Information Security Analyst - Compliance

See more jobs from Kraken FX

over 2 years old

This job is no longer active

About Kraken

As one of the largest and most trusted digital asset platforms globally, we are empowering people to experience the life-changing potential of crypto. Trusted by over 8 million consumer and pro traders, institutions, and authorities worldwide - our unique combination of products, services, and global expertise is helping tip the scales towards mass crypto adoption. But we’re only just getting started. We want to be pioneers in crypto and add value to the everyday lives of billions. Now is not the time to sit on the sidelines. Join us to bring crypto to the world.

About the Role

We are looking for an Information Security Analyst to be part of a team focused on performing scoped information security assessments, audits of critical tools and vendors, and assisting in the maturation of our confidentiality, integrity, and availability initiatives. The analyst must be self-motivated, work well under pressure, develop strong relationships with stakeholders, and demonstrate commitment and accountability.

Responsibilities

  • Maintain and mature certifications: ISO27001, SOC2
  • Ensure compliance with Information Security policies, procedures, guidelines, and standards;
  • Conduct internal compliance reviews and serve as consultant for security issues that require immediate resolution;
  • Liaison between Information Technology department and third-parties engaged to provide Information Security monitoring and/or management services:
  • Ability to interpret and disseminate security-related information as needed to invoke operational/security responses and/or actions as needed;
  • Interpret and disseminate security-related information to upper management and the board of directors in relevant terms, e.g., summary dashboards;
  • Facilitate audit and regulatory reviews by gathering documentation or representing facts to auditors and regulators as required;
  • Ensure the company is compliant with data destruction methods
  • Review internal, external, and regulatory recommendations and follow up to ensure company adaptation;
  • Advise manager of potential new threats and plausible mitigation, and suggested user education;
  • Participate with Information Security and Information Technology teams and any required third-party partners to protect data; and
  • Perform day to day tasks as it relates to Information Security.
  • Requirements

  • Experience in acquiring, maintaining, and maturing ISO27001, SOC2, or SOC3 compliance is highly desirable.
  • Direct communication with Regulators or as part of team that works closely with Regulators
  • Ability to effectively communicate technical- and security-related concepts to a broad range of technical and non-technical professionals;
  • Ability to effectively communicate with IT staff and third-party IT security management service providers;
  • Familiarity with industry data security, privacy standards, relevant laws and regulatory requirements
  • Strong technical skills, analytical skills, and administrative skills
  • Excellent written and verbal communication skills
  • Ability to anticipate and respond to internal and external departmental needs.
  • Ability to follow through and complete assigned tasks within a designated time fame
  • Excellent organizational skills, ability to multitask and demonstrate flexibility
  • Excellent corporate work ethics (timely, respectful and considerate to co-workers, honest)
  • Location Tagging: #EU #US #CANADA #LI-Remote #LT1

    We’re powered by people from around the world with their own unique and diverse experiences. We value all Krakenites and their talents, contributions, and perspectives, regardless of their background. 

    As an equal opportunity employer we don’t tolerate discrimination or harassment of any kind. Whether that’s based on race, ethnicity, age, gender identity, citizenship, religion, sexual orientation, disability, pregnancy, veteran status or any other protected characteristic as outlined by federal, state or local laws. 

    Stay in the know