The Security Analyst, Compliance at Pure Storage is responsible for managing and supporting compliance certification programs, ensuring security and regulatory requirements are met, and collaborating with internal teams and external auditors to maintain and improve security compliance processes.
Key Responsibilities
Execute and support compliance certification programs (e.g., SOC 2, ISO 27001, FedRAMP).
Collaborate with cross-functional teams and external auditors to ensure smooth project execution.
Assist internal teams through assessments and audits related to security and compliance.
Translate security and compliance controls into technical solutions and implementation strategies.
Develop, track, and report on compliance metrics and drive process improvements.
Maintain comprehensive compliance documentation, including control narratives and audit evidence.
Conduct recurring compliance tasks such as access reviews and vulnerability scanning across multiple business units.
Requirements
5 years of experience in IT audit, risk management, or IT compliance roles, with demonstrated experience running compliance certification programs
In-depth understanding of security controls and key compliance frameworks such as NIST, SOC2, ISO 27001, FedRAMP, FIPS, and Common Criteria, as well as cloud platforms like AWS, Azure, and GCP
Strong written and verbal communication skills, with the ability to engage effectively with both internal teams and external auditors
Ability to identify and recommend tools, processes, and software to improve and automate compliance practices
Experience in independently running compliance certification programs and supporting internal teams through assessments and audits
Ability to translate complex security and compliance controls into actionable technical solutions and implementation strategies
Experience developing, tracking, and reporting on key compliance metrics (KCMs), and continuously driving process improvements to align with evolving industry standards and best practices
Experience authoring and maintaining comprehensive compliance documentation, including control narratives, audit evidence, and supporting materials, ensuring they are accurate, up-to-date, and audit-ready
Ability to independently drive recurring tasks and events such as access reviews and vulnerability scanning across multiple business units with differing scopes
Willingness to work from the Lehi, UT office in an primarily in-office environment, in compliance with company policies
Benefits & Perks
Salary range: 110,000 - 165,000 USD
Potential incentive pay and/or equity
In-office work environment at Lehi, UT
Flexible time off
Wellness resources
Company-sponsored team events
Ready to Apply?
Join Pure Storage and make an impact in renewable energy