Pextra Inc. · 6 hours ago
Compliance Officer
Maximize your interview chances
Cloud InfrastructureCloud Management
Insider Connection @Pextra Inc.
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Lead and manage SOC 2 Type I and Type II audits, including preparation, execution, and follow-up.
Develop and maintain policies and procedures aligned with SOC 2 Trust Service Criteria.
Conduct risk assessments to identify and address vulnerabilities in the organization’s systems.
Collaborate with external auditors and stakeholders to ensure seamless audit processes.
Draft, implement, and update compliance documentation such as security policies, access controls, and incident response plans.
Ensure policies are communicated effectively and adhered to across the organization.
Monitor and evaluate the effectiveness of internal controls to address security and compliance risks.
Oversee incident response activities, ensuring timely and effective remediation.
Develop and deliver compliance training programs to employees.
Foster a culture of security and compliance throughout the organization.
Stay updated on SOC 2 standards, industry best practices, and emerging threats.
Recommend and implement improvements to enhance compliance and security posture.
Work closely with IT, HR, Legal, and other departments to align compliance efforts with organizational goals.
Support client and partner inquiries regarding SOC 2 compliance.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Bachelor’s degree in Information Systems, Cybersecurity, Business Administration, or a related field.
3+ years of experience in compliance, audit, or information security roles.
Demonstrable experience managing SOC 2 compliance projects.
Strong understanding of SOC 2 Trust Service Criteria.
Proficiency in risk assessment and mitigation strategies.
Excellent project management and organizational skills.
Ability to communicate effectively with technical and non-technical stakeholders.
Proficient in using GRC (Governance, Risk, and Compliance) tools.
Preferred
Relevant certifications (e.g., CISA, CISSP, or CISM) are a plus.
Familiarity with other compliance frameworks (e.g., ISO 27001, GDPR, HIPAA) is advantageous.
Company
Pextra Inc.
Next generation private cloud management powered by GenAI
Funding
Current Stage
Early StageCompany data provided by crunchbase