Remote Lead Security Analyst - Governance, Risk, and Compliance

at LaunchDarkly

Posted 3 days ago 2 applied

Description:

  • LaunchDarkly is seeking a Lead Security Analyst to join their Governance, Risk Management, and Compliance (GRC) function within the security team.
  • This role will report to the Director of Security and will focus on reducing security risk and achieving compliance with frameworks such as ISO 27001, SOC 2, and FedRAMP.
  • Responsibilities include collaborating with stakeholders to design and operate security controls, automating compliance activities, tracking program health and maturity, driving continuous improvement projects, contributing to security documentation, supporting audits, and working with engineering teams on GRC-related projects.

Requirements:

  • Candidates must possess deep knowledge and skills in cybersecurity, privacy, and risk management.
  • Excellent written and verbal communication skills are required.
  • Experience in collaborative projects is essential.
  • Familiarity with modern cloud-based SaaS organizations, particularly AWS control environments, is necessary.
  • Considerable knowledge of software development and architecture is required.
  • Candidates should have information security experience in organizations with significant compliance requirements.
  • Strong familiarity with security standards (SOC 2, ISO 27001, ISO 27701, FedRAMP) and privacy laws (CCPA and GDPR) is essential.
  • Relevant certifications such as CCSP, PCI QSA, CISSP, or CISA/CISM are required.
  • Familiarity with collaboration tools like Confluence, Slack, and Github used at LaunchDarkly is preferred.

Benefits:

  • The target pay ranges for this position vary based on geographic zones, with Zone 1 offering $149,000 - $204,000, Zone 2 offering $134,000 - $184,000, and Zone 3 offering $126,000 - $174,000.
  • In addition to salary, benefits include Restricted Stock Units (RSUs), health, vision, and dental insurance, as well as mental health benefits.
  • LaunchDarkly promotes a culture of trust and transparency, providing clear pay ranges to align with candidates' needs.