Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Security Compliance Analyst

$50 - $55 per hour

Actalent

Job Description

Job Description

Job Title: Security Compliance Analyst

100% REMOTE!

Job Description

The Security Compliance Analyst leads the full certification lifecycle for key security frameworks, acting as the primary bridge between technical engineering teams and external auditors. This role focuses on managing ISO and SOC 2 Type 2 audits end-to-end, translating complex technical environments into audit-ready evidence, and using AI and automation to reduce the compliance burden on engineering teams. The ideal candidate is a hands-on compliance practitioner who understands the realities of SaaS products and can clearly articulate technical control requirements to both technical and non-technical stakeholders.

Responsibilities

  • Own and drive the full lifecycle of ISO and SOC 2 Type 2 audits, from initial planning through final reporting.
  • Define detailed audit requirements and translate control language into clear, actionable technical requests for engineering teams.
  • Request, collect, and organize evidence from technical owners, ensuring completeness, accuracy, and audit readiness.
  • Review and validate the integrity and sufficiency of technical evidence, identifying gaps, inconsistencies, or invalid submissions.
  • Track remediation activities for identified gaps and follow up with stakeholders to ensure timely closure of issues.
  • Serve as the primary liaison with external audit firms, speaking the language of auditors and effectively defending the control environment.
  • Create and maintain an annual audit calendar, including timelines, milestones, and preparation activities for audit windows.
  • Ensure the organization is well prepared for audits by coordinating pre-audit reviews, walkthroughs, and readiness assessments.
  • Utilize AI and large language models to automate evidence collection, parse system logs, draft control descriptions, and identify potential compliance gaps before audits.
  • Apply a human-in-the-loop approach to AI usage by critically reviewing and validating AI-generated outputs for accuracy and completeness.
  • Review technical configuration reports for infrastructure, networking, containers, and databases to determine whether settings align with secure configuration expectations.
  • Research and identify appropriate secure configurations and control implementations for technologies not previously encountered.
  • Clearly explain to engineers what specific evidence or configurations are required, using precise technical language rather than generic control descriptions.
  • Collaborate with engineering and security teams to define and refine technical controls that align with ISO, SOC 2 Type 2, and other relevant frameworks.
  • Communicate complex compliance requirements in clear, accessible terms to non-technical stakeholders across the organization.
  • Push back constructively on auditors when appropriate, providing reasoned explanations and evidence to support the existing control environment.
  • Contribute to the continuous improvement of compliance processes by identifying opportunities to streamline workflows and reduce manual effort through automation and AI.

Essential Skills

  • Proven, specific experience managing end-to-end ISO and SOC 2 Type 2 audits, including planning, execution, and final reporting.
  • Baseline understanding of ISO and SOC 2 Type 2 frameworks and their associated control requirements.
  • Experience running audits, with a preference for technology-focused auditing experience.
  • Demonstrated ability to understand and assess technical controls in cloud and SaaS environments.
  • Technical literacy in cloud platforms, with a particular preference for experience with AWS.
  • Ability to read and interpret technical configuration reports and determine whether configurations meet secure standards.
  • Capability to identify when provided technical evidence is insufficient or invalid and to request appropriate corrective evidence.
  • Demonstrated experience using AI and large language models to streamline compliance and audit tasks, including evidence collection and analysis.
  • A clear human-in-the-loop philosophy for validating AI output to ensure accuracy and reliability.
  • Strong communication skills, including the ability to explain complex compliance requirements to non-technical stakeholders.
  • Ability to understand and articulate detailed technical requests from engineers and translate them into compliance terms.
  • Confidence and professionalism in pushing back on auditors when necessary, supported by clear evidence and reasoning.
  • Comfort discussing and auditing SaaS infrastructure running on public cloud environments such as AWS, Azure, or GCP and private cloud environments.
  • Familiarity with networking concepts and components, including firewalls, switches, routers, VPNs, and secure remote access.
  • Exposure to Linux-based server environments and various database management systems.
  • Understanding of containerized environments, including Kubernetes and Docker.
  • Ability to research and determine appropriate secure settings and configurations for unfamiliar technologies.

Additional Skills & Qualifications

  • Understanding of the NIST framework, particularly as it applies to security controls and policy design.
  • Experience working with security controls that align with NIST-based policies.
  • Creative use of AI to collect, review, and automate evidence handling in a flexible and scalable way.
  • CISSP certification, which demonstrates a deep understanding of technical security controls (strongly valued but not required).
  • Experience at a CISO or senior security leadership level is beneficial, though practical hands-on experience is preferred over certifications alone.
  • Baseline familiarity with NIST and other security frameworks used to structure security controls and policies.
  • Interest in continuously improving audit and compliance processes through automation and innovative tooling.

Work Environment

The role focuses on a SaaS product operating across both public cloud platforms (such as AWS, Azure, and GCP) and private cloud environments. You will regularly interact with infrastructure components, including firewalls, switches, routers, VPNs, and secure remote access solutions, as well as Linux-based server environments and various database management systems. The environment makes extensive use of container technologies like Kubernetes and Docker. Collaboration with engineering and security teams is central to the role, and you will frequently work with technical configuration reports, system logs, and automated tools. AI and large language models are an integral part of the workflow, particularly for evidence collection, log parsing, and drafting control documentation. The position emphasizes a professional, detail-oriented, and collaborative culture, where clear communication, proactive planning, and continuous improvement of compliance processes are highly valued.

Job Type & Location

This is a Contract position based out of Raleigh, NC.

Pay and Benefits

The pay range for this position is $50.00 - $55.00/hr.

Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: • Medical, dental & vision • Critical Illness, Accident, and Hospital • 401(k) Retirement Plan – Pre-tax and Roth post-tax contributions available • Life Insurance (Voluntary Life & AD&D for the employee and dependents) • Short and long-term disability • Health Spending Account (HSA) • Transportation benefits • Employee Assistance Program • Time Off/Leave (PTO, Vacation or Sick Leave)

Workplace Type

This is a hybrid position in Raleigh,NC.

Application Deadline

This position is anticipated to close on Aug 12, 2026.

About Actalent

Actalent is a global leader in engineering and sciences services and talent solutions. We help visionary companies advance their engineering and science initiatives through access to specialized experts who drive scale, innovation and speed to market. With a network of almost 20,000 consultants and 5,000 clients across the U.S., Canada, Asia and Europe, Actalent serves many of the Fortune 500. We are proud to be an Engineering News-Record (ENR) Top 500 Design Firm for our engineering design services and a ClearlyRated Best of Staffing® winner for both client and talent service.

The company is an equal opportunity employer and will consider all applications without regard to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.

If you would like to request a reasonable accommodation, such as the modification or adjustment of the job application process or interviewing process due to a disability, please email View email address on ziprecruiter.com for other accommodation options.

San Francisco Fair Chance Ordinance: Pursuant to the San Francisco Fair Chance Ordinance, for all positions located in the city and county of San Francisco, we will consider for employment qualified applicants with arrest and conviction records.

Massachusetts Lie Detector: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Use of Artificial Intelligence (AI): We may use Artificial Intelligence (AI) to support parts of our hiring process, including sourcing, screening, and evaluating candidates. AI helps assess applications and qualifications, but final decisions are made by our hiring team. By applying, you acknowledge and agree that your application may be reviewed using AI tools.

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Security Compliance Analyst in Raleigh, NC vacancy
  • $78.9k - $123.3k

     ...Position Overview We are seeking a detail-oriented cybersecurity compliance professional to support system authorization and continuous...  ...Federal environment. This role is responsible for managing the security authorization lifecycle for one or more information systems,... 
    Suggested
    Permanent employment
    Full time
    Part time
    Work at office
    Local area
    Remote work

    Noblis

    Raleigh, NC
    1 day ago
  •  ...environment that is respectful and inclusive for everyone.As a security analyst at Lucid you will be helping to protect corporate assets,...  ...security, legal, and business requirements through a risk and compliance mindset. Our mission is to protect and support the... 
    Suggested
    Remote work

    Lucidchart

    Raleigh, NC
    4 days ago
  •  ...environment that is respectful and inclusive for everyone.As a Security Analyst at Lucid Software, you will protect our corporate assets,...  ...focus on the execution of day-to-day GRC (Governance, Risk, and Compliance) operations, third-party risk assessments, and championing... 
    Suggested
    Remote work

    Lucidchart

    Raleigh, NC
    3 days ago
  • $95.25k - $165.1k

     ...supports the Cyber Third Party risk management programs within the Bank at an advanced level of ability. Analyzes the Information Security risk posture of third parties through the review of the Information Security risk due diligence process, track potential threats and... 
    Suggested
    Remote work

    CIT

    Raleigh, NC
    1 day ago
  •  ...Role Summary: HRIS Security Administrator (Workday) This role serves as the primary authority for security configuration within a...  ...governing system access to protect sensitive data, ensure regulatory compliance, and support efficient HR operations. The role works closely... 
    Suggested

    twenty80.io

    Raleigh, NC
    1 day ago
  • $53k - $56k

     ...power of technology to transform industries, improve lives, and have a positive impact on our community Job Summary Seeking a Security Analyst to join our team of qualified, diverse individuals supporting the Information Systems Division at the United States Coast Guard... 
    Local area

    6AM City

    Raleigh, NC
    5 days ago
  •  ...Aviation Logistic Center with information systems and security services. The Security Analyst position is located in Elizabeth City, NC, and focuses...  ...security solutions, conducting vulnerability analysis, and ensuring compliance with RMF and ATO processes. #J-18808-Ljbffr... 

    6AM City

    Raleigh, NC
    3 days ago
  • $65 - $66 per hour

     ...IT Security Analyst Raleigh, North Carolina, United States $ 65.00 - 66.00 (US Dollar) About the Job IT Security Analyst IT Security Analyst needs 3+ years experience IT Security Analyst requires: IT security Cyber security Banking industry Finance... 

    Global Channel Management

    Raleigh, NC
    5 days ago
  • $72k - $90k

     ...clients' most complex challenges. Position Overview: The Security Analyst supports customer engagements by helping to deliver business...  ...cross-functional teams (security engineers, architects, compliance, IT, and business stakeholders) to deliver security projects... 
    Full time
    Remote work
    Shift work

    World Wide Technology

    Raleigh, NC
    8 hours ago
  • The opportunity As an Offensive Security Analyst on the Attack Surface Management team, you will play a key role in evaluating and reducing EY’s digital exposure through hands‑on penetration testing and adversarial simulation. Working under the guidance of the Exposure... 
    Summer holiday
    Flexible hours

    Ernst & Young Oman

    Raleigh, NC
    1 day ago
  • $40 per hour

     ...cybersecurity firm is seeking experienced cybersecurity professionals for a remote position. The role involves evaluating AI-generated security content, solving technical problems, and providing valuable feedback to improve AI systems. Candidates should have 2+ years of... 
    Remote job
    Hourly pay
    Flexible hours

    DataAnnotation

    Raleigh, NC
    2 days ago
  •  ...vulnerabilities and control gaps. Respond directly to standard vendor security questionnaires and support internal teams (i.e. Sales,...  ...and collecting evidence for ongoing SOC 2 and ISO 27001 compliance audits. Proactively identify emerging threats and associated... 

    Lucid Software

    Raleigh, NC
    1 day ago
  • $40 per hour

    A cybersecurity company is seeking experienced professionals to evaluate AI-generated security content and solve technical cybersecurity problems. This role can be performed remotely and offers flexible hours, with hourly pay starting at $40+. The ideal candidates will... 
    Remote job
    Hourly pay
    Flexible hours

    DataAnnotation

    Raleigh, NC
    2 days ago
  •  ...Summary The MAG Team is currently looking for a Information Security Analyst SME to provide a variety of services leveraging the Risk Management...  ...and assigned projects. Requirements Knowledge and Skills In compliance with DoD Cyber Workforce 8570.01. Experience in Information... 
    Local area

    MAG Aerospace

    Raleigh, NC
    2 days ago
  • $128.1k - $239.6k

     ...250,000 people in more than 140 countries, all of whom rely on secure technology to be able to do their job every single day. Everything...  ...of security controls. We are seeking an Active Defense Analyst with a strong information security background and a passion for... 
    Summer holiday
    Local area
    Remote work
    Flexible hours
    Night shift
    Weekend work

    Ernst & Young Oman

    Raleigh, NC
    4 days ago
  •  ...Computer World Services (CWS) is seeking an experienced Security Analyst to support enterprise cybersecurity operations within a Federal...  ..., security monitoring, and Federal cybersecurity compliance. This individual will work closely with infrastructure engineers... 
    Work at office
    Local area

    Computer World Services

    Morrisville, NC
    5 days ago
  •  ...Computer World Services Corp (CWS) is seeking an experienced Security Analyst/Data Security Specialist to support the planning,...  ...incidents, system configurations, and process changes. Ensure compliance with organizational and industry security standards and best... 
    Local area

    Cwsc

    Morrisville, NC
    1 day ago
  • A leading consulting firm located in Cary, North Carolina seeks an IT Business Analyst with over a year of experience. Key responsibilities include running monthly security reports, establishing reporting schedules, and contributing to security vendor relationships. The... 
    Work at office

    Arete Technologies Inc

    Cary, NC
    5 days ago
  •  ...remote. Our direct client has a new opening for a Lead Security Analyst 141809 This job is 14 months to start, and the...  ..., and cross-functional goal achievement Regulatory compliance & policy implementation Incident response & threat mitigation... 
    Local area
    Remote work

    FHR

    Morrisville, NC
    8 hours ago
  • $44.8k

     ...role, you will help safeguard the integrity, reliability, and security of critical technology systems by planning and executing audits...  ...develop risk mitigation strategies or suggestions. Ensures compliance with IS audit standards, guidelines, and best practices.... 
    Contract work

    MAXIMUS

    Raleigh, NC
    3 days ago
  •  ...Overview CorpInfoTech is seeking a CMMC Compliance Analyst to help organizations across the Defense Industrial Base achieve and sustain CMMC...  ...& Evidence Management Develop and review System Security Plans (SSPs). Develop and review Plans of Action & Milestones... 

    CorpInfoTech

    Raleigh, NC
    5 days ago
  •  ...A financial services company in Raleigh, NC is seeking a Compliance Complaints Analyst with 8 years of experience in Compliance, Legal, Audit, or Banking. The role includes supporting the complaint management program and improving data quality and reporting. Proficiency... 

    Global Channel Management

    Raleigh, NC
    2 days ago
  • $105.79k - $141.05k

     ...our expansive fiber network and connected ecosystem. We enable secure, high‑performance connectivity across cloud, edge, and AI...  ...AI‑ready connectivity, join us today. The Role The CMMC Compliance Analyst must have advanced practical experience in managing all phases... 
    Temporary work
    For contractors
    Remote work

    Lumen Inc

    Raleigh, NC
    4 days ago
  •  ...Lumen is seeking a CMMC Compliance Analyst to manage security integration for DoD and other security requirements. This remote opportunity allows for contributions towards robust security measures across various applications and environments. Responsibility includes executing... 
    Remote work

    Lumen Inc

    Raleigh, NC
    4 days ago
  • $91k - $202.8k

     ...to the company’s success. As a Portfolio Analyst and Strategy Specialist within PNC's...  ...that support risk management, regulatory compliance, portfolio management, and strategic decision...  ...FDIA) and, for any registered role, the Secure and Fair Enforcement for Mortgage... 
    Full time
    Temporary work
    Part time
    Work experience placement
    Work at office

    The PNC Financial Services Group

    Raleigh, NC
    1 day ago
  •  ...branch network. Responsibilities Sales - Promotes investment and securities products through sales outreach and calling efforts to mass...  ...inquiries regarding their investments. Risk Management - Ensures compliance throughout activities with all applicable regulations,... 

    First Citizens

    Raleigh, NC
    5 days ago
  •  ...that genuinely enjoys their work? We are currently seeking a security professional to join us on-site as a Junior Security Specialist...  ...appropriate access rights to Secure Spaces (Badging, etc.). Regulatory Compliance: Ensure physical security measures comply with relevant laws,... 
    Full time
    For contractors
    Work experience placement
    Work at office
    Relocation
    Flexible hours

    Applied Research Associates

    Raleigh, NC
    4 days ago
  • $50 - $60 per hour

     ...A leading AI development company is seeking an Investment Operations Analyst to work remotely. The role involves evaluating AI chatbots on financial challenges and providing structured feedback for improvement. Ideal candidates should have a Master's or PhD in a finance... 
    Hourly pay
    Contract work
    Remote work
    Flexible hours

    DataAnnotation

    Raleigh, NC
    1 day ago
  •  ...and contribute to the Trust Investment Committee Enthusiastically embrace, support, and model the bank's values and mission Ensure compliance with internal/external regulatory policies, procedures, and guidelines Basic Qualifications Bachelor's degree, preferably in... 
    Work experience placement
    Local area

    6AM City

    Raleigh, NC
    4 days ago
  •  ...parental leave Paid education assistance Team member discount Development programs for advancement and career growth Ensures a safe and secure environment for customers, team members, and vendors. Responsible for investigating of internal and external theft, to include ORC... 
    Weekly pay
    Work experience placement
    Internship

    Meijer

    Raleigh, NC
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Security Compliance Analyst. Be the first to apply!