Security Compliance Analyst

Paris, France

Crypto.com

Over 100 million users buy, sell, and trade Bitcoin, Ethereum, NFTs and more on Crypto.com. Join the World's leading crypto trading platform.

View all jobs at Crypto.com

Apply now Apply later

As our Security Compliance Analyst, you will be tasked with security compliance activities along with our journey. You are expected to take the initiative to assist us with several security compliance programs and certifications. You are required to address and review compliance gaps and give recommendations and support on remediation activities. You will also be trusted to provide technical advice to ensure that security compliance requirements are met throughout all business units. This role must be able to work remotely with distributed teams and in person with teams in France.

Responsibilities

  • Assist in our security compliance programs, including ISO, PCI DSS, SOC2, etc
  • Participate in internal security and privacy assessments, internal audits, customer audits, compliance certifications, and third-party risk management
  • Provide accurate and consistent responses to customers or third-party on security compliance enquiries
  • Perform security compliance activities, including conducting annual and project risk & control assessments and third-party assessments, and managing remediation activities
  • Design necessary control required to comply with international standards and local regulations 
  • Evaluate technical and organisational controls to ensure effectiveness and compliance, including managing the control remediation efforts

Requirements

  • Experience in information security, IT audit or IT risk management-related roles.
  • Prefer experience with one or more of the following: conducting security control assessments, risk assessments or audits.
  • Prefer experience with any of the following: ISO27001 and ISO27701 standards, and data protection regulations and requirements.
  • Holders of security-related certifications/qualifications (CISSP, CRISC, CISM, CISA, ISO27001 LA, PCI QSA, CIPT, CIPP/E, etc.) will be an advantage.
  • Experience with the French Network and Information Security Agency (ANSSI) standards and guidelines, including PASSI audits.
  • Minimum 3 years of hands-on experience in a fast-paced working environment
Apply now Apply later
  • Share this job via
  • 𝕏
  • or

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  21  4  0

Tags: Audits CIPP CISA CISM CISSP Compliance CRISC ISO 27001 PCI DSS PCI QSA Privacy Risk assessment Risk management SOC 2

Region: Europe
Country: France

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.