29 ene
Docker
Tamazunchale
.Docker is a remote first company with employees across Europe, APAC and the Americas that simplifies the lives of developers who are making world-changing apps.
We raised our Series C funding in March 2022 for $105M at a $2.1B valuation.
We continued to see exponential revenue growth last year.
Join us for a whale of a ride!Docker helps developers bring their ideas to reality by conquering the complexity of app development.
We simplify and accelerate workflows with an integrated development pipeline and application components.
A fast-growing startup, Docker offers a dynamic work environment.The Senior GRC Analyst will report to the Compliance Manager.
This role will be responsible for helping execute our SOC 2 readiness assessment and external audit.
This role will work closely with IT, Security and Compliance leadership to strategize and scope assessments, identify key risk areas, and establish baseline controls for continued growth and maturity.
The analyst role will perform third party supplier security assessments, as well as facilitate and coordinate responses for customer due diligence questionnaires.
This role is cross-functional in nature, serving as a trusted advisor across the organization to improve Docker's controls posture.Responsibilities:Plan internal audits from start to finish, perform gap assessments and advice on gap closure, collect and review evidence, present evidence to auditors to make the case for compliance, and assist with interactions with external auditorsEstablish strong partnerships with front line business partners and other stakeholders to ensure security program, policy and procedures are effectiveSupport the Compliance team in ensuring compliance with industry standards and privacy regulationsServe as an advisor to engineering, IT,
and business process teams to assist them in supporting compliance effortsDraft policies and best practices that will be consumed by the entire organizationMaintain knowledge of certifications and controls such as SOC 2, ISO 27001 / ISO 27018, NIST 900-53, FedRAMP, IT SOXEvaluate vendors against compliance and security standardsAssist in building out a risk and compliance control framework based on industry leading standards
Muestra tus habilidades a la empresa, rellenar el formulario y deja un toque personal en la carta, ayudará el reclutador en la elección del candidato.