Compliance Analyst - API (BB-9D8D8)

Found in: Neuvoo UK


Vonage Engineering Mission

Enable next generation communications that are more flexible, intelligent and personal - empowering our customers to do what's next and stay ahead

Why this role matters .

The Information Security team is looking for a Compliance Analyst with a hybrid background between IT auditing and IT security compliance. Candidates must have sufficient knowledge and experience with at least 2 of the following: PCI, SOC2, HITRUST, ISO 27K, SOX, or GDPR for this position. The candidate will also have awareness of APIs, containers and AWS in order to be able to gather appropriate evidence supporting these certifications and standards.

The ideal candidate will also be comfortable with risk management, corporate compliance with information security policies and procedures, and be able to read and analyze results from vulnerability scans and penetration tests to help determine areas for audit.


What you will do

  • Plan, execute and manage targeted security audits across the organization
  • Plan and implement tests to evaluate security risks across the organization
  • Inspect and evaluate information systems, information security policy enforcement, management procedures and security controls
  • Evaluate the efficiency, effectiveness and compliance of operation processes with corporate security policies and related government regulations
  • Provide audit reports detailing the audit conducted, the effectiveness of security controls in the systems, identify any security issues observed and provide suggestions on changes and improvements based on findings
  • Assess the exposures resulting from ineffective or missing control practices
  • Weigh the relevancy, accuracy and perspective of conclusions against audit evidence
  • Ability to verbally report of audit findings
  • Help to develop “best practice” recommendations to improve information security across the organization
  • Work with management to ensure security recommendations comply with company procedures
  • Collaborate with departments to improve security compliance, manage risk and bolster effectiveness
  • Help to maintain compliance of organizational security policies and government regulations
  • What you will bring

  • Knowledge of Vendor Management, Change Management, and Information Security Policies
  • Team-oriented interpersonal skills; ability to effectively collaborate with a wide variety of people
  • Managing multiple projects / priorities at one time
  • Being a creative and results driven thinker; excellent problem solver
  • Verbal and written communication skills
  • Being detail oriented and data driven, as well as self-motivated and self-sufficient
  • What is required for application

  • Demonstrable experience of information security, risk management and compliance work
  • Good to have at least one of the following certifications: CISSP CISA, CRISC, GIAC Systems Network Auditor, GIAC Security Essentials or equivalent
  • Knowledge of PCI DSS, HIPAA, HITRUST, SOC2, GDPR, SOX, ISO 27K, or other compliance requirements (SOC2 preferred)
  • Ability to work comfortably and excel in an ever-changing environment
  • Strong network, infrastructure, and security fundamentals
  • Knowledge of incident response and handling methodologies
  • Knowledge of cyber threats and vulnerabilities
  • Knowledge of cybersecurity and privacy principles related to the use, processing, storage, and transmission of information or data
  • Knowledge of Vendor Management, Change Management, and Information Security Policies
  • Use of collaborative tools such as Confluence, Jira, GSuite
  • What is in it for you

    In addition to providing exciting work, career advancement opportunities, and a collaborative work environment, Vonage provides competitive pay and benefits including unlimited discretionary time off and tuition reimbursement.


    calendar_today1 day ago


    location_on Basingstoke, United Kingdom

    work Vonage

    I expressly authorise the Terms and Conditions

    Similar jobs