Senior Compliance Specialist in Abbeyville, Colorado at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Senior Compliance Specialist based in United States.
This role offers the opportunity to strengthen security, privacy, and compliance programs within a technology-driven environment.
You will help design, maintain, and improve governance frameworks that support business resilience and customer trust.
The position combines regulatory expertise, operational execution, and cross-functional collaboration across technical and business teams.
You will play a key role in managing certifications, risk activities, privacy initiatives, and emerging compliance requirements.
The ideal candidate is detail-oriented, proactive, and skilled at translating complex regulations into practical processes.
You will contribute to building scalable compliance operations while supporting a culture of security, transparency, and continuous improvement.
The Senior Compliance Specialist will support the development and execution of security, privacy, and compliance initiatives by ensuring regulatory requirements are translated into effective operational practices. This role will collaborate with teams across the organization to maintain certifications, manage risks, and improve governance processes.
- Support security, privacy, and compliance governance activities, including maintaining policies, procedures, documentation, evidence, and audit records.
- Help manage and maintain compliance certifications and industry attestations, including ISO 27001, SOC 2 Type II, HIPAA, and PCI DSS.
- Coordinate readiness activities for new certifications, compliance objectives, and customer assurance requirements.
- Support enterprise risk management processes, including risk assessments, mitigation planning, and remediation tracking.
- Partner with Legal, Security, IT, and business teams to develop and maintain privacy program processes and controls.
- Support compliance with privacy and data protection regulations by implementing operational controls and processes.
- Lead coordination efforts related to resilience and regulatory initiatives, including control mapping, gap assessments, evidence collection, and remediation activities.
- Contribute to the development and continuous improvement of Business Continuity Management Systems (BCMS), including documentation, testing, and governance activities.
- Support vendor risk management and third-party security review processes.
- Track audit findings, control gaps, corrective actions, and compliance improvements with responsible stakeholders.
- Assist with security awareness initiatives and internal compliance training programs.
- Communicate compliance priorities, progress, and risks clearly to technical teams, business stakeholders, and leadership.
The ideal candidate brings experience in security, privacy, or compliance operations and has the ability to manage complex regulatory requirements in a collaborative technology environment. They should be comfortable working across multiple teams and transforming compliance obligations into sustainable business practices.
- 3+ years of experience in security, privacy, risk, or compliance roles.
- 2+ years of experience working within a software, SaaS, cloud technology, or similar technology organization.
- Strong knowledge of security and compliance frameworks, including ISO 27001, SOC 2 Type II, HIPAA, PCI DSS, GDPR, CCPA, and DORA.
- Experience supporting compliance programs, audits, risk assessments, and control-based governance initiatives.
- Ability to coordinate cross-functional projects and drive execution across engineering, IT, legal, and business teams.
- Working knowledge of cloud technologies and managed service environments.
- Strong written and verbal communication skills with the ability to present information clearly to technical and non-technical audiences.
Preferred qualifications:
- Experience supporting compliance in cloud-based, regulated, or enterprise technology environments.
- Experience building or managing privacy programs, business continuity programs, or governance frameworks.
- Knowledge of DORA, operational resilience, incident response governance, and risk management practices.
- Familiarity with AI governance frameworks such as the EU AI Act, NIST AI Risk Management Framework, and ISO/IEC 42001.
- Experience handling customer security questionnaires, due diligence reviews, and contractual compliance requirements.
- Professional certifications such as CISSP, CISA, CISM, CIPM, CIPT, CDPSE, or ISO 27001 Lead Implementer/Lead Auditor.
- Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Business, or a related discipline.
- Ability to collaborate effectively with engineering, product, sales, legal, and executive stakeholders.
- Competitive compensation package based on skills, experience, and location.
- Opportunity to work on security, privacy, and compliance initiatives within a modern technology environment.
- Collaborative workplace culture focused on innovation, inclusion, and continuous improvement.
- Exposure to global compliance frameworks and emerging technology governance practices.
- Opportunities to contribute to scalable processes that strengthen customer trust and operational resilience.
- Flexible work environment with roles available across multiple U.S. locations.
- Potential eligibility for additional rewards, including merit increases and annual bonuses depending on role structure.