Bonterra

Information Security Compliance Analyst

Bonterra$76K — $100K *
US-AnywhereRemote in United States
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • 3+ years in risk and compliance roles
  • Project management experience
  • Strong knowledge of SOC and ISO frameworks
  • Ability to juggle multiple priorities
  • Exceptional verbal and written communication skills
  • Outstanding organizational and planning skills
  • Proficient in technology and software systems

Responsibilities

  • Lead annual SOC reporting initiatives for Bonterra products
  • Collaborate with the Information Security Risk team
  • Coordinate with control owners and auditors for timely project completion
  • Conduct technical risk assessments of third party suppliers
  • Maintain a register of suppliers and vendor risks
  • Develop playbook for reporting high-risk compliance events
  • Support security awareness and training initiatives
  • Facilitate user activity audits as needed

Benefits

  • Comprehensive health and wellness benefits
  • Growth and development opportunities
  • AI-powered tools and innovative work environment
  • Inclusion of diverse perspectives in team dynamics
  • Additional bonuses and equity options may be available
Full Job Description

US Salary: $76,000 - $100,000

About the Role

The Bonterra Information Security Risk and Compliance department is looking to hire a Compliance Specialist to our team. If you enjoy problem solving, are enthusiastic working in a team format and want to thrive in the ever-changing risk & compliance field while learning new concepts and principles as part of your continuing education, look no further!


Job Responsibilities:

  • Perform as the primary in the executing our annual Service Organization Controls (SOC) reporting initiatives, which includes several Bonterra products.

  • Works closely with other members of the Information Security Risk team.

  • Works closely with control owners across the company and internal and external auditors to ensure requests are completed in a timely manner as part of the overall project management process.

  • Performs technical risk assessments of third party suppliers' security and privacy controls.

  • Maintains register of relevant suppliers/vendors, controls, and risks for ongoing vendor risk management activities.

  • Will be responsible the play book for reporting of high risk events that involve compliance, risk and information security.

  • Assists in maintaining our overall security awareness, role based security trainings and phishing simulation programs across the enterprise.

  • Assists in conducting user activity audits where required.


Requirements

  • 3+ years experience performing risk and compliance activities

  • Project management experience.

  • A strong understanding of both SOC and ISO as there will be overlap.

  • Experience managing multiple priorities independently and in a team environment to achieve goals.

  • Excellent verbal and written communication skills.

  • Excellent organizational, planning and time management skills.

  • Excellent research and analytical skills.

  • Ability to exercise good judgement and tact in dealing with Bonterra senior management.

  • Proficient with technology and ability to learn our software systems, including GRC, ticketing and project management software and workflows.

  • Proven track record of proactively identifying needs and implementing solutions.

  • Information systems security professional certifications preferred (CRISC, CISA, CISSP, CISM, GSEC, GCFA, GCTI, CCSP, or other relevant Information Security certifications).

At Bonterra, we’re building AI-powered tools to solve real human challenges—and we want teammates who share that enthusiasm. We value people who will champion AI and bring diverse perspectives from different industries, backgrounds, and cultures. Together, we create AI that breaks down barriers, empowers communities, and delivers better outcomes.

At this time, we are unable to consider candidates who require current or future sponsorship for employment authorization.

____________________________________________________________________________________

Compensation & Benefits

We offer a comprehensive benefits package that supports your health, well-being and growth - explore full details

Compensation and benefits for this role apply to full-time employees in the United States and may vary based on local standards, laws and norms. Pay is determined by location, skills, experience, and education, and is one part of Bonterra’s total rewards package, which may also include bonuses, incentives, equity, and a comprehensive benefits program.

____________________________________________________________________________________

About Bonterra

Bonterra is the second-largest and fastest-growing social good software company in the world with solutions from CyberGrants, EveryAction, Network for Good, Social Solutions, and their respective entities making up its product family. Bonterra, which stems from the French word for “good” (bon) and the Latin word for “land” (terra) represents the exponential good that can be accomplished with the right foundation and supports the company’s purpose to power those who power social impact. Bonterra’s differentiated, end-to-end solutions collectively support a unique network of over 20,000 customers, including over 16,000 nonprofit organizations and over 50 percent of Fortune 100 companies.
Learn more about Bonterra
Industry
Founded
2003

Similar Jobs

More Jobs at Bonterra

More Information Technology Jobs

Find similar Information Security Compliance Analyst jobs: