Security Analyst

Paymentus

$70K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in relevant field or equivalent experience.
  • 2 years in regulatory compliance, payments, or consumer finance.
  • Knowledge of risk management and audit standards (SOC 1, SOC 2, PCI DSS).
  • Familiarity with compliance frameworks (GDPR, CCPA, NIST, CIS Controls).
  • Strong interpersonal skills for cross-department collaboration.
  • High attention to detail and self-driven work ethic.
  • Excellent written and verbal communication skills.

Responsibilities

  • Support audit and compliance by gathering evidence and conducting assessments.
  • Maintain a central repository for audit evidence tracking.
  • Conduct gap analysis on compliance and regulatory standards.
  • Draft and update policies, standards, and procedures.
  • Manage risk register and track remediation efforts.
  • Collaborate on GRC objectives across departments.
  • Develop metrics and KPIs for executive review.

Benefits

  • Standard office environment with typical equipment usage.
  • Relatively stable work schedule (Monday to Friday).
  • Minimal travel requirements, offering work-life balance.
  • Potential for involvement in a variety of compliance frameworks.
Full Job Description
Summary/Objective
The Information Security GRC Analyst, will report to the Director, IT Compliance. This role will interact with multiple departments, manage compliance readiness, provide support for our central GRC repository, and conduct risk/gap assessments based on industry leading frameworks including remediation recommendations, tracking and associated metrics.
Essential Functions
  • Support audit and compliance activities by gathering evidence, conducting preliminary assessments, and assisting in the remediation of audit findings.
  • Maintain and monitor a central repository of audit evidence
  • Conduct gap analysis on various industry standard compliance and regulatory requirements
  • Track, update, and draft clear, concise policies, standards and procedures
  • Maintain an up-to-date risk register and track remediation status
  • Collaborate with various departments on GRC related objectives
  • Track and ensure compliance with IT and security controls covering a wide range of regulations
  • Follow up with team members driving progress on tracked issues
  • Develop and contribute to metrics and KPIs for CISO and executive management review
  • Review, update, and test governance plans such as the BCP, IRP and DR plans
  • Assist in the Development and delivery of security awareness and training programs to educate employees on security policies, procedures, and best practices
Work Environment

This job operates in a professional office environment. This role routinely uses standard office equipment such as laptop computers, photocopiers and smartphones.
Physical Demands

While performing the duties of this job, the employee is regularly required to talk or hear. This would require the ability to lift files, open filing cabinets and bend or stand on a stool as necessary.
Position Type/Expected Hours of Work

This is a full-time position. Days and hours of work are Monday through Friday, during normal business hours. Occasional evening and weekend work may be required as job duties demand.
Travel

Little to no travel is expected for this position.

Education and Experience
  • A bachelor's degree and 2 years of regulatory compliance or similar experience in payments or consumer finance, or similar combination of education and experience are preferred.
  • Working knowledge in risk management, audits (SOC 1, SOC 2, PCI DSS) and information security best practices.
  • Basic understanding of regulatory compliance and information security frameworks such as GDPR, CCPA, NIST, CIS Controls, etc.
  • Experience in dealing with internal / external resources across a variety of departments and office hierarchies
  • Self-driven and high attention to detail
  • Fantastic written and verbal communication skills
  • Ability to operate in and maintain a fast pace and cadence
  • Authorized to work lawfully in the United States of America
Other Duties

Please note this job description is not designed to cover or contain a comprehensive listing of activities, duties or responsibilities that are required of the employee for this job. Duties, responsibilities and activities may change at any time with or without notice.

Similar Jobs

More Jobs at Paymentus

  • Account Director
    $100K — $130K *
    Charlotte, NC 28269 (Mecklenburg County)
    Finance & Insurance
    In-Person
  • Security Analyst
    $70K — $95K *
    Charlotte, NC 28269 (Mecklenburg County)
    Information Technology
    In-Person
  • Account Director
    $100K — $130K *
    Dallas, TX 75217 (Dallas County)
    Finance & Insurance
    In-Person
  • SR Full Stack Engineer II
    $110K — $140K *
    Richmond Hill, ON L4B 0A5
    Enterprise Technology
    In-Person
  • Technical Client Manager
    $75K — $95K *
    Charlotte, NC 28269 (Mecklenburg County)
    Finance & Insurance
    In-Person

More Information Technology Jobs

Find similar Security Analyst jobs: