Drata · 18 hours ago
Senior Compliance Advisor
Maximize your interview chances
ComplianceSaaS
Insider Connection @Drata
Get 3x more responses when you reach out via email instead of LinkedIn.
Responsibilities
Advise customers in building information security policies, uploading evidence for controls and overall audit readiness as they prepare for audits and assessments against SOC2, ISO 27001/270002, HIPAA, PCI, NIST 800-171, CMMC, FedRAMP, GDPR, CCPA, etc.
Primarily serve as a compliance expert via tickets and chat, in customer-facing meetings, via email and executable work for customers, and to members of our Customer Success teams.
Lead the development and present on GRC industry best-practices and on common compliance questions received from customers for both external and internal audiences.
Lead ongoing internal learning and success of our team by sharing knowledge through mentorship, research, and internal presentations.
Host customer-facing webinars to answer questions on audit and GRC best practices
Review marketing articles and blog posts for accuracy as needed.
Partner with Customer Success and Account Managers in providing current customers with additional compliance advisory services as needed.
Assist with internal GRC initiatives, such as internal audits and other compliance initiatives.
Engage with the Sales team, as needed, with responding to prospective customer questions.
Qualification
Find out how your skills align with this job's requirements. If anything seems off, you can easily click on the tags to select or unselect skills to reflect your actual expertise.
Required
Must have 4 - 6 years of experience in performing audits and assessments for compliance programs based on SOC2 and ISO 27001/270002
The ideal candidate will have exposure and experience in additional frameworks such as HIPAA, PCI, GDPR, CMMC, FedRAMP, CCPA, or other major compliance and controls regulations and framework
Strong background and understanding of GRC (Governance, Risk, and Compliance) programs, processes, functions, and operational teams, and helping organizations design, build, and operate their risk, security, and compliance programs
Familiarly with GRC tools and/or cybersecurity technologies. GRC, compliance, and automation are a plus.
Proven self-starter able to identify priorities, take ownership of work, and learn and advise on new compliance frameworks quickly.
An ability to develop and cultivate positive relationships with customers - make their day by providing the best possible guidance and customer experience
Desire to work at a rapidly growing startup with a team-player mindset, building and creating something from the ground up.
A proactive approach to managing your workload and day and ability to prioritize many different tasks and levels of responsibility
Constant ability to iterate and improve upon existing processes - challenge the status quo and improve upon the current state
A strong ability to work within a high-speed and high-volume environment
Preferred
While not required, previous experience at consulting, audit, and advisory firms or at GRC/cybersecurity technology companies, is highly preferred.
Benefits
Healthcare: 90-100% paid premiums for medical, dental, and vision plans for employee and dependents + on demand health care concierge
HSA, FSA, & DCFSA: Pre-tax savings plans for healthcare and dependent care, with up to a $600 annual employer contribution to the HSA plan (if enrolled in HSA medical plan)
100% paid short and long term disability plus life + AD&D benefits
Learning & Development: $500 annually towards professional development opportunities + $250 annually towards personal development opportunities
Flexible Time Off: Flexible vacation policy for strong, fully charged batteries
16 Weeks Paid Parental Leave: An inclusive policy to ensure you have time with your newborn, newly adopted, or foster child
Work Remotely: Flexible hours and work from home + $1,000 annually to cover necessary business related items for your home office
401K: Reach your financial goals while reducing your taxes
Company
Drata
Drata is a compliance and security SaaS platform that automates the compliance workflows on a company's security controls.
Funding
Current Stage
Growth StageTotal Funding
$328.24MKey Investors
ICONIQ GrowthNotable CapitalCowboy Ventures
2022-12-07Series C· $200M
2021-11-08Series B· $100M
2021-06-23Series A· $25M
Recent News
2024-10-11
Company data provided by crunchbase