Security Compliance Analyst

Figma · USA

Company

Figma

Location

USA

Type

Full Time

Job Description

As a Security Compliance Analyst at Figma you will help the Manager Security Compliance coordinate and manage the audit certification lifecycles for current and future compliance initiatives. You will drive our certification roadmaps based on customer requirements while ensuring committed assessments are delivered on schedule. This is a great opportunity to drive efficiencies reduce process friction and strategically scale our compliance programs to support a hyper growth company.

What you’ll do at Figma:

  • Maintain existing Security Compliance Certifications and Frameworks (i.e. SOC 2 Type II ISO 27001)

  • Serve as a subject matter authority for applicable compliance standards and be a valued partner to the business and engineering teams in the implementation of the standards

  • Gap assess new in-scope tools and new hosting regions/environments against existing controls and processes

  • Help drive and improve Annual Operational Activities (i.e. Quarterly Privileged User Access Reviews)

  • Implement and mature controls that scale and do not burden teams

  • Refine Figma’s Common Control Framework through control rationalization efforts

  • Configure compliance automation tooling to help achieve continuous monitoring and automated evidence collection for external audits

  • Communicate progress customer concerns and issue resolution to management and team stakeholders.

  • Align changes made to existing controls and processes to the Information Security and Data Privacy Policies

We'd love to hear from you if you have:

  • 2+ years of security compliance or IT compliance experience

  • Worked with various security compliance frameworks (including ISO 27001 SOC 2 and NIST)

  • Familiarity with cloud computing/architecture such as AWS

  • Conducted compliance gap assessments and worked cross-functionally to remediate any identified issues

  • Led or supported external audits

While not required it’s an added plus if you also have:

  • Planned coordinated and prioritized multiple sophisticated projects to completion

  • Experience with control rationalization and drafting control narratives

  • Demonstrated experience establishing work relationships across multi-disciplinary teams (including Security Engineering Legal IT and HR)

At Figma one of our values is Grow as you go. We believe in hiring smart curious people who are excited to learn and develop their skills. If you’re excited about this role but your past experience doesn’t align perfectly with the points outlined in the job description we encourage you to apply anyways. You may be just the right candidate for this or other roles.

Apply Now

Date Posted

11/25/2024

Views

0

Back to Job Listings Add To Job List Company Profile View Company Reviews
Positive
Subjectivity Score: 0.8

Similar Jobs

Engineering Manager - Software Supply Chain Security: Auth Infrastructure - GitLab

Views in the last 30 days - 0

This job description highlights a leadership role in developing secure scalable authentication infrastructure for GitLab It emphasizes technical exper...

View Details

Analyst Relations Manager - Tanium

Views in the last 30 days - 0

Tanium seeks a proactive Manager for Analyst Relations focusing on project management and evaluation coordination The role offers remote flexibility a...

View Details

Staff Salesforce Engineer - CRM Systems - GitLab

Views in the last 30 days - 0

This job description outlines a Staff Salesforce Developer role focusing on designing building and scaling enterprisegrade solutions across Salesforce...

View Details

Growth Product Lead - Loyalty - Trafilea

Views in the last 30 days - 0

Trafilea promotes itself as a transformative consumer tech platform with AIdriven growth solutions highlighting achievements like 1B revenue and globa...

View Details

Sales Prospecting Account Executive - Financial Solutions - Blackbaud

Views in the last 30 days - 0

This job posting seeks Prospect Account Executives to sell Financial Management applications for nonprofits and governments Responsibilities include s...

View Details

Solutions Architect - phData

Views in the last 30 days - 0

This job posting seeks a Solutions Architect to join phDatas Elastic Platform Operations team focusing on cloudnative data platforms like Snowflake AW...

View Details