Regulatory Compliance Analyst managing compliance programs across multiple frameworks for a fintech startup. Driving operational adherence and building a proactive compliance culture within the team.
Responsibilities
Own Rain’s compliance program across DORA, SOC 2, SOC 1, GDPR, and PCI, ensuring we meet and exceed regulatory and audit requirements
Lead all compliance audits and certifications end-to-end — including renewals, observation periods, and new certifications Rain chooses to pursue
Maintain and evolve Rain’s policies, keeping them up-to-date, consistent across entities, and aligned with regulatory expectations
Ensure operational adherence by partnering with engineering, security, legal, and operations to make sure we are doing what we say we are doing in our policies
Build a proactive compliance culture, helping the team understand obligations and embedding compliance into day-to-day decision making
Identify gaps and risks early, then drive remediation plans to keep Rain audit-ready at all times
Assist the team in other compliance-related activities, including actionalize and refine KYB, KYC, and AML processes and procedures based on best practices informed by operational data
Requirements
3–7+ years of compliance, GRC, or security assurance experience, ideally in fintech, payments, SaaS, or other regulated industries
Deep familiarity with SOC 2, SOC 1, GDPR, PCI, and other compliance frameworks, with a proven track record of leading successful audits
Excellent program management skills — you can coordinate across teams, manage timelines, and keep multiple compliance workstreams moving
Strong attention to detail with the ability to turn complex requirements into clear, actionable tasks
Strong communication and influence skills, able to work with everyone from engineers to executives to external auditors
Intern supporting IT Security team at OneDigital with hands - on experience and mentoring. Engaging in real - world assignments and responsibilities within IT Security.
Cyber Threat Intelligence Analyst at AIG specializing in cyber threat research and intelligence production. Collaborating with an interdisciplinary team to enhance cybersecurity situational awareness and reporting.
Senior Cyber Security Analyst protecting customers from cyber threats while enhancing cyber security services at technology firm. Focused on both security operations and technical delivery.
Cybersecurity Analyst assisting in the review and implementation of cybersecurity initiatives across a large environment at Kemper. Responding to cyber threats and improving processes and technologies.
Senior Information Security Analyst managing Information Security Management System at BMLL Technology. Supporting compliance with ISO 27001 and enhancing security measures.
Graduate Cyber Security Analyst at McKesson participating in a 24 - month Cyber Academy program. Monitor security alerts and contribute to incident response efforts while gaining mentorship.
Threat Intelligence Analyst role analyzing cyber threats and providing strategic recommendations. Working with cybersecurity teams at PwC Canada to safeguard client data and systems.
Contract Security Analyst specializing in security operations and incident response for cloud security at Embark. Focus on alert handling, detection engineering, and data loss prevention.
Cyber Security Analyst providing security operations support for USAF Cloud One project. Engaging in incident response and cybersecurity compliance activities within a hybrid environment.
Cybersecurity Analyst responsible for monitoring, analyzing, and responding to security incidents in SOC. Developing detection rules and conducting threat - hunting campaigns within a hybrid work setup.