Compliance Analyst - Cybersecurity
Toronto, Ontario
Docebo
Docebo's learning platform is more than LMS. Drive engagement, productivity, and connections with your customers, partners, and employees.
Hey you! 👋 Want to work for one of the fastest growing SaaS companies in the world? 📈We’re building the next generation of learning software that companies like AWS, Netflix, Opentable and L’Oreal rely on to deliver training 💻 We believe learning is for everyone, and that we all have something we can learn from each other. We rely on one another to continuously innovate our products and processes to create an exceptional experience for our employees, customers and partners.
Still not sure? We are a culture where values are at the center of everything we do. We also embody what we call the Docebo Heart. We trust our teammates, assume the best of one another, and also hold space for all the differences that make us better. 💙
So what are you waiting for? Apply today! Join 800+ global Docebians and change the way people learn.
Are you ready to be a part of the learning revolution? 🚀
About This Opportunity:
The Compliance Analyst will collaborate with internal departments and external parties to strengthen Docebo's Compliance and Security initiatives. This role encompasses a wide range of frameworks relevant to Docebo products, including NIST, GDPR, PCI, ISO, SOC, SOX, CFR21, and FedRAMP.
The role will primarily support customer-facing communication and responses to Prospect and Customer questions related to Company Compliance and Security posture. The ideal candidate should be proactive and adaptable, with a solid understanding of cloud technology, particularly in security. They should have experience in SaaS services, be skilled at reviewing customer agreements, and possess exceptional communication abilities.
Reports to: Business Enablement Manager - SecurityLocation: Toronto (Hybrid)
Benefits & Perks 😍-Generous Vacation Policy, plus 2 extra floating holidays to use for religious or cultural events that matter to you-Employee Share Purchase Plan-Career progression/internal mobility opportunities-Four employee resource groups to get involved with (the Docebo Women's Alliance, PRIDE, BIDOC, and Green Ambassadors)-WeWork partnership and “Work from Anywhere” program
Hybrid Office Model 🏢We believe when people are together, they develop deeper relationships and accelerate innovation. Because of this, all Docebo employees worldwide are “hybrid.” We encourage in-person collaboration while supporting work-from-home when employees need dedicated focus time, allowing Docebians to do their best every day. Each team leader is able to decide how often their teams come into the office, considering the needs of the team and the employee’s needs. Our Talent Acquisition team will let you know about the role you are applying for and the hybrid details during the first interview.
About Docebo 💙Here at Docebo, we power learning experiences for over 3000 customers around the world with our easy-to-use, AI-powered Suite designed to close the enterprise learning loop. We have successfully achieved 2 IPOs (TSX: DCBO & NASDAQ: DCBO), been recognized as a Top SaaS e-learning Solution, and are growing exponentially in the process.Docebo is a global company with offices in North America, EMEA, APAC and more. Our people believe in six core values, simply defined and manifested in everything we do - Innovation, Simplicity, Accountability, Togetherness, Curiosity, and Impact. If this sounds like you, now is your time to join one of the fastest-growing learning technology companies on the market. Apply today!
Docebo is an Equal Employment Opportunity employer. We are committed to diversity and inclusion in our workforce. All qualified applicants and employees will receive consideration for employment regardless of their race, color, religion, sex (including pregnancy, gender identity, and sexual orientation), national origin, citizenship status, age, disability, genetic information, or any other category protected under applicable law.
Any individuals requiring a reasonable accommodation to assist with their job search or application for employment should send an e-mail to recruiting_accommodations (at) docebo.com. The e-mail should include a description of the requested accommodation and the position you’re applying for or interested in.
Still not sure? We are a culture where values are at the center of everything we do. We also embody what we call the Docebo Heart. We trust our teammates, assume the best of one another, and also hold space for all the differences that make us better. 💙
So what are you waiting for? Apply today! Join 800+ global Docebians and change the way people learn.
Are you ready to be a part of the learning revolution? 🚀
About This Opportunity:
The Compliance Analyst will collaborate with internal departments and external parties to strengthen Docebo's Compliance and Security initiatives. This role encompasses a wide range of frameworks relevant to Docebo products, including NIST, GDPR, PCI, ISO, SOC, SOX, CFR21, and FedRAMP.
The role will primarily support customer-facing communication and responses to Prospect and Customer questions related to Company Compliance and Security posture. The ideal candidate should be proactive and adaptable, with a solid understanding of cloud technology, particularly in security. They should have experience in SaaS services, be skilled at reviewing customer agreements, and possess exceptional communication abilities.
Reports to: Business Enablement Manager - SecurityLocation: Toronto (Hybrid)
Responsibilities:
- Respond to customer security requests, review RFI/RFQ, and properly compile responses related to Docebo's Compliance and Security posture.
- Respond to customer Compliance and Security questionnaires and identify outstanding customer requirements that need to be internally addressed with Corrective Action Plans (CAPs).
- Drive customer Compliance and Security annual audits.
- Support the Docebo legal team in reviewing Customer Agreements and Terms and Conditions, Data Processing Addendum, and any Compliance and Security documents, mapping customer requirements to Docebo standard processes.
- Prepare draft reports and other management reporting deliverables;
- Organize the internal Compliance and Security documentation and tools to keep them up to date and publish them on the Docebo “trust page”.
- Conducts additional information gathering as needed to identify compliance risks.
- Provide support to the GRC team (Governance, Risk, and Compliance) during SOC2, ISO27001, and FedRAMP audits to ensure that the organization is audit-ready.
- Other duties related to Compliance and Security as may be assigned or requested.
Requirements:
- Significant working experience supporting audits and compliance & security activities for SaaS companies.
- Working knowledge of information security principles, trends, and best practices, including AWS environment and services.
- Knowledge of GDPR requirements and other data privacy laws (CCPA, PIPL, etc.).
- Understanding of compliance and security management principles.
- Continuous learning mindset, passion for the intersection of technology and business.
Preferred Requirements:
- Bachelor's degree in computer science, information security, auditing, law, or similar.
- Basic legal knowledge and principles related to any applicable privacy laws worldwide (GDPR, CCPA, etc.)
- Certified Information Systems Auditor (CISA)
- IAPP CIPP or CIPT
- CompTIA Security+
- FedRamp framework knowledge
- Proficient in tools such as Drata, RFP.io, Loopio, and similar.
Benefits & Perks 😍-Generous Vacation Policy, plus 2 extra floating holidays to use for religious or cultural events that matter to you-Employee Share Purchase Plan-Career progression/internal mobility opportunities-Four employee resource groups to get involved with (the Docebo Women's Alliance, PRIDE, BIDOC, and Green Ambassadors)-WeWork partnership and “Work from Anywhere” program
Hybrid Office Model 🏢We believe when people are together, they develop deeper relationships and accelerate innovation. Because of this, all Docebo employees worldwide are “hybrid.” We encourage in-person collaboration while supporting work-from-home when employees need dedicated focus time, allowing Docebians to do their best every day. Each team leader is able to decide how often their teams come into the office, considering the needs of the team and the employee’s needs. Our Talent Acquisition team will let you know about the role you are applying for and the hybrid details during the first interview.
About Docebo 💙Here at Docebo, we power learning experiences for over 3000 customers around the world with our easy-to-use, AI-powered Suite designed to close the enterprise learning loop. We have successfully achieved 2 IPOs (TSX: DCBO & NASDAQ: DCBO), been recognized as a Top SaaS e-learning Solution, and are growing exponentially in the process.Docebo is a global company with offices in North America, EMEA, APAC and more. Our people believe in six core values, simply defined and manifested in everything we do - Innovation, Simplicity, Accountability, Togetherness, Curiosity, and Impact. If this sounds like you, now is your time to join one of the fastest-growing learning technology companies on the market. Apply today!
Docebo is an Equal Employment Opportunity employer. We are committed to diversity and inclusion in our workforce. All qualified applicants and employees will receive consideration for employment regardless of their race, color, religion, sex (including pregnancy, gender identity, and sexual orientation), national origin, citizenship status, age, disability, genetic information, or any other category protected under applicable law.
Any individuals requiring a reasonable accommodation to assist with their job search or application for employment should send an e-mail to recruiting_accommodations (at) docebo.com. The e-mail should include a description of the requested accommodation and the position you’re applying for or interested in.
* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Job stats:
62
16
0
Categories:
Analyst Jobs
Compliance Jobs
Tags: Audits AWS CCPA CIPP CISA Cloud Compliance CompTIA Computer Science FedRAMP GDPR Governance ISO 27001 Legal knowledge NIST Privacy RFPs SaaS SOC SOC 2 SOX
Perks/benefits: Career development Team events
Region:
North America
Country:
Canada
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Senior Security Analyst jobsInformation System Security Officer jobsInformation Security Officer jobsSenior Cloud Security Engineer jobsInformation Security Manager jobsSenior Cybersecurity Engineer jobsIT Security Engineer jobsCyber Security Specialist jobsSenior Network Security Engineer jobsSystems Engineer jobsSenior Information Security Analyst jobsSystems Administrator jobsSecurity Consultant jobsSenior Cyber Security Engineer jobsSecurity Specialist jobsIT Security Analyst jobsChief Information Security Officer jobsInformation System Security Officer (ISSO) jobsInformation Systems Security Engineer jobsSenior Penetration Tester jobsSecurity Operations Analyst jobsSenior Information Security Engineer jobsThreat Intelligence Analyst jobsStaff Security Engineer jobsCyber Threat Intelligence Analyst jobs
Encryption jobsTop Secret jobsMalware jobsGDPR jobsSplunk jobsSaaS jobsEDR jobsRMF jobsSDLC jobsForensics jobsSQL jobsIDS jobsBash jobsThreat detection jobsIPS jobsIntrusion detection jobsDoDD 8570 jobsFinance jobsActive Directory jobsCRISC jobsITIL jobsCompTIA jobsGIAC jobsTerraform jobsDocker jobs
OWASP jobsClearance Required jobsHIPAA jobsSANS jobsCCSP jobsOSCP jobsUNIX jobsSOC 2 jobsVPN jobsPolygraph jobsIndustrial jobsBanking jobsJavaScript jobsData Analytics jobsTCP/IP jobsAnsible jobsDNS jobsSAP jobsSOX jobsJira jobsIT infrastructure jobsMachine Learning jobsCISO jobsNIST 800-53 jobsSOAR jobs