44 security compliance analyst jobs at 37 companies in New York
1w
Save
Mark Applied
Hide
1w
Security & Compliance Analyst
New York City, New York, United States
$90k-$110k/yrOnsiteFull Time
OTG Management: Private airport hospitality operator developing restaurants, retail markets, and food halls for travelers across North America.
3+ YOEBachelor’s degree or equivalent experience, 3–5 years in IT security, compliance, or audit, and hands-on PCI DSS experience. Knowledge of AWS, network security, GRC tools, and payment environments preferred.
Rochelle Park or New York City or Fair Lawn or Garfield or Hackensack or Paramus
$125k-$175k/yrOnsiteFull Time
Five Rivers IT: Five Rivers IT is a Compliance & Security focused IT Solutions providing organizations with business-focused IT services that optimize operations, manage risk and deliver measurable business value to its customers.
5+ YOEBachelor's in CS/CE/IS or equivalent, 5+ years managing information security audits (SOC 2, ISO 27001, PCI DSS, HIPAA), experience with security controls and programs, strong communication and program management skills.
Neuberger Berman: Employee-owned private investment manager serving institutions, advisors, and individuals across public and private markets.
1+ YOERequires 1–3 years of securities-law compliance experience, a bachelor's degree, registered-fund regulatory knowledge, analytical and communication skills, and portfolio or compliance monitoring systems experience.
Neuberger Berman: Employee-owned private investment manager serving institutions, advisors, and individuals across public and private markets.
1+ YOERequires 1–3 years of securities-law compliance experience, a bachelor's degree, analytical and communication skills, registered-fund regulatory familiarity, and experience with compliance monitoring or portfolio management systems.
AlphaSense: AI-driven market intelligence and search platform provider.
0+ YOEFresh graduates encouraged; 0–2 years in operations, administrative, customer support, or compliance operations helpful. Requires English writing, attention to detail, organization, judgment, and familiarity with securities and MNPI risks.
Carlsbad or San Jose or North America or New York City
$147k-$232k/yrOnsiteFull Time
ViasatNASDAQ: VSAT: Global communications providing satellite connectivity and defense solutions.
8+ YOERequires 8+ years in risk and compliance and working with ISO27001:2022, ISMS Lead Auditor or Lead Implementor certification, GRC tool experience, security knowledge, and strong analytical, communication, and project skills.
ISO27001:2022, GRC, ISO27001 ISMS, ISO27001 Annex A, PCI DSS, NIST SP 800-171, CMMC, IT SOX
San Francisco or New York City or Los Angeles or Seattle
$175k-$230k/yrHybridFull Time
Whatnot: Live shopping marketplace connecting buyers and sellers.
8+ YOERequires 8+ years of security GRC experience, bachelor's degree in computer science or information security, audit experience, cloud compliance expertise, and knowledge of ISO 27001, SOC2, PCI, GDPR, and CCPA.
Constellation BrandsNYSE: STZ: Public beverage alcohol producer, marketer, importer, and distributor serving consumers through beer, wine, and spirits brands.
4+ YOERequires 4+ years in information security, risk management, audit, IT governance, or compliance; TPRM leadership, risk frameworks, automation, stakeholder engagement, and strong communication skills.
NIST, ISO, CIS, PCI-DSS, SOX, GDPR, CCPA, HIPAA, LogicGate, Optro, OneTrust, Workiva, Microsoft Excel, Microsoft Word, Microsoft PowerPoint
Bengaluru or New York City or Washington or Vancouver or London or Galway or Budapest or Munich or Singapore or Sydney
HybridFull Time
Diligent: Private GRC SaaS providing governance, risk, compliance, audit, and ESG software to boards and organizational leaders.
2+ YOERequires 2–4 years in security GRC, compliance, IT audit, or customer assurance; SOC 2 and ISO 27001 knowledge; precise SLA-driven work; strong written English; queue management; and AI-assisted tooling experience.
LyftNASDAQ: LYFT: Ridesharing and transportation-as-a-service mobility platform.
5+ YOERequires 5+ years in security GRC, IT audit, or assurance; 5+ years with ISO 27001 and PCI DSS; knowledge of SOC 2, HIPAA, NIST CSF, global frameworks; strong technical, communication, and project leadership skills.
Radnor or Charlotte or Fort Wayne or Greensboro or Syracuse
$120k-$193k/yrRemoteFull Time
Lincoln Financial GroupNYSE: LNC: Public financial services providing annuities, life insurance, group protection, and retirement services to individuals and employers.
5+ YOEBachelor's degree or 4 years equivalent experience, 5+ years in IT security, IT audit, or information risk management, and 2+ years in artificial intelligence. CompTIA Security+ preferred.
Artificial Intelligence (AI), generative AI, online information technology (IT) governance, risk, and compliance platform, Microsoft LinkedIn, Facebook, Instagram, YouTube
Trinity Church Wall Street: Trinity Church Wall Street is a nonprofit Episcopal parish serving New Yorkers through worship, education, philanthropy, and community services.
3+ YOEBachelor's or equivalent, 3+ years IT risk/security experience, knowledge of PCI DSS/NIST/ISO27001, audit support, disaster recovery, vendor risk, incident response, strong communication and project skills.
YipitData: Private market intelligence and alternative-data analytics firm serving institutional investors, retailers, brands, and enterprises.
Experience in security, compliance, risk, audit, privacy, or vendor risk; familiarity with SOC 2, NIST CSF, or similar frameworks; strong writing, organization, communication, and follow-through skills.
SENIOR TECHNOLOGY CONTROLS AND COMPLIANCE ANALYST- REMOTE (1545715)
Georgia or Washington or Maryland or Florida or Los Angeles or San Francisco or New York City or United States
$115k-$130k/yrRemoteFull Time
Compass Group USALondon Stock Exchange: CPG: Leading provider of food and support services.
7+ YOE7+ years in information security and audit, experience designing and validating ITGCs, Python/data analytics experience, exposure to SOX/PCI-DSS/GDPR/UK CR desired, security certs (CISA, CISM, CISSP, GIAC) preferred, bachelor’s degree or equivalent experience.
Avangrid, Inc.: U.S. energy and utility serving homes and businesses through regulated networks and renewable power generation.
5+ YOEAssociate degree and 7 years relevant experience, or preferred bachelor's degree with 5 years; 5+ years SAP Security and GRC compliance tools experience, strong analytical and communication skills.
SAP, ERP Central Component (ECC), Customer Relationship Management (CRM), Business Warehouse (BW), Governance Risk Compliance (GRC), SAP BusinessObjects BI (BOBJ), Solution Manager, INFOR Approva, Microsoft Office
Veterinary Emergency Group: Helping people and their pets when they need it most.
3+ YOERequires 3+ years in GRC, IT audit, compliance, or related security work; knowledge of a security or compliance framework; GRC platform experience; and strong documentation and communication skills.
PCI DSS, NIST, SOC 2, ISO 27001, Hyperproof, Archer, OneTrust
Ross StoresNASDAQ: ROST: Off-price retailer of apparel and home fashion.
5+ YOEFive years of IT experience, including three in security or risk management; bachelor's degree preferred; security governance, compliance, risk management, analytical, communication, and project management skills required.
Microsoft Word, Microsoft Excel, Microsoft PowerPoint, UNIX, Windows, Firewalls, VPN, PKI, IPS, Oracle, MS SQL
Aaru: A private AI software that simulates human behavior for consumer research, marketing, strategy, and policy decisions.
3+ YOERequires 3–5 years in GRC, security compliance, or IT audit; SOC 2 knowledge; familiarity with ISO 27001 and related frameworks; GRC platform experience; and strong communication and process-building skills.
Vanta, Drata, OneTrust, SOC 2, ISO 27001, NIST CSF, HIPAA, PCI-DSS, ISO 42001, NIST AI RMF, EU AI Act, GDPR, Python, JavaScript, CISA, CRISC, CISM
AmazonNASDAQ: AMZN: Multinational technology focused on e-commerce and cloud computing.
4+ YOEBachelor's degree or equivalent and 4+ years in compliance, audit, risk, governance, or related work. Requires IT security, AWS or cloud computing, process documentation, and cross-functional coordination experience.