technical roles. </span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-leveltext="" data-font="Symbol" data-listid="16" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;hybridMultilevel&quot;}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Strong knowledge of security frameworks and regulations (e.g., ISO 27001, SOC 2, NIST, PCI-DSS, HIPAA, GDPR). </span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-leveltext="" data-font="Symbol" data-listid="16" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;hybridMultilevel&quot;}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Hands-on experience with cloud environments (AWS, Azure, or GCP) and related security services. </span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-leveltext="" data-font="Symbol" data-listid="16" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;hybridMultilevel&quot;}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Familiarity with auditing, logging, monitoring, SCA, DAST, SAST and vulnerability management tools. </span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-leveltext="" data-font="Symbol" data-listid="16" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;hybridMultilevel&quot;}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Excellent documentation, communication, and collaboration skills. </span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-leveltext="" data-font="Symbol" data-listid="16" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;hybridMultilevel&quot;}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Security certifications (e.g., CISSP, CISM, CISA, CCSK, or equivalent) preferred. </span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-leveltext="" data-font="Symbol" data-listid="16" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;hybridMultilevel&quot;}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Experience with automation tools for compliance (e.g., Terraform, Cloud Custodian, or compliance-as-code frameworks) </span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-leveltext="" data-font="Symbol" data-listid="16" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;hybridMultilevel&quot;}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Background in DevSecOps or secure software development practices preferred.&nbsp; </span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-leveltext="" data-font="Symbol" data-listid="16" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;hybridMultilevel&quot;}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Manual Dexterity: Repetitive motion of wrists, hands and fingers for using a computer.</span></li> <li style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;" data-leveltext="" data-font="Symbol" data-listid="16" data-list-defn-props="{&quot;335552541&quot;:1,&quot;335559685&quot;:720,&quot;335559991&quot;:360,&quot;469769226&quot;:&quot;Symbol&quot;,&quot;469769242&quot;:[8226],&quot;469777803&quot;:&quot;left&quot;,&quot;469777804&quot;:&quot;&quot;,&quot;469777815&quot;:&quot;hybridMultilevel&quot;}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">Stationary Tasks: Sitting for extended periods, remaining in a stationary position.</span></li> </ul> <p>&nbsp;</p> <p><span style="font-size: 14pt; font-family: 'trebuchet ms', geneva, sans-serif;"><strong><em>What We Offer</em></strong></span></p> <p><span style="font-family: 'trebuchet ms', geneva, sans-serif; font-size: 12pt;">Our comprehensive compensation package is vital in how we recognize our people for the impact they make on us reaching our goals as a company.</span></p> <p><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">For this role, the estimated base is $140,000 - $180,000 + Bonus. The actual salary may vary based on a range of factors, including market and individual qualifications objectively assessed during the interview process.</span></p> <p><span style="font-size: 12pt; font-family: 'trebuchet ms', geneva, sans-serif;">The range listed above is a guideline and may be modified. People Experience offers a comprehensive benefits package in addition to cash compensation that includes but is not limited to 401k and medical/dental coverage. Speak with your Recruiter for more details on our Total Rewards philosophy.</span></p> <p>&nbsp;</p><div class="content-conclusion"><p><span style="font-family: 'trebuchet ms', geneva, sans-serif; font-size: 10pt;">NetBrain invites all interested and qualified candidates to apply for employment opportunities.</span></p> <p><span style="font-family: 'trebuchet ms', geneva, sans-serif; font-size: 10pt;">Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, protected veteran status, or other characteristics protected by law.</span></p> <p><span style="font-family: 'trebuchet ms', geneva, sans-serif; font-size: 10pt;">If you have a disability that prevents or limits your ability to use or access the site, or if you require any other accommodation in the application process due to a disability, you may request a reasonable accommodation. To make a request, please contact our People Team at:&nbsp;<a href="mailto:people@netbraintech.com">people@netbraintech.com</a>&nbsp;and we will be happy to assist you.</span></p> <p><span style="font-family: 'trebuchet ms', geneva, sans-serif; font-size: 10pt;">In compliance with applicable laws, NetBrain conducts holistic, individual background reviews in support of all hiring decisions.</span></p> <p><span style="font-family: 'trebuchet ms', geneva, sans-serif; font-size: 10pt;">It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.</span></p> <p>&nbsp;</p></div>

About NetBrain Technologies Inc

NetBrain Technologies Inc logo

NetBrain Technologies Inc

netbraintech.com

RiskHybrid

Want AI-powered job matching?

Upload your resume and get every job scored, your resume tailored, and hiring manager emails found - automatically.

Get Started Free