1

Drata Jobs in Oregon (NOW HIRING)

Senior Security Compliance Analyst

OR · On-site +1

$110K - $140K/yr

Familiarity with GRC tools (e.g., OneTrust, LogicGate, Archer, Vanta, Drata) is a plus. The expected pay range for this role is $110,000 - $140,000 USD per year for full time team members. #LI-Remote

Advanced experience configuring LogicGate Risk Cloud or direct exposure to enterprise GRC platforms like AuditBoard, OneTrust, Drata, or MetricStream. * Experience delivering post-go-live custom ...

Compliance Team Lead

OR · On-site +1

$156K/yr

Familiarity with GRC platforms, particularly IntelliGRC (Cyber74's platform of record); experience with Drata, Vanta, Tugboat Logic, or similar tools also valued * Proven ability to write information ...

Compliance Team Lead

OR · On-site +1

$156K/yr

Familiarity with GRC platforms, particularly IntelliGRC (Cyber74's platform of record); experience with Drata, Vanta, Tugboat Logic, or similar tools also valued * Proven ability to write information ...

Hands-on experience with GRC automation platforms (Vanta, Drata, or equivalent), cloud security environments (AWS preferred), and BCP/DR program design. * Proven experience managing external audit ...

Drata information

See Oregon salary details

$8

$26

$61

How much do drata jobs pay per hour?

As of Sep 6, 2026, the average hourly pay for drata in Oregon is $26.27, according to ZipRecruiter salary data. Most workers in this role earn between $15.10 and $30.69 per hour, depending on experience, location, and employer.

What is Drata?

Drata is a security and compliance automation platform that helps businesses streamline the process of achieving and maintaining security certifications such as SOC 2, ISO 27001, HIPAA, and others. The platform automates evidence collection, monitors controls, and provides real-time insights into a company's security posture. Drata integrates with a wide range of cloud services and tools, making it easier for companies to meet compliance requirements and demonstrate their commitment to security to customers and partners.

What are some common challenges faced by compliance professionals working with Drata's platform?

Compliance professionals using Drata often encounter challenges such as adapting to rapidly evolving regulatory requirements and ensuring seamless integration of Drata with existing internal systems. Additionally, maintaining continuous monitoring and evidence collection can be demanding, especially in organizations with complex environments. However, the platform's automation tools and dedicated support resources help mitigate these challenges by streamlining workflows and fostering collaboration with IT and security teams.

What are the key skills and qualifications needed to thrive as a Drata Implementation Specialist, and why are they important?

To thrive as a Drata Implementation Specialist, you need a solid background in information security, compliance frameworks (such as SOC 2, ISO 27001), and process management, often supported by a relevant degree or certification. Familiarity with Drata’s SaaS platform, cloud environments (AWS, Azure, GCP), and audit tools is typically required. Strong communication, project management, and problem-solving skills set top performers apart in this role. These abilities ensure efficient onboarding, seamless client adoption, and ongoing compliance success for organizations using Drata.

Is Drata a good place to work?

Drata is a cybersecurity automation company that offers roles related to compliance, security, and engineering. Employees often cite a collaborative environment, opportunities for growth, and a focus on remote work. As with any company, individual experiences may vary based on role and team.

What is the interview process at Drata?

The interview process at Drata typically involves an initial phone screen, followed by technical assessments or coding challenges for technical roles, and then in-person or virtual interviews with team members. Candidates may also complete behavioral interviews to assess cultural fit and relevant skills. The process aims to evaluate technical proficiency, problem-solving abilities, and alignment with company values.
Infographic showing various Drata job openings in Oregon as of August 2026, with employment types broken down into 99% Full Time, and 1% Contract. Highlights an 54% Physical, 3% Hybrid, and 43% Remote job distribution, with an average salary of $54,649 per year, or $26.3 per hour.

Senior Security Compliance Analyst

OneStudyTeam

OR • On-site, Remote

$110K - $140K/yr

Full-time

Re-posted 21 days ago


Key responsibilities

  • Lead and support customer security audits, responding to security questionnaires and demonstrating compliance with security frameworks.

  • Prepare, coordinate, and manage ISO 27001 audits, including evidence collection, control implementation, and auditor engagement.

  • Perform gap analyses and risk assessments to identify and remediate compliance risks.


Job description

We are seeking a Senior Security Compliance Analyst with expertise in Governance, Risk, and Compliance (GRC) to support and enhance our security and compliance programs within the healthcare industry. This role is critical in ensuring adherence to industry regulations, responding to customer audits, and maintaining compliance with ISO 27001, HIPAA, and other security frameworks.

The ideal candidate will be a detail-oriented compliance expert who can navigate complex regulatory environments, assist with internal/external audits, and drive continuous improvement in security governance. The ideal candidate must be able to operate independently while delivering on the following duties.

What You'll Be Working On:
  • Lead and support customer security audits, responding to security questionnaires and demonstrating compliance with security frameworks.
  • Prepare, coordinate, and manage ISO 27001 audits, including evidence collection, control implementation, and auditor engagement.
  • Ensure ongoing compliance with HIPAA, NIST CSF, and other regulatory requirements applicable to healthcare data security.
  • Develop and maintain policies, procedures, and security documentation to meet regulatory and contractual obligations.
  • Perform gap analyses and risk assessments to identify and remediate compliance risks.
  • Manage and improve security governance frameworks, ensuring alignment with industry best practices and business objectives.
  • Conduct third-party vendor risk assessments, ensuring compliance with security policies and contractual obligations.
  • Monitor security controls, ensuring effectiveness and continuous improvement in alignment with security frameworks.
  • Support security awareness training initiatives, ensuring employees understand compliance responsibilities.
  • Stay current on ISO 27001, HIPAA, NIST 800-53, and other relevant standards, translating them into actionable security controls.
  • Assist in defining security metrics and reporting on compliance status and risk posture to leadership.
  • Work closely with legal, security, IT, and business teams to align compliance requirements with security operations.
What You'll Bring to OneStudyTeam:
  • Minimum Education:
    • Minimum of a Bachelor's degree in Information Security, Computer Science, Risk Management, or related field (or equivalent experience). 
  • Minimum Experience:
    • Minimum 8+ years of progressive experience in GRC, compliance, or security audit roles. 
  • Experience in healthcare or regulated industries strongly preferred. 
  • Certifications strongly preferred: ISO 27001 Lead Auditor/Implementer, CISSP, CISM, CISA, HITRUST CCSFP, CRISC. 
  • Experience leading ISO 27001, SOC2, or HITRUST audits, including ISMS implementation and external audit coordination. 
  • Strong understanding of NIST CSF, SOC 2, GDPR, and other security frameworks.  
  • Hands-on experience with customer security audits, including responding to security questionnaires and managing security assessments. 
  • Ability to perform risk assessments, policy reviews, and compliance gap analyses. 
  • Strong written and verbal communication skills, with the ability to explain technical concepts to non-technical stakeholders. 
  • Detail-oriented with excellent organizational and project management skills.  
  • Ability to work independently and collaboratively in a remote environment. 
  • Familiarity with GRC tools (e.g., OneTrust, LogicGate, Archer, Vanta, Drata) is a plus. 

The expected pay range for this role is $110,000 - $140,000 USD per year for full time team members.

#LI-Remote