20 security compliance analyst jobs at 17 companies in Berkeley, CA
1mo
Save
Mark Applied
Hide
1mo
Compliance Analyst
San Francisco, California, United States
$99k-$149k/yrHybridFull Time
Harvey: AI platform for legal research and document analysis.
3+ YOE3+ years information security compliance experience in SaaS/cloud; strong knowledge of government and industry frameworks; maintaining compliance documentation, evidence coordination, remediation tracking, and clear technical communication. U.S. citizenship required.
Senior Security Compliance Analyst - Public Sector - Information Security
Seattle or Los Angeles or San Francisco or New York City or United States
$133k-$211k/yrOnsiteFull Time
ElasticNYSE: ESTC: Software platform for search, security, and observability.
Deep experience with DoD IL5, RMF, NIST 800-53, FedRAMP High and continuous monitoring; leading public sector audits, implementing and auditing security controls in cloud/hybrid environments; strong autonomy and attention to detail.
DoD Impact Level 5 (IL5), RMF, NIST 800-53, FedRAMP High
Mytra: Develops autonomous robotics for warehouse material flow automation.
Experience in security, compliance, GRC, audit readiness, vendor and customer security reviews; organized, strong written communication, and ability to manage audit evidence and policies.
New York City or San Francisco or Los Angeles or Irvine or McLean or Washington
$136k-$253k/yrHybridFull Time
Thomson ReutersNASDAQ: TRI: Provides professional software, data, and news services globally.
5+ YOE5+ years in cloud security/governance/compliance for federal or regulated workloads; expertise with FedRAMP, NIST RMF, NIST SP 800-53 Rev. 5; FedRAMP continuous monitoring, POA&M, vulnerability management; strong communication; U.S. citizenship required.
RobloxNYSE: RBLX: Platform for creating and playing user-generated 3D digital experiences.
4+ YOE4+ years GRC experience, risk assessment and policy development, ability to work with engineers, knowledge of compliance frameworks and security controls.
Factor Analysis of Information Risk (FAIR), Roblox Studio
New York City or Seattle or Raleigh or San Francisco or Washington or London or Amsterdam
$134k-$214k/yrHybridFull Time
Plaid: Provides financial data connectivity and payment infrastructure via APIs.
6+ YOE6+ years in security assurance/GRC with ownership of customer-facing security workflows; experience reviewing security contract provisions; familiarity with SOC 2, ISO 27001, NIST frameworks, PCI, GLBA, GDPR/CCPA; program design, metrics ownership, and AI-assisted workflow experience.
SENIOR TECHNOLOGY CONTROLS AND COMPLIANCE ANALYST- REMOTE (1545715)
Georgia or Washington or Maryland or Florida or Los Angeles or San Francisco or New York City or United States
$115k-$130k/yrRemoteFull Time
Compass GroupLondon Stock Exchange: CPG: Provides contract food and support services globally.
7+ YOE7+ years in information security and audit, experience designing and validating ITGCs, Python/data analytics experience, exposure to SOX/PCI-DSS/GDPR/UK CR desired, security certs (CISA, CISM, CISSP, GIAC) preferred, bachelor’s degree or equivalent experience.
Rippling: Unified platform managing workforce HR, IT, and finance operations
5+ YOE5+ years in security compliance, strong communication, experience with ISO 27001 and SOC 2, cloud security best practices, vendor due diligence, and information security policy development.
Headway: A healthtech accelerating access to mental healthcare
5+ YOE5+ years in GRC/compliance/security risk; knowledge of HITRUST/SOC 2/PCI-DSS/HIPAA; experience with GRC platforms; strong communication; ability to build repeatable processes; interest in AI-enabled security workflows; healthcare/healthtech HIPAA understanding a plus
AgoraNASDAQ: API: Provides APIs for real-time voice, video, and conversational AI.
5+ YOEBachelor's degree or equivalent, 5+ years privacy/compliance experience in SaaS/technology, hands-on DPIAs/DSRs/DPAs experience, strong GDPR/CCPA knowledge, ability to be in-office 3x/week.
DoorDashNASDAQ: DASH: On-demand delivery platform connecting consumers with local merchants.
6+ YOE6+ years in security compliance/GRC with 3+ years implementing HIPAA programs in technology or regulated environments; strong HIPAA Security Rule knowledge, multi-framework experience, technical fluency with cloud/IAM/CI/CD, and stakeholder communication skills.
MetaNASDAQ: META: Develops social networking platforms and virtual reality technologies.
8+ YOE8+ years investigations/analysis experience in law enforcement, security, risk or safety; BA/BS or equivalent; subject-matter knowledge of terrorism/violent extremism; experience with sensitive content; ongoing AI skill development; available for after-hours and weekends.
United States or San Francisco or New York City or Washington
$245k-$285k/yrHybridFull Time
Anthropic: Developing safe and reliable artificial intelligence systems.
Experience in trust & safety, fraud, or security operations; subject-matter expertise in account takeover/credential abuse; experience building enforcement/remediation workflows; SQL/data proficiency; strong written communication; bachelor’s degree or equivalent.
Workato: Enterprise platform for automating business workflows and integrating applications.
8+ YOE8+ years in cybersecurity, audits, risk management, or compliance; hands-on FedRAMP experience; cloud security controls; strong communication; eligibility for federal programs.
AWS GovCloud, Azure Government, Google Cloud, NIST 800-53, FedRAMP, PCI-DSS, SOC 2, ISO 27001, 27701
Lam ResearchNASDAQ: LRCX: Designs and manufactures wafer fabrication equipment for the semiconductor industry.
6+ MgmtBachelor's or equivalent with 6+ years management experience; experience designing and operating cybersecurity controls, incident response, vulnerability audits, and security policy compliance.