20 security compliance analyst jobs at 17 companies in Berkeley, CA

1mo
Save
Mark Applied
Hide
Compliance Analyst
San Francisco, California, United States
$99k-$149k/yr HybridFull Time
Harvey
Harvey: AI platform for legal research and document analysis.
3+ YOE3+ years information security compliance experience in SaaS/cloud; strong knowledge of government and industry frameworks; maintaining compliance documentation, evidence coordination, remediation tracking, and clear technical communication. U.S. citizenship required.
3mo
Save
Mark Applied
Hide
Senior Security Compliance Analyst - Public Sector - Information Security
Seattle or Los Angeles or San Francisco or New York City or United States
$133k-$211k/yr OnsiteFull Time
Elastic
ElasticNYSE: ESTC: Software platform for search, security, and observability.
Deep experience with DoD IL5, RMF, NIST 800-53, FedRAMP High and continuous monitoring; leading public sector audits, implementing and auditing security controls in cloud/hybrid environments; strong autonomy and attention to detail.
DoD Impact Level 5 (IL5), RMF, NIST 800-53, FedRAMP High
6d
Save
Mark Applied
Hide
Senior Risk and Compliance Analyst
Brisbane, California, United States
$145k-$160k/yr OnsiteFull Time
Mytra
Mytra: Develops autonomous robotics for warehouse material flow automation.
Experience in security, compliance, GRC, audit readiness, vendor and customer security reviews; organized, strong written communication, and ability to manage audit evidence and policies.
Vanta GRC
1mo
Save
Mark Applied
Hide
Lead Governance & Compliance Analyst
New York City or San Francisco or Los Angeles or Irvine or McLean or Washington
$136k-$253k/yr HybridFull Time
Thomson Reuters
Thomson ReutersNASDAQ: TRI: Provides professional software, data, and news services globally.
5+ YOE5+ years in cloud security/governance/compliance for federal or regulated workloads; expertise with FedRAMP, NIST RMF, NIST SP 800-53 Rev. 5; FedRAMP continuous monitoring, POA&M, vulnerability management; strong communication; U.S. citizenship required.
FedRAMP, NIST RMF, NIST SP 800-53 Rev. 5, AWS, Azure, Google Cloud Platform
5d
Save
Mark Applied
Hide
Senior Security GRC Analyst
San Mateo, California, United States
$224k-$272k/yr HybridFull Time
Roblox
RobloxNYSE: RBLX: Platform for creating and playing user-generated 3D digital experiences.
4+ YOE4+ years GRC experience, risk assessment and policy development, ability to work with engineers, knowledge of compliance frameworks and security controls.
Factor Analysis of Information Risk (FAIR), Roblox Studio
2w
Save
Mark Applied
Hide
Senior Security Analyst, Customer Assurance
New York City or Seattle or Raleigh or San Francisco or Washington or London or Amsterdam
$134k-$214k/yr HybridFull Time
Plaid
Plaid: Provides financial data connectivity and payment infrastructure via APIs.
6+ YOE6+ years in security assurance/GRC with ownership of customer-facing security workflows; experience reviewing security contract provisions; familiarity with SOC 2, ISO 27001, NIST frameworks, PCI, GLBA, GDPR/CCPA; program design, metrics ownership, and AI-assisted workflow experience.
SOC 2, ISO 27001, NIST CSF, PCI DSS, GLBA, GDPR, CCPA, NIST 800-53
2w
Save
Mark Applied
Hide
Governance, Risk, Compliance & Trust Analyst
Oakland, California, United States
$140k-$178k/yr HybridFull Time
Everlaw
Everlaw: Provides a cloud-based litigation platform for legal teams.
5+ YOE5+ years GRC experience; strong knowledge of FedRAMP, SOC 2, ISO frameworks; audit readiness, vendor reviews, customer security questionnaires, trust portals, and producing clear, audit-ready deliverables.
FedRAMP, SOC 2, ISO 27001, ISO 27017, ISO 27018, Covey, Covey Scout, Modern Health
3w
Save
Mark Applied
Hide
SENIOR TECHNOLOGY CONTROLS AND COMPLIANCE ANALYST- REMOTE (1545715)
Georgia or Washington or Maryland or Florida or Los Angeles or San Francisco or New York City or United States
$115k-$130k/yr RemoteFull Time
Compass Group
Compass GroupLondon Stock Exchange: CPG: Provides contract food and support services globally.
7+ YOE7+ years in information security and audit, experience designing and validating ITGCs, Python/data analytics experience, exposure to SOX/PCI-DSS/GDPR/UK CR desired, security certs (CISA, CISM, CISSP, GIAC) preferred, bachelor’s degree or equivalent experience.
Python
3w
Save
Mark Applied
Hide
Senior Security Assurance Analyst
San Francisco or Austin or Seattle
OnsiteFull Time
Rippling
Rippling: Unified platform managing workforce HR, IT, and finance operations
5+ YOE5+ years in security compliance, strong communication, experience with ISO 27001 and SOC 2, cloud security best practices, vendor due diligence, and information security policy development.
BitSight
2mo
Save
Mark Applied
Hide
Senior Governance, Risk, Compliance (GRC) Analyst
San Francisco, California, United States
$162k-$202k/yr OnsiteFull Time
Headway
Headway: A healthtech accelerating access to mental healthcare
5+ YOE5+ years in GRC/compliance/security risk; knowledge of HITRUST/SOC 2/PCI-DSS/HIPAA; experience with GRC platforms; strong communication; ability to build repeatable processes; interest in AI-enabled security workflows; healthcare/healthtech HIPAA understanding a plus
HITRUST, SOC 2, PCI-DSS, HIPAA, GRC platform (e.g., Vanta, Drata, OneTrust)
2w
Save
Mark Applied
Hide
Privacy Analyst- HQ
Santa Clara, California, United States
$119k-$126k/yr HybridFull Time
Agora
AgoraNASDAQ: API: Provides APIs for real-time voice, video, and conversational AI.
5+ YOEBachelor's degree or equivalent, 5+ years privacy/compliance experience in SaaS/technology, hands-on DPIAs/DSRs/DPAs experience, strong GDPR/CCPA knowledge, ability to be in-office 3x/week.
Ketch, OneTrust, Securiti, TrustArc
3w
Save
Mark Applied
Hide
Senior GRC Analyst, HIPAA
United States or San Francisco
$133k-$195k/yr OnsiteFull Time
DoorDash
DoorDashNASDAQ: DASH: On-demand delivery platform connecting consumers with local merchants.
6+ YOE6+ years in security compliance/GRC with 3+ years implementing HIPAA programs in technology or regulated environments; strong HIPAA Security Rule knowledge, multi-framework experience, technical fluency with cloud/IAM/CI/CD, and stakeholder communication skills.
HITRUST, SOC 2, ISO 27001, NIST 800-53, PCI DSS, GDPR, CCPA, IAM, CI/CD, infrastructure-as-code, GRC tooling
2mo
Save
Mark Applied
Hide
FOIA Analyst
Los Angeles or San Francisco
$75k-$125k/yr HybridFull Time
Contact Government Services
Contact Government Services: Providing customized technology and professional services to government agencies.
6+ YOE6 years processing FOIA requests, knowledge of FOIA exemptions b(4), b(5), b(6), experience redacting confidential commercial information, strong written/oral communication, ability to obtain a government security clearance; FOIA EXPRESS and SecureRelease experience preferred.
FOIA EXPRESS, SecureRelease, FOIA tracking database
1mo
Save
Mark Applied
Hide
Investigations Analyst, Threats
Austin or Menlo Park or Washington or New York
$141k-$199k/yr OnsiteFull Time
Meta
MetaNASDAQ: META: Develops social networking platforms and virtual reality technologies.
8+ YOE8+ years investigations/analysis experience in law enforcement, security, risk or safety; BA/BS or equivalent; subject-matter knowledge of terrorism/violent extremism; experience with sensitive content; ongoing AI skill development; available for after-hours and weekends.
SQL, Python
1w
Save
Mark Applied
Hide
Safeguards Enforcement Analyst, Account Takeover & Credential Abuse
United States or San Francisco or New York City or Washington
$245k-$285k/yr HybridFull Time
Anthropic
Anthropic: Developing safe and reliable artificial intelligence systems.
Experience in trust & safety, fraud, or security operations; subject-matter expertise in account takeover/credential abuse; experience building enforcement/remediation workflows; SQL/data proficiency; strong written communication; bachelor’s degree or equivalent.
SQL
2mo
Save
Mark Applied
Hide
Senior GRC Analyst
Palo Alto, California, United States
$120k-$145k/yr OnsiteFull Time
Workato
Workato: Enterprise platform for automating business workflows and integrating applications.
8+ YOE8+ years in cybersecurity, audits, risk management, or compliance; hands-on FedRAMP experience; cloud security controls; strong communication; eligibility for federal programs.
AWS GovCloud, Azure Government, Google Cloud, NIST 800-53, FedRAMP, PCI-DSS, SOC 2, ISO 27001, 27701
6d
Save
Mark Applied
Hide
Digital Transformation Analyst 4
Fremont, California, United States
$92k-$211k/yr HybridFull Time
Lam Research
Lam ResearchNASDAQ: LRCX: Designs and manufactures wafer fabrication equipment for the semiconductor industry.
6+ MgmtBachelor's or equivalent with 6+ years management experience; experience designing and operating cybersecurity controls, incident response, vulnerability audits, and security policy compliance.