Skip to main content
Tallo logoTallo logo

Find Jobs

Find Jobs Near You – Available Work in Your Location

Skip to job details

Back to Results

Apply for this opportunity

To apply for this job, you'll continue to an external website or email application.

iPipeline

Experienced Security Analyst

Career Insights for Compliance Auditor

See where this job fits in the broader career landscape. Knowing your career path helps you see what's possible from here.

Scorecard

Based on Pennsylvania data

Review key factors to help you decide if this role fits your goals. How is this calculated?

Were these scores useful?

What they do

A Compliance Auditor examines records and procedures to determine adherence to regulatory guidelines of an organization. Inspects accounting, IT or security, prepares reports on the compliance with required regulations and risk management procedures.

$99,199 / year median in Pennsylvania

+1% projected growth

Explore Career

Job Description

Overview:
As a global market leader, iPipeline combines technology, innovation, and expertise to deliver ground-breaking, award-winning software solutions that transform the life insurance, financial services, and protection industries. With one of the industry's largest data sets, we help advisors/advisers and agents to transform paper and manual operations into a secure, seamless digital experience - from proposal to commission- so they can help better secure the financial futures of their clients. At iPipeline, you'll play a major role in helping us to provide best-in-class, transformative solutions. We're passionate, creative, and innovative, and together as a team, we continually strive to advance, accelerate, and expand the reach of our technology. We value different perspectives and are committed to creating an environment that embraces diverse backgrounds and fosters inclusion. We're proud that we've been recognized as a repeat winner of various industry awards, demonstrating our excellence and highlighting us as a top workplace in both the US and the UK. We believe that the culture we've built for our nearly 900 employees around the world is exceptional - and we've created a place where our employees love to come to work, every single day. Come join our team! About iPipeline Founded in 1995, iPipeline operates as a business unit of Roper Technologies (
Nasdaq:
ROP), a constituent of the Nasdaq 100, S&P 500®, and Fortune 1000® indices. iPipeline is a leading global provider of comprehensive and integrated digital solutions for the life insurance and financial services industries in North America, and life insurance and pensions industries in the UK. We couple one of the most expansive digital and automated platforms with one of the industry's largest data libraries to accelerate, automate, and simplify various applications, processes, and workflows - from quote to commission - with seamless integration. Our vision is to help everyone achieve lasting financial security by delivering innovative solutions that connect, simplify, and transform the industry. iPipeline is proud to be an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to gender, race, color, religious creed, national origin, age, sexual orientation, gender identity, physical or mental disability, and/or protected veteran status . We are committed to building a supportive and inclusive environment for all employees. This is an office-based position.
Responsibilities:
The Experienced Security Analyst investigates, analyzes, and resolves security incidents. This role handles more complex threats, conducts in-depth forensics, and contributes to incident response planning.
Security Risk Management:
Monitor and assess security alerts and system events, identifying potential security risks, threats, or vulnerabilities in systems and infrastructure. Implement controls to mitigate security risks, ensuring the organization's security posture is continually improved. Conduct regular security audits and assessments (e.g., vulnerability scans, penetration testing).
Incident Response and Remediation:
Detect, analyze and investigate security incidents, determining root causes and impact. Develop and implement remediation strategies for confirmed incidents. Ensure that security breaches are properly documented, analyzed, and remediated. Coordinate with external vendors or authorities in case of a major incident (e.g., data breach).
Security Tools and Technologies:
Implement and manage in-scope security tools. Continuously evaluate and upgrade security tools to meet evolving threats and compliance requirements.
Regulatory Compliance:
Implement frameworks and practices to comply with industry regulations, laws, and standards around data protection, privacy, and industry-specific requirements. Keep abreast of changing regulatory landscapes and ensuring the organization adjusts policies and practices accordingly.
Collaboration:
Work with legal teams to ensure contracts and agreements (e.g., with third-party vendors) comply with security and regulatory requirements. Coordinate with audit teams to ensure compliance with both internal and external audits. Assist in conducting security training sessions for employees and liaise with legal, HR, and IT to ensure cohesive security practices.
Reporting and Documentation:
Provide regular reports to senior management on security and compliance posture. Create detailed documentation for audits and compliance reviews. All other duties as assigned. Specific to
Audit and Compliance:
Update and maintain security policies, procedures, and documentation. Collaborate with other teams (e.g., IT, Legal, HR) to ensure consistent security and compliance practices across the organization. Lead portions of internal audits and participate in external audits. Maintain audit schedules and track remediation efforts. Interpret and apply regulatory and audit standards (e.g., SOC 2, SOX, Cyber Essentials. Identify compliance gaps and propose corrective actions. Conduct risk assessments and analyze effectiveness of controls.
Qualifications:
Technical Competencies Threat Analysis:
Ability to assess and mitigate advanced threats, such as malware, phishing, and APTs.
Network Forensics:
Experience conducting forensic analysis on compromised systems and networks.
Incident Response:
Proficiency in handling and responding to security incidents and breaches.
Compliance Knowledge:
Understanding of regulatory frameworks (e.g., GDPR, HIPAA, SOC 2, PCI
DSS, NIST, ISO 27001
). Proficient with network security, cloud security, encryption techniques, firewalls, SIEM (Security Information and Event Management), vulnerability scanning tools, and other security technologies. Proficient written and verbal communication skills to report findings and collaborate with teams.
Benefits:
We offer a competitive compensation and benefits package, opportunities for career growth, an employee stock purchase plan, 401(k), generous time off and flexible work/life balance, company-matched retirement packages, an employee wellness program, and an awards and recognition program - all in a creative, fast-growing, and innovative company.

Benefits

  • 401(k) Plans
  • Employee Stock Options (ESOs)
  • Health and Wellness Programs
  • Dental Insurance