Senior Security & Compliance Analyst
$122.4k - $195.5kHeadspace
Senior Security & Compliance Analyst
Santa Monica, California, United States
About the Senior Security & Compliance Analyst at Headspace:
What you will do:
- Interact closely with other cyber security architects, privacy officer, general counsel, engineering, and product management teams to ensure adequate security capabilities and controls are in place within the technology stack to mitigate security risks and meet the highest security and compliance requirements.
- Work closely with prospects and the proposal managers to provide detailed responses to security assessment questionnaires.
- Continuously research, design, advocate and recommend new security technologies, architectures, and products that will ensure meeting all compliance requirements.
- Function as the go-to individual with in-depth understanding of all security and compliance related nuances within the Headspace Health stack.
- Develop the ability to effectively navigate a highly complex environment to independently retrieve technical evidence for gaining assurance over the effectiveness of controls.
- Serve as the subject matter expert who will actively guide the broader risk and compliance team on all security-related technical components within the environment.
- Conduct ad-hoc security architecture/application reviews to assess new risks, keep abreast of latest cyber security technical risks, and foster a culture of continuous service improvement and service excellence. Pre-audit analysis, strategic product analysis, diligence for components/technologies under review.
- Support for product testing in the course of audit and provide the post-audit analysis and assessment.
- Telecommuting permitted pursuant to company policy.
What you will bring:
Required Skills:
- Education Requirements: Bachelor's degree or foreign equivalent in Computer Engineering, Management Information Systems, Cybersecurity or related field.
- Experience Requirements: Two (2) years of experience in the position offered, as a Security Analyst or related occupation.
- Must have experience with the following: industry security compliance frameworks and regulations (ISO 27001/2, PCI-DSS, HIPAA, GDPR, FedRAMP, HITRUST, SOC 1, SOC 2, and international privacy requirements; cloud security concepts (DevSecOps, Infrastructure as Code (IaC), Continuous Integration/Continuous Deployment (CI/CD), Static Application Security Testing (SAST), and Dynamic Application Security Testing (DAST)); agile secure software development lifecycle and distinguishing core inputs and outputs in each cycle; security engineering practices (incident response, anti-malware solutions, threat detection, and vulnerability management); assessing and managing risks associated with third-party vendors and partners handling PII/PHI; developing and delivering security awareness training, emphasizing compliance and best practices in handling sensitive client information.
Location:
We are currently hiring this role in Santa Monica, CA.
Pay & Benefits:
The anticipated new hire base salary range for this full-time position is $122,400 - $195,500 + equity + benefits.
Our salary ranges are based on the job, level, and location, and reflect the lowest to highest geographic markets where we are hiring for this role within the United States. Within this range, individual compensation is determined by a candidate's location as well as a range of factors including but not limited to: unique relevant experience, job-related skills, and education or training. Your recruiter will provide more details on the specific salary range for your location during the hiring process.
At Headspace, base salary is but one component of our Total Rewards package. We're proud of our robust package inclusive of: base salary, stock awards, comprehensive healthcare coverage, monthly wellness stipend, retirement savings match, lifetime Headspace membership, generous parental leave, and more. Additional details about our Total Rewards package will be provided during the recruitment process.
About Headspace:
Headspace exists to provide every person access to lifelong mental health support. We combine evidence-based content, clinical care, and innovative technology to help millions of members around the world get support that's effective, personalized, and truly accessible whenever and wherever they need it.
At Headspace, our values aren't just what we believe, they're how we work, grow, and make an impact together. We live them daily: Make the Mission Matter, Iterate to Great, Own the Outcome, and Connect with Courage. These values shape our decisions, guide our collaborations, and define our culture. They're our shared commitment to building a more connected, human-centered team—one that's redefining how mental health care supports people today and for generations to come.
Why You'll Love Working Here:
- A mission that matters—with impact you can see and feel
- A culture that's collaborative, inclusive, and grounded in our values
- The chance to shape what mental health care looks like next
- Competitive pay and benefits that support your whole self
How we feel about Diversity, Equity, Inclusion and Belonging:
Headspace is committed to bringing together humans from different backgrounds and perspectives, providing employees with a safe and welcoming work environment free of discrimination and harassment. We strive to create a diverse & inclusive environment where everyone can thrive, feel a sense of belonging, and do impactful work together.
As an equal opportunity employer, we prohibit any unlawful discrimination against a job applicant on the basis of their race, color, religion, gender, gender identity, gender expression, sexual orientation, national origin, family or parental status, disability*, age, veteran status, or any other status protected by the laws or regulations in the locations where we operate. We respect the laws enforced by the EEOC and are dedicated to going above and beyond in fostering diversity across our workplace.
*Applicants with disabilities may be entitled to reasonable accommodation under the terms of the Americans with Disabilities Act and certain state or local laws. A reasonable accommodation is a change in the way things are normally done which will ensure an equal employment opportunity without imposing undue hardship on Headspace. Please inform our Talent team by filling out this form if you need any assistance completing any forms or to otherwise participate in the application or interview process.
Headspace participates in the E-Verify Program.
Privacy Statement:
All member records are protected according to our Privacy Policy. Further, while employees of Headspace (formerly Ginger) cannot access Headspace products/services, they will be offered benefits according to the company's benefit plan. To ensure we are adhering to best practice and ethical guidelines in the field of mental health, we take care to avoid dual relationships. A dual relationship occurs when a mental health care provider has a second, significantly different relationship with their client in addition to the traditional client-therapist relationship—including, for example, a managerial relationship.
As such, Headspace requests that individuals who have received coaching or clinical services at Headspace wait until their care with Headspace is complete before applying for a position. If someone with a Headspace account is hired for a position, please note their account will be deactivated and they will not be able to use Headspace services for the duration of their employment.
Further, if Headspace cannot find a role that fails to resolve an ethical issue associated with a dual relationship, Headspace may need to take steps to ensure ethical obligations are being adhered to, including a delayed start date or a potential leave of absence. Such steps would be taken to protect both the former member, as well as any relevant individuals from their care team, from impairment, risk of exploitation, or harm.
For how how we will use the personal information you provide as part of the application process, please see:
$130k - $160k
...OpenSesame is seeking a Senior Security Analyst to strengthen the company's security posture in a fast-moving environment. You will manage... ...penetration testing, and collaborate with engineering and compliance teams. The role emphasizes the integration of AI security...SeniorRemote work- ...X-energy in Rockville, Maryland is seeking a qualified Plant Security Analyst to support the development and implementation of the Physical Protection Program for the Xe-100 plant. This includes security planning for construction and the oversight of access programs....SeniorFull time
- ...Ardelyx is looking for a Senior IT Security, Risk & Compliance Analyst in Waltham, MA. This role requires expertise in IT compliance and risk management within a life sciences setting. Responsibilities include advising project teams on validation strategies, maintaining...Senior
- ...A leading crypto company seeks a senior professional for its Security Team to lead SOC examinations and develop IT control processes. This remote... ...Engineering, and Finance to enforce audit rigor and enhance compliance. The ideal candidate has over 5 years of audit...SeniorRemote work
- ...Elastic is seeking a Senior Information Security Compliance Analyst to lead Department of Defense (DoD) compliance initiatives. The role focuses on implementing and auditing security controls for sensitive government workloads and requires deep expertise in DoD cloud...Senior
- ## Senior Security Compliance Analyst – Customer Assurance - EMEAApplylocations: Remote - Germanytime type: Full timeposted on: Posted Todayjob requisition id: R-101350**Job Description:****We Are Omnissa!**Omnissa is the first AI-driven digital work platform, built to...SeniorContract workRemote workFlexible hours
- A leading crypto firm is seeking a senior professional to lead IT audit initiatives and manage compliance programs. The position involves close collaboration with different teams to design scalable controls and improve audit outcomes. The ideal candidate has over 5 years...SeniorRemote job
- A premier identity service provider based in Washington seeks a Staff Federal Security Compliance Analyst to lead compliance strategy in the public sector. You will manage FedRAMP and DoD audits, mentor junior analysts, and develop security frameworks. The role requires...Senior
- Systems Planning & Analysis in Alexandria, VA is looking for a National Security Compliance Analyst to provide onsite support. You will engage with DoD's compliance efforts related to foreign investment, ensuring adherence to guidelines and developing mitigation strategies...Senior
$60k - $65k
...for a Licensing Specialist to act as the Business Information Security Officer in Duluth, GA. Responsibilities include managing official... ...correspondences, maintaining corporate records, and ensuring compliance with state and federal regulations. The ideal candidate has a...Senior- Systems Planning and Analysis, Inc. is seeking a National Security Compliance Analyst to provide onsite support at the Mark Center in Alexandria, VA. This role will require expertise in compliance and monitoring surrounding foreign investments and collaboration with DoD...SeniorWork at office
- SPA is seeking a National Security Compliance Analyst to provide onsite support in Alexandria, VA. The role involves supporting compliance with CFIUS processes and developing risk mitigation options. The ideal candidate has a Bachelor's degree, Juris Doctor, and 12+ years...Senior
$140k - $195k
...energy LLC is seeking a qualified individual to support Plant Security management for the Xe-100 plant in Rockville, MD. This full-time... ...security plans, managing access programs, and ensuring compliance with NRC regulations. Ideal candidates will have at least 20 years...SeniorFull time$2,000 per month
...advantage of all structured and unstructured data - securing and protecting private information more effectively -... ...What is The Role: We are seeking an experienced Senior Information Security Compliance Analyst to lead our Department of Defense (DoD) Impact Level...SeniorLocal areaFlexible hours$110k - $140k
...Senior Security Compliance Analyst At OneStudyTeam (a Reify Health company), we specialize in speeding up clinical trials and increasing the chance of new therapies being approved with the ultimate goal of improving patient outcomes. Our cloud-based platform, StudyTeam...SeniorFull timeRemote workVisa sponsorshipWork visa- ...Senior Security & Compliance Analyst At MNTN, we put our people first, full stop. This allows our company culture to be defined by our team members and their shared values, like trust, ambition, quality, radical honesty, and compassionate leadership. It's why we all...SeniorLive inRemote workFlexible hoursWeekend work
- ...participates as a responsible, cooperative, and positive team member. Assignments may include software development, database administration, security administration, network, and server administration, service desk management, and GIS. Levels in this classification are flexibly...Senior
- ...access to county information for the public and employees. Support the business goals of the county efficiently. Provide safe and secure systems. Provide technology training for staff. Provide opportunities for constituents to use technology. Share and exchange information...Senior
$115k - $130k
Senior Security Compliance Analyst (Remote - US) Senior Security Compliance Analyst (Remote - US) Get AI-powered advice on this job and more exclusive features. This range is provided by Jobgether. Your actual pay will be based on your skills and experience — talk with...SeniorRemote jobFull timeWorldwideFlexible hours$145k - $177k
...respected, supported, and empowered to make an impact — both within our company and in the lives of patients we serve. Senior IT Security, Risk & Compliance Analyst This role supports IT compliance, risk management, and computer systems validation activities within a regulated...SeniorFull timeWork experience placementWork at officeFlexible hours$49.73k - $84.1k
...Senior Security Governance Risk and Compliance Analyst At Commerce, our mission is to empower businesses to innovate, grow, and thrive with our open, AI-driven commerce ecosystem. As the parent company of BigCommerce, Feedonomics, and Makeswift, we connect the tools...SeniorWork at officeLocal areaFlexible hours3 days per week- ...Solutions in Tampa is seeking a highly skilled Sr Cybersecurity Analyst to join our IT and cybersecurity team. This role focuses on managing Microsoft 365 and Azure security solutions, ensuring strong compliance with frameworks like NIST 800-171 and CMMC Level 2. The ideal...SeniorWork at office
$89.71k
..., knowledge, skills, and behaviors required. SUMMARY - Senior Information Security Analyst: Under the general supervision of the Supervisor, IT Infrastructure... ...software tools to ensure proper security posture for compliance. Writes reports and briefings related to specific...SeniorFull timeWork experience placementWork at officeNight shiftWeekend workAfternoon shiftWeekday work- ...A leading healthcare system in New York is seeking a Sr. II Security Analyst focused on managing security vulnerabilities. The role involves conducting vulnerability scans, analyzing threats, and coordinating with various teams. Candidates must have at least 6 years of...Senior
- ...technology services company in Richmond, Virginia, is seeking an IT Security Analyst to monitor and advise on information security issues. The... ...offers a unique opportunity to enhance security frameworks while ensuring compliance with best practices. #J-18808-Ljbffr...Senior
- ...A technology company based in Virginia is seeking an IT Security Analyst to lead initiatives ensuring effective security controls and manage incident responses. Responsibilities include developing security policies, conducting audits, and enhancing user security awareness...Senior
- ...A cybersecurity firm in Scottsdale, Arizona, is seeking a Senior Security Analyst (L2) for the night shift. The role involves triaging alerts, assisting in incident responses, and mentoring junior analysts. Candidates must have a solid understanding of incident response...SeniorNight shift
- ...Niagara Bottling, LLC is seeking a Sr. IT Infrastructure Cyber Security Analyst in Diamond Bar, CA. This role is operational with 24x7 on-call responsibilities to maintain SLAs for critical business applications. The ideal candidate will support security operations, analyze...Senior
$116k - $175k
...Applied Information Sciences, Inc is seeking a Principal Facility Security Officer in Washington, DC. This role involves supporting personnel security investigations and adjudication processes in a federal environment. Ideal candidates will have a Bachelor's degree and...Senior- ...A human resources consulting firm is seeking a Security Analyst for a 12-month position in Columbia, SC. The role requires 5+ years in IT, with skills in auditing various systems and networks. Candidates must hold a relevant BS degree and certifications in Information...Senior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior Security & Compliance Analyst. Be the first to apply!
- entry level security analyst United States
- cloud security analyst United States
- information security compliance analyst United States
- application security analyst United States
- security operations analyst United States
- entry level information security analyst United States
- information security analyst United States
- bond analyst United States
- work from home security analyst United States
- network security analyst United States


