Senior ITS Security Compliance Analyst - REMOTE
$95.8k - $124.5kVelera
Senior IT Security Compliance Analyst
Velera is the nation's premier payments credit union service organization (CUSO) and an integrated fintech solutions provider. The company serves more than 4,000 financial institutions throughout North America, operating with velocity to help our clients keep pace with the rapid momentum of change and fuel growth in the new era of financial services. Our purpose: We accelerate partners' success through innovative financial technology solutions and inspired service.
The Opportunity:
The Senior IT Security Compliance Analyst provides support for technology compliance programs, including leading and executing functions and duties that may include: consulting and collaborating with business and technology stakeholders at all levels on control design and remediation to mitigate technology risks; participating on large-scale projects; maintaining IT control library/testing general computer and application controls; coordinating and supporting technology components of onsite and virtual audits/assessments, NCUA examinations and client due diligence reviews; performing segregation of duties reviews and user attestations; documenting process flows and compliance-related deliverables; assisting with creation and maintenance of IT and information security policies and standards required to maintain company certifications (e.g., PCI DSS, NIST CSF); coaching and cross-training technology compliance staff. The individual will execute assigned duties to meet stated priorities and SLAs. The individual plays a critical role in driving technology control and compliance practices and adoption across the company. This role directs and advises technical SMEs in the design, implementation, monitoring and reporting of technology control and compliance processes and documentation on premise and in the Cloud.
Day in the Life:
- With minimal oversight, execute technology compliance and governance duties as assigned to meet company information security & technology compliance standards, industry requirements, and applicable laws and regulations (e.g., PCI DSS, NIST CSF, NIST AI Risk Mgt).
- Participate on strategic business and client commercialization projects (e.g., consulting, documenting, validating, and testing Blueprint controls); Review, test, and validate user account and security configurations for compliance with information security and technology policies/standards; Collect and maintain appropriate evidence and supporting documentation.
- Collaborate with and advise technical and business unit resources at all levels on designing, implementing, and remediating technology controls that achieve risk and control objectives and meet compliance requirements while striking a balance between costs vs. benefits.
- Execute segregation of duties (SOD) reviews and user attestations of internal/business partner systems and client online banking platforms.
- Document, maintain, and facilitate technology compliance deliverables (e.g., PCI Scope Validation, Targeted Risk Assessments, Compensating Control Worksheets, Shared Responsibility Matrices, process flows, department procedures).
- Identify and report on technology control status and metrics; Assist with Audit Committee and Board reporting.
- Coordinate and support technology components of internal/external audits and assessments (e.g., SOC1/2, PCI DSS, NIST CSF, NIST AI Risk Mgt, NACHA) and onsite/virtual client reviews; Drive for timely submission of critical audit and compliance deliverables.
- Perform QA reviews of technology compliance work products (e.g., user attestation packages) and client assistance documentation prior to delivering to internal and external auditors, clients, and business partners.
- Cross-train, coach, and mentor technology compliance team members in performing job functions.
- Support vendor risk governance program, RFPs, and client due diligence responses (e.g., SIG questionnaires, cybersecurity risk assessments).
- Perform other duties as assigned.
Qualifications:
- Bachelor's degree in computer science, information systems, cybersecurity, or related field, or equivalent combination of education and experience required. Cybersecurity risk management, governance, and control professional certification required (e.g., CISA, CRISC, CGEIT).
- Other relevant professional certifications preferred (e.g., PCI Internal Security Assessor (ISA), PCI Qualified Security Assessor (QSA), Certificate of Cloud Security Knowledge (CCSK), Project Management Professional (PMP), Certified ScrumMaster (CSM)).
- Eight (8) years of relevant work experience in public accounting firm, IT controls consulting/testing, PCI/NIST CSF assessments, IT internal/external auditing, and technology risk management required. Experience in identification, validation, design, and testing operating effectiveness of general computer and application controls. Experience assessing cloud security and controls required. Experience in financial services required.
- Demonstrate behaviors based on Velera values: Dedication, Collaboration, Belonging, Curiosity, & Integrity
- Theoretical knowledge and practical application of major risk and IT control frameworks, IT industry standards, and financial services regulations surrounding IT (e.g., PCI, NIST CSF, NIST AI Risk Management, FFIEC, NACHA, CMM, COBIT, ITIL, COSO)
- Solid knowledge of independent audit and assessment reports per job function (e.g., SOC1/2, PCI DSS AOC/ROC)
- Ability to work with cross-functional technology and business teams
- Ability to apply understanding of IT security/controls risk vs. business impact in decision making
- Ability to influence without authority
- Ability to be flexible and work under high pressure in a complex environment with frequently shifting priorities
- Strong organizational and time management skills; Ability to multi-task and juggle competing tasks under strict deadlines
- Self-starter with minimal management supervision; Ability to take ownership, seeing tasks and projects through to satisfaction and completion
- Interpersonal skills necessary to interact with executive management and to obtain cooperation from all levels of management and other company personnel
- Solid understanding and ability to apply security concepts across a broad scope of information technology areas including cloud, data communications, network design, operations, database structures, operating systems, application development, security risk assessment, and disaster recovery
- Solid knowledge of and experience with various operating system and database platforms (e.g. Windows AD, Azure, Unix, Oracle, SQL)
- Project management skills including ability to manage multiple projects and work effectively with technology and business resources to drive internal control, process improvement, and remediation efforts
- Strong business acumen; ability to communicate compliance and technical requirements into relevant and understandable terms for business personnel and vice versa for technology personnel
- Ability to communicate effectively, both verbally and in written formats
- Demonstrated strong analytical, problem solving, and critical thinking skills
- Ability to work well in team environment
- Ability to exercise discretion, situational awareness, and good judgment in making decisions
- Proficiency in Word, flow charting (e.g., Visio) and advanced features of spreadsheets (Excel)
- Ability to travel as needed to successfully perform position responsibilities, less than 25%
- Ability to maintain confidentiality of materials handled
About Velera
At Velera, inclusion isn't an initiative – it's how we work. Guided by a people-helping-people philosophy, we cultivate a culture where every employee feels valued, respected and empowered to do their best work. We're committed to building a diverse workforce and fostering meaningful connection across our teams. Through a remote-first, flexible environment, we prioritize psychological safety, wellbeing and belonging so individuals and teams can collaborate to thrive. Together, we're shaping a new era of secure, innovative solutions for the clients and communities we serve. Learn more about what it's like to work at Velera.
Pay Equity
$95,800.00 - $124,500.00
Actual Pay will be adjusted based on experience and other job-related factors permitted by law.
Great Work/Life Benefits!
- Competitive wages
- Medical with telemedicine
- Dental and Vision
- Basic and Optional Life Insurance
- Paid Time Off (PTO)
- Maternity, Parental, Family Care
- Community Volunteer Time Off
- 12 Paid Holidays
- Company Paid Disability Insurance
- 401k (with employer match)
- Health Savings Accounts (HSA) with company provided contributions
- Flexible Spending Accounts (FSA)
- Supplemental Insurance
- Mental Health and Well-being: Employee Assistance Program (EAP)
- Tuition Reimbursement
- Wellness program
- Benefits are subject to generally applicable eligibility, waiting period, contribution, and other requirements and conditions
Velera is an Equal Opportunity Employer. We consider applicants without regard to race, color, religion, age, national origin, ancestry, ethnicity, gender, gender identity, gender expression, sexual orientation,
- ...A leading crypto firm is seeking a senior professional to lead IT audit initiatives and manage compliance programs. The position involves close collaboration with different... ...a strong grasp of SOX frameworks. This fully remote role offers a competitive salary package and the...Remote workSenior
$130k - $160k
...OpenSesame is seeking a Senior Security Analyst to strengthen the company's security posture in a fast... ...and collaborate with engineering and compliance teams. The role emphasizes the... ...management. OpenSesame operates as a remote-first company, investing in employee development...Remote workSenior- ...A leading crypto company seeks a senior professional for its Security Team to lead SOC examinations and develop IT control processes. This remote role involves collaboration with IT, Engineering... ...to enforce audit rigor and enhance compliance. The ideal candidate has over 5...Remote workSenior
- ...Velera is seeking a Remote Senior IT Security Compliance Analyst to support technology compliance programs. This role involves leading compliance functions, collaborating with stakeholders, and maintaining necessary security certifications. The ideal candidate will have...Remote workSeniorFlexible hours
- ...Velera Solutions, LLC is seeking a Senior IT Security Compliance Analyst to lead technology compliance efforts. Responsibilities include consulting on control design, maintaining IT controls, and supporting audits. Candidates should have a Bachelor's degree in a relevant...Remote workSenior
- ...Senior Security & Compliance Analyst At MNTN, we put our people first, full stop. This allows our company culture to be defined by our team members... ...compliance (GRC) tools. MNTN Perks ~100% remote within the US ~ Flexible vacation policy ~ Annual vacation...Remote workSeniorLive inFlexible hoursWeekend work
$125k - $175k
...Senior Security Compliance Analyst At OneStudyTeam (a Reify Health company), we specialize in speeding up clinical trials and increasing the chance... ...~ Ability to work independently and collaboratively in a remote environment. ~ Familiarity with GRC tools (e.g.,...Remote workSeniorFull timeVisa sponsorshipWork visa$115k - $130k
...Senior Security Compliance Analyst (Remote - US) Senior Security Compliance Analyst (Remote - US) Get AI-powered advice on this job and more exclusive features. This range is provided by Jobgether. Your actual pay will be based on your skills and experience — talk with...Remote workSeniorFull timeWorldwideFlexible hours$122.4k - $195.5k
...Senior Security & Compliance Analyst Remote - Los Angeles, CA About the Senior Security & Compliance Analyst at Headspace: What you will do: Interact closely with other cyber security architects, privacy officer, general counsel, engineering, and product...Remote workSeniorFull timeCurrently hiringLocal area- ...Insight Global are seeking a Senior IT Security & Compliance Analyst to support and strengthen global security and compliance initiatives across a leading international cruise line brand. This role sits within IT Risk & Compliance and is responsible for ensuring the...SeniorContract workWork at office
- ...Seeking a full-time Senior Security Analyst to work remotely, who will manage network monitoring, perform SIEM operations using Elastic SIEM, and enhance threat detection capabilities while collaborating with customers to improve their security posture. Key Responsibilities...Remote workSeniorFull time
$100k - $130k
...A leading cybersecurity firm is seeking a proactive Security Analyst to join their team in the United States. This role involves monitoring... ...salary range of $100,000 - $130,000 per year along with comprehensive benefits and a fully remote work culture. #J-18808-Ljbffr...Remote workSenior$130k
...Job Title: Senior Power Platform Consultant – Dynamics 365 CE Location: Remote – United States Salary: Up to $130,000 USD + Benefits Deliver Innovative Microsoft Solutions with a Leading Dynamics Partner A leading Microsoft Dynamics Partner is looking to hire a Senior...Remote workSenior$140k - $180k
...the world’s largest enterprises and managed services providers leverage NetBrain’s platform. What We Need We are seeking a security and compliance leader to build and operationalize a scalable security program for our SaaS environment. This role will define policies,...Senior- ...Oracle Fusion Application Security Analyst The Oracle Fusion Application Security Analyst is... ...assignments, and enterprise role mappings. Compliance, Audit & SOX Controls Execute... ...Category IT Job Schedule Full time Job Shift On Call Workplace Remote...Remote workSeniorFull timeShift work
$110k - $115k
...~ Strong leadership team with experience from many successful startups around the world Insurify is hiring a Senior Security and Compliance Analyst to help design and enforce security controls to protect systems, data, and infrastructure while ensuring alignment...SeniorWork at office- ...Senior SailPoint IAM Security Analyst Location: Arlington, VA (Remote, Occasional Travel) Type: Long Term Overall min 12+ years Required Skills: SailPoint... ...Sentinel integration, and Security Center and Compliance Center for monitoring and managing security...Remote workSeniorWork at office
- ...A company is looking for a Security Compliance / RMF Analyst to support the Federal Communications Commission (FCC). Key Responsibilities Support RMF lifecycle activities including system authorization and continuous monitoring Develop and maintain security documentation...Remote work
- ...The Sr. Information Security Analyst is responsible for assessing information risk and facilitates remediation of identified vulnerabilities... ...governance functions such Operations, IT, HR, Legal, and Compliance. Key responsibilities including but not limited to:...Remote workSenior
- ...with a Prime for their end customer, a federal agency. Position : Senior SOC - Security/Resource Management Analyst - (US Citizenship is a MUST) - (4 days ONSITE and 1 day REMOTE at Present, however, it may go 100% ONSITE in the near future) Location...Remote workSeniorFull timeFor contractorsWork experience placementImmediate startShift work
- ...To support the organization's security initiatives, the remote Senior Security GRC Analyst will manage the Information Security Program, conduct compliance audits, and collaborate with various stakeholders to enhance security practices and policies. Key responsibilities...Remote workSenior
- ...a partner company. We are currently looking for a FCC - Security Compliance / RMF Analyst in United States. This role offers an exciting opportunity... ...with strategic risk management. This is a fully remote opportunity with strong exposure to enterprise cybersecurity...Remote work
- ...A company is looking for a Sr. Information Security Analyst. Key Responsibilities Provide operational support for IAM related administration... ...Access Management tools Familiarity with IT Governance and Compliance functions, including SOC2 Understanding of Non-Human...Remote workSenior
$85.09k - $109.25k
...Program Analyst Senior GDIT has been supporting the IHS mission for... ...ensuring compliant, efficient, and secure personnel access and... .... This position is fully remote with the possibility of up to... ...activities that ensure full compliance with Controlled Unclassified...Remote workContract workWork from homeFlexible hours- ...Audit And Compliance Security Analyst II Location: Madison, WI- Must Relocate Duration: 1 year Interview Process: Teams Duration of... ...relocate to WI prior to starting the role at their own expense. Remote within the State Top Required Skills & Years of...Remote workContract workRelocation
- ...healthcare consultancy in the United States is looking for a Security & Compliance Analyst. This role supports compliance with CMMC Level 2... ...with Microsoft 365 security tools. The position is fully remote and offers flexible engagement options, making it an excellent...Remote workFlexible hours
$145k
...company at the forefront of urban delivery innovation. As a Senior Security Analyst, you'll be instrumental in enhancing security measures... ...autonomous delivery solutions. Pay: $145,000. Location: 100% Remote. Requirements ~4+ years of experience as a security...Remote workSeniorWork experience placementLocal areaNight shift- ...Information Security Analyst Location: Fully Remote Duration: 4-12+ months Contract Must Haves: CyberArk is the must have skill set. Communication 10/10, they need to be able to communicate clearly as well as document everything clearly. The other key skill...Remote workSeniorContract workWeekend work
- ...Nordic consultant is more than just an Epic expert. Our analysts take ownership for their work and the greater success... ...experience -At least 1 current Epic certification (Security, Security Coordinator) Senior Consultant A Senior Consultant provides consulting...Remote workSeniorContract workLocal area
- ...Senior Security Analyst We are seeking an Infosec Practitioner to support the design, implementation, and management of security frameworks... ...cloud security, IAM, vulnerability management, security compliance frameworks, and security monitoring tools. The role will also...Remote workSenior
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior ITS Security Compliance Analyst - REMOTE. Be the first to apply!
- information security compliance analyst United States
- application security analyst United States
- network security analyst United States
- junior security analyst United States
- national security analyst United States
- rate analyst United States
- cloud security analyst United States
- security analyst intern United States
- security operations analyst United States
- entry level security analyst United States


