Skip to main content
Tallo logoTallo logo

Find Jobs

Find Jobs Near You – Available Work in Your Location

Skip to job details

Back to Results

Apply for this opportunity

To apply for this job, you'll continue to an external website or email application.

Keystone Cyber Protection

Compliance Associate - Onsite Only

Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
69
out of 100
Average of individual scores

Were these scores useful?

Job Description

Job Overview We are seeking a Compliance Associate to support our clients with their security and regulatory compliance initiatives. This role will work directly with clients to understand their environments, evaluate their current compliance posture, identify gaps, develop and update policies and procedures, and help them prepare for audits and assessments. The ideal candidate has experience or familiarity with frameworks and regulations such as
HIPAA, SOC 2, NYDFS
Cybersecurity Regulation, OIG, and GLBA, along with the ability to quickly research, understand, and work with additional frameworks based on individual client needs. This role is well suited for someone who enjoys learning, analyzing requirements, working with different organizations and environments, and translating complex compliance requirements into practical steps clients can understand and implement. Key Responsibilities Client Compliance Support Work directly with clients to understand their business, technology environment, compliance obligations, and existing security practices. Guide clients through compliance requirements and help them understand what is required to meet applicable standards and regulations. Support clients pursuing or maintaining compliance with
HIPAA, SOC 2, NYDFS
Cybersecurity Regulation, GLBA, and other applicable frameworks. Research and become familiar with additional regulations, standards, and frameworks based on client requirements. Translate regulatory and framework language into clear, practical requirements and recommendations for clients. Gap Assessments Conduct compliance and security gap analyses to evaluate client environments against applicable requirements. Interview client stakeholders and review existing policies, procedures, processes, technical controls, and supporting documentation. Identify missing, incomplete, or insufficient controls and documentation. Clearly document findings, observations, and recommended remediation activities. Help clients prioritize remediation efforts based on compliance requirements, risk, and practical considerations. Track identified gaps and work with clients through remediation and readiness efforts. Policy & Procedure Development Draft, review, and update client security, privacy, and compliance policies and procedures. Tailor policies to each client's organization, operations, technology environment, and applicable compliance requirements. Compare existing client documentation against framework requirements and identify necessary updates. Help ensure documented policies and procedures align with the client's actual practices and implemented controls. Audit & Assessment Readiness Assist clients with preparing for audits, examinations, certifications, and third-party assessments. Help clients understand evidence requests and determine appropriate documentation to demonstrate compliance. Review evidence for completeness and alignment with applicable requirements. Support SOC 2 readiness assessments and similar compliance initiatives. Help clients organize policies, evidence, control documentation, and remediation records. Assist clients with addressing findings identified during assessments or audits. Framework & Control Mapping Interpret requirements across multiple regulatory and compliance frameworks. Map similar requirements and controls across frameworks to help clients efficiently manage overlapping obligations. Assist with developing control matrices, compliance checklists, and other assessment documentation. Research new or unfamiliar frameworks and develop an understanding of their requirements as client needs evolve. Client Communication & Project Support Participate in client meetings, interviews, assessments, and compliance reviews. Clearly communicate findings and requirements to both technical and non-technical client stakeholders. Follow up with clients regarding outstanding documentation, evidence, remediation activities, and project milestones. Maintain organized documentation of client assessments, findings, recommendations, and progress. Manage multiple client engagements and compliance initiatives simultaneously. Qualifications Approximately 1-3 years of experience in compliance, cybersecurity, risk management, audit, consulting, or a related field. Familiarity with one or more of the following:
HIPAA SOC 2 / AICPA
Trust Services Criteria NYDFS Cybersecurity Regulation (23 NYCRR Part 500) Gramm-Leach-Bliley Act (GLBA) / Safeguards Rule Experience with or understanding of compliance assessments, gap analyses, policy development, control reviews, or audit preparation. Ability to read and interpret regulatory and framework requirements and translate them into actionable recommendations. Strong writing and documentation skills, particularly for policies, assessment findings, and client deliverables. Strong communication and interpersonal skills with the ability to work directly with clients. Strong attention to detail and organizational skills. Ability to manage multiple client projects, priorities, and deadlines. Ability and willingness to independently research and learn unfamiliar compliance frameworks.
Key Competencies Client-focused:
Able to understand each client's unique environment and provide practical, appropriate guidance.
Analytical:
Able to evaluate client practices against requirements and identify meaningful compliance gaps.
Adaptable:
Comfortable moving between different clients, industries, and compliance frameworks.
Strong communicator:
Able to explain complex regulatory and security requirements in clear, understandable terms.
Strong writer:
Able to produce professional policies, assessments, findings, and other client-facing documentation.
Resourceful:
Comfortable researching unfamiliar regulations and frameworks and developing the knowledge needed to support a client engagement.
Organized:
Able to manage documentation, deliverables, findings, follow-ups, and deadlines across multiple clients.
Practical:
Focused not only on identifying compliance requirements, but also on helping clients determine realistic ways to satisfy them.
Pay:
$30.00 - $33.00 per hour
Benefits:
Paid time off Application Question(s): Do you live within 30 minutes of Lakewood NJ?
Experience:
compliance: 1 year (Preferred)
Work Location:
In person

Benefits

  • Paid Time Off (PTO)
  • Dental Insurance