Compliance Advisor (Remote)

Sorry, this job was removed at 05:04 p.m. (CST) on Friday, Mar 29, 2024
Easy Apply
Hiring Remotely in United States
Remote
80K-123K Annually
1-3 Years Experience
Security • Software • Cybersecurity • Automation
Drata is on a mission to help build trust across the internet.
The Role

As a Compliance Advisor at Drata, you are a customer-facing information security and compliance expert for the world’s most advanced security and compliance automation platform. Compliance Advisors execute within the Customer Success function at Drata and work closely with all teams to drive fast and smooth audit readiness programs, create and deliver best practices for meeting requirements for control and privacy frameworks, and advocate on behalf of customers’ needs for a rapidly growing platform. You’ll build trust and empathy with Drata’s customers as you advise them toward a continuous and self-sufficient security and compliance posture.

  • Advise customers with building out information security policies, uploading evidence for controls and overall audit readiness as they prepare for SOC2, ISO 27001, HIPAA, PCI, HITRUST, NIST 800-53, NIST 800-171, CMMC, FedRAMP, GDPR, CCPA, etc..
  • Provide compliance advisory when covering correspondence via live chat, phone calls, and emails.
  • Contribute to creation of documentation for common compliance questions received from customers for both external and internal audiences.
  • Provide compliance advisory support to cross-functional partners such as assisting in creating external training contents, reviewing marketing articles and responding to prospect customer questions.
  • Research and stay updated on major cloud providers’ services (AWS, Azure, GCP), emerging technologies in the cybersecurity space, information security frameworks/standards and privacy standards.
  • Provide feedback to the the Product team in their development of a common control mapping across multiple information security and privacy frameworks ( ex: SOC2, ISO 27001, HIPAA, PCI, HITRUST, NIST 800-53, NIST 800-171, CMMC, FedRAMP, GDPR, CCPA, etc. )
  • Assisting with internal GRC initiatives, such as internal audits and other compliance initiatives.
  • Contribute to the ongoing internal learning and success of our team by sharing knowledge through mentorship and collaboration.

  • 2-3 years experience in helping organizations build out their security and compliance programs based on control and/or privacy frameworks, such as SOC2, ISO 27001/270002, HIPAA, PCI, HITRUST NIST 800-53, NIST 800-171, CMMC, FedRAMP, GDPR, CCPA, etc.
  • 2+years experience in performing audits against one or more of the previous listed frameworks or standards.
  • Familiarity with the security services offered by cloud services, such as AWS, GCP, Azure, BitBucket, GitHub, etc..
  • An understanding of the Shared Responsibility Model and how this model works with SaaS companies.
  • Exceptional verbal and written communication skills, and comfort with leading (potentially solo) presentations, training, and advisory sessions with CISOs, CTOs and business users.
  • A demonstrated track record of constant learning and self-development.
  • Service-minded and attentive to giving customers the best possible support and experience
  •  with our products.
  • Self-motivated to research and learn information security and privacy frameworks/standards and emerging technologies.

  • Healthcare: 90-100% paid premiums for medical, dental, and vision plans for employee and dependents + on demand health care concierge
  • HSA, FSA, & DCFSA: Pre-tax savings plans for healthcare and dependent care, with up to a $600 annual employer contribution to the HSA plan (if enrolled in HSA medical plan)
  • 100% paid short and long term disability plus life + AD&D benefits
  • Learning & Development: $500 annually towards professional development opportunities + $250 annually towards personal development opportunities
  • Flexible Time Off: Flexible vacation policy for strong, fully charged batteries
  • 16 Weeks Paid Parental Leave: An inclusive policy to ensure you have time with your newborn, newly adopted, or foster child
  • Work Remotely: Flexible hours and work from home + $1,000 annually to cover necessary business related items for your home office
  • 401K: Reach your financial goals while reducing your taxes

 



Drata is on a mission to help build trust across the internet.

Drata is a security and compliance automation platform that continuously monitors and collects evidence of a company's security controls, while streamlining compliance workflows end-to-end to ensure audit readiness.

We all recognize the importance of earning and keeping the trust of our customers when it comes to protecting their data. We've felt firsthand how burdensome achieving and maintaining a strong security and compliance posture can be at a fast-growing company. It’s a manual, redundant, error-prone, and unscalable process - and it only grows more complex and expensive over time.

Our team of SaaS, security, compliance, and audit experts have built a better way - with automation.

What the Team is Saying

Mackenzie
Sophia
Landon Scott
Kelsey
Sam
Tones King
Brad Chrisakis
The Company
HQ: San Diego, CA
500 Employees
Remote Workplace
Year Founded: 2020

What We Do

Trust, Automated. Drata automates your compliance journey from start to audit-read and beyond and provides support from the security and compliance experts who built it. The company is backed by ICONIQ Growth, Alkeon Capital, Salesforce Ventures, GGV Capital, Cowboy Ventures, Leaders Fund, Okta Ventures, SVCI, SV Angel, and many key industry leaders.

Why Work With Us

With a powerful mission, our people help to build a unique and diverse culture. Drata supports continued professional development, promotional paths and every opportunity to move fast and reach their full potential. Join our driven team and help build trust across the internet!

Gallery

Gallery
Gallery
Gallery

Drata Offices

Remote Workspace

Employees work remotely.

Flexible hours from the comfort of your home. Drata is a 100% remote environment. While we are a remote company, we have ways to connect and engage with our employees through team off-sites, virtual happy hours, and team challenges.

Typical time on-site: None
HQSan Diego, CA
United States
Company Office Image
GB
Learn more

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account