Join us in this full-time role, based in our Dallas Office at the Link: 2601 Olive Street, Dallas ... Own the internal SOC 2 Type II evidence collection process, keeping controls audit-ready year-round.
Join us in this full-time role, based in our Dallas Office at the Link: 2601 Olive Street, Dallas ... Own the internal SOC 2 Type II evidence collection process, keeping controls audit-ready year-round.
IT Systems Administrator
San Francisco, CA · Remote
$120K - $160K/yr
Partner with our Systems Team to support SOC 2 compliance efforts * Help implement and manage our ... full-time roles, and exceptional benefits. Our cash compensation salary range for this role is $120 ...
Quick apply
IT Systems Administrator
San Francisco, CA · Remote
$120K - $160K/yr
Partner with our Systems Team to support SOC 2 compliance efforts * Help implement and manage our ... full-time roles, and exceptional benefits. Our cash compensation salary range for this role is $120 ...
IT Systems Administrator
San Francisco, CA · On-site
$120K - $160K/yr
Partner with our Systems Team to support SOC 2 compliance efforts * Help implement and manage our ... full-time roles, and exceptional benefits. Our cash compensation salary range for this role is $120 ...
IT Systems Administrator
San Francisco, CA · On-site
$120K - $160K/yr
Partner with our Systems Team to support SOC 2 compliance efforts * Help implement and manage our ... full-time roles, and exceptional benefits. Our cash compensation salary range for this role is $120 ...
Security Manager
Tampa, FL · On-site
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through ... Medical, vision, and dental plans for full time employees * 401(k) offered with a generous match
Security Manager
Tampa, FL · On-site
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through ... Medical, vision, and dental plans for full time employees * 401(k) offered with a generous match
GRC Analyst (REMOTE)
Austin, TX · Remote
$80K - $90K/yr
We are seeking a Technical Customer Support Representative (REMOTE) for a full-time and direct hire ... You will play a key part in supporting SOC 2 and GovRAMP initiatives, maintaining the controls and ...
New
Quick apply
GRC Analyst (REMOTE)
Austin, TX · Remote
$80K - $90K/yr
We are seeking a Technical Customer Support Representative (REMOTE) for a full-time and direct hire ... You will play a key part in supporting SOC 2 and GovRAMP initiatives, maintaining the controls and ...
New
Senior GRC Analyst
Pittsburgh, PA · On-site
$114K - $163K/yr
Compliance & Fraud Employment Type: Full Time Location: Pittsburgh Onsite Compensation: $114,000 ... Run our annual PCI DSS v4.0.1 Level 1 service provider assessment and SOC 2 Type II examination end ...
Senior GRC Analyst
Pittsburgh, PA · On-site
$114K - $163K/yr
Compliance & Fraud Employment Type: Full Time Location: Pittsburgh Onsite Compensation: $114,000 ... Run our annual PCI DSS v4.0.1 Level 1 service provider assessment and SOC 2 Type II examination end ...
Cybersecurity GRC Analyst
Mchenry, IL · Hybrid
$115K - $120K/yr
This position is an exempt full-time position located in McHenry, IL or remote for the right person ... Serves as primary point of contact for SOC 2 Type II certification efforts, coordinating evidence ...
Cybersecurity GRC Analyst
Mchenry, IL · Hybrid
$115K - $120K/yr
This position is an exempt full-time position located in McHenry, IL or remote for the right person ... Serves as primary point of contact for SOC 2 Type II certification efforts, coordinating evidence ...
GRC Analyst
Dallas, TX · On-site
Join us in this full-time role, based in our Dallas Office at the Link: 2601 Olive Street, Dallas ... Own the internal SOC 2 Type II evidence collection process, keeping controls audit-ready year-round.
GRC Analyst
Dallas, TX · On-site
Join us in this full-time role, based in our Dallas Office at the Link: 2601 Olive Street, Dallas ... Own the internal SOC 2 Type II evidence collection process, keeping controls audit-ready year-round.
Compliance Account Coordinator - NYC
New York, NY · On-site
$20 - $25/hr
Hourly, Full-Time Experience Level: Entry-Level Compensation: $20-25 per hour Position Overview: As ... Coordinate and track SOC 2, ISO 27001, HIPAA, and other compliance projects from kickoff through ...
Compliance Account Coordinator - NYC
New York, NY · On-site
$20 - $25/hr
Hourly, Full-Time Experience Level: Entry-Level Compensation: $20-25 per hour Position Overview: As ... Coordinate and track SOC 2, ISO 27001, HIPAA, and other compliance projects from kickoff through ...
Information Security Compliance Coordinator
Washington, DC · Remote
$60K - $75K/yr
This is a part-time position (25 hours per week), with the potential to transition to a full-time role. DUTIES OF THE POSITION: Compliance & Audit Support * Support ISO, SOC 2, and CMMC compliance ...
Information Security Compliance Coordinator
Washington, DC · Remote
$60K - $75K/yr
This is a part-time position (25 hours per week), with the potential to transition to a full-time role. DUTIES OF THE POSITION: Compliance & Audit Support * Support ISO, SOC 2, and CMMC compliance ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Quick apply
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Compliance Account Coordinator - Boston
Boston, MA · On-site
$20 - $25/hr
Hourly, Full-Time Experience Level: Entry-Level Compensation: $20-25 per hour Position Overview: As ... Coordinate and track SOC 2, ISO 27001, HIPAA, and other compliance projects from kickoff through ...
Compliance Account Coordinator - Boston
Boston, MA · On-site
$20 - $25/hr
Hourly, Full-Time Experience Level: Entry-Level Compensation: $20-25 per hour Position Overview: As ... Coordinate and track SOC 2, ISO 27001, HIPAA, and other compliance projects from kickoff through ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Quick apply
Miratech retains nearly 1000 full-time professionals, and our annual growth rate exceeds 25%. The ... The Project Manager will coordinate SOC 2, ISO/IEC 27001, GDPR, and related security readiness ...
Information Security Compliance Coordinator
Washington, DC · Remote
$60K - $75K/yr
This is a part-time position (25 hours per week), with the potential to transition to a full-time role. DUTIES OF THE POSITION: Compliance & Audit Support * Support ISO, SOC 2, and CMMC compliance ...
Quick apply
Information Security Compliance Coordinator
Washington, DC · Remote
$60K - $75K/yr
This is a part-time position (25 hours per week), with the potential to transition to a full-time role. DUTIES OF THE POSITION: Compliance & Audit Support * Support ISO, SOC 2, and CMMC compliance ...
Full Time Soc 2 information
See salary details
$5.29 - $11.98
0% of jobs
$11.98 - $18.66
21% of jobs
$18.66 - $25.35
0% of jobs
$26.44 is the 25th percentile. Wages below this are outliers.
$25.35 - $32.04
24% of jobs
The median wage is $33.71 / hr.
$32.04 - $38.72
19% of jobs
$43.62 is the 75th percentile. Wages above this are outliers.
$38.72 - $45.41
15% of jobs
$45.41 - $52.10
14% of jobs
$52.10 - $58.78
2% of jobs
$58.78 - $65.47
2% of jobs
$65.47 - $72.16
2% of jobs
$72.16 - $78.85
1% of jobs
$5
$36
$78
How much do full time soc 2 jobs pay per hour?
What is the difference between Full Time Soc 2 vs Security Analyst?
| Aspect | Full Time Soc 2 | Security Analyst |
|---|---|---|
| Certifications | SOC 2, possibly CISSP or CISA | CISSP, Security+, CEH |
| Work Environment | Auditing, compliance, IT security teams | Monitoring, threat analysis, incident response |
| Industry Usage | IT service providers, cloud companies, financial institutions | Any organization with cybersecurity needs |
Full Time Soc 2 professionals focus on ensuring organizations meet SOC 2 compliance standards, often working in auditing and compliance roles. Security Analysts primarily monitor and protect IT systems from threats. While both roles require security knowledge, Full Time Soc 2 roles emphasize compliance and audit processes, whereas Security Analysts focus on security operations and incident response.
What cities are hiring for Full Time Soc 2 jobs?
Cities with the most Full Time Soc 2 job openings:
What are the most commonly searched types of Soc 2 jobs?
The most popular types of Soc 2 jobs are:
What states have the most Full Time Soc 2 jobs?
States with the most job openings for Full Time Soc 2 jobs include:
What job categories do people searching Full Time Soc 2 jobs look for?
The top searched job categories for Full Time Soc 2 jobs are:

Job description
The OpportunityÂ
We are hiring a Security GRC & Risk Analyst to own the governance, risk, and compliance execution layer across a holding company and portfolio of businesses. This is a build-oriented role with a defined scope: you will be the internal anchor for our SOC 2 Type II audit, NIST CSF remediation roadmap, security policy library, vendor risk program, and client-facing security questionnaires.
You will work directly with the Cybersecurity Manager and a vCISO partner, collaborate with the Data Privacy legal team as a peer on overlapping policy areas, and engage regularly with portfolio company stakeholders. A dedicated internal Data Privacy legal team owns regulatory compliance - GDPR, CCPA, breach notification, and data subject rights. This role owns the technical controls layer: the evidence, the frameworks, the audit coordination, and the vendor risk program.
Join us in this full-time role, based in our Dallas Office at the Link: 2601 Olive Street, Dallas, TX. Be part of a vibrant community where amazing people, data & insights, and perpetual innovation converge to shape the future of digital commerce!
About This Role at Momentum
What You'll Do
SOC 2 & NIST CSF Program
Own the internal SOC 2 Type II evidence collection process, keeping controls audit-ready year-round. Manage the audit timeline, day-to-day liaison with the external auditor, and remediation finding closure between cycles.
Own the NIST CSF remediation roadmap: maintain the gap register, report progress to the VP and vCISO on a defined cadence, and coordinate with portfolio company IT teams to assess and close control gaps.
Build and maintain a unified controls library mapping SOC 2 Trust Services Criteria, NIST CSF subcategories, and applicable regulatory requirements.
Prepare the organization for bi-annual NIST CSF assessments, ensuring controls are documented and defensible.
Security Policy & AI Governance
Operationalize the enterprise-wide information security policy library across the corporate entity and portfolio companies. Inventory gaps against SOC 2, NIST CSF, and applicable regulations; draft, publish, and version-control policies in coordination with the vCISO.
Build and maintain annual policy attestation workflows across all employees. Bridge with the Data Privacy legal team on overlapping areas: data classification, retention, and incident notification.
Develop and maintain the AI governance framework: tool intake review, data handling risk assessment, and acceptable use policy. Evaluate AI tools proposed across the corporate entity and portfolio companies against security and compliance standards.
Own AI-related policy documentation and track emerging regulatory requirements including the EU AI Act and NIST AI RMF.
Risk Management & Vendor Risk
Build and maintain a risk register with risk-to-control mapping. Define and document formal risk tolerance and appetite in coordination with the vCISO and leadership.
Own the third-party risk management program. Define and implement a tiered due diligence model (critical, high, medium, low) and conduct recurring reviews of critical service providers.
Manage vendor risk assessments for tools under evaluation - SASE, CASB, DLP, AI governance tooling, and security platform consolidation. Coordinate with the Data Privacy legal team on vendors with material data processing obligations.
Lead operationalization of the GRC platform (OneTrust) for centralized vendor inventory, risk scoring, and lifecycle management.
Client Questionnaires & Audit Support
Manage and respond to inbound security questionnaires from portfolio company clients (SIG, CAIQ, and custom formats). Build and maintain a response library to improve turnaround time and accuracy.
Coordinate with the Cybersecurity Operations Engineer to validate technical control responses and keep answers current as the security stack evolves.
Own ITGC audit controls across identity, endpoint, cloud, and SaaS platforms. Support internal audit responses and evidence requests beyond the annual SOC 2 cycle.
BCP/DR & Security Awareness
Own BCP/DR formalization: develop a business continuity charter, coordinate Business Impact Analysis across the corporate entity and portfolio companies, define RTO/RPO for critical operations, and ensure crisis management is embedded in the IR framework.
Manage the KnowBe4 security awareness training program: campaign management, phishing simulations, completion tracking, and leadership reporting.
Manage the security testing program as the organization transitions from annual to continuous autonomous pentesting. Own vendor relationships, track findings to remediation, and produce executive-ready reporting.
Qualifications
Required
5-7 years in GRC, security compliance, risk management, or a closely related security function.
Hands-on experience owning or supporting a SOC 2 Type II audit: evidence collection, control mapping, and auditor coordination.
Solid working knowledge of NIST CSF: gap assessments, control mapping, and remediation tracking.
Demonstrated experience building or formalizing a security policy library, not just updating existing documents.
Experience managing third-party and vendor risk assessments using a tiered risk model.
Experience responding to client security questionnaires: SIG, CAIQ, or similar formats.
Clear understanding of the boundary between GRC and legal/privacy functions. Proven ability to work alongside a legal team without blurring lanes.
Strong written communication: you can translate technical controls into clear, accurate language for clients, auditors, and executives.
Disciplined project management: you own timelines, follow up without being asked, and don't let things fall through.
Active daily use of AI and automation. We operate at 100% internal AI adoption. Non-negotiable.
Preferred Technical Experience
- GRC platforms: OneTrust, Drata, Vanta, Whistic, or similar.
- Security awareness platforms: KnowBe4 or equivalent.
- ITGC working knowledge across identity (Okta), SaaS (Google Workspace), cloud (AWS, GCP, Azure), and endpoint (CrowdStrike).
- BCP/DR frameworks: BIA methodology, RTO/RPO definition, and tabletop exercise facilitation.
- AI governance frameworks: NIST AI RMF or EU AI Act.
- Familiarity with CASB, DLP, or cloud security posture tooling from a compliance and documentation standpoint.
- Private equity, holding company, or multi-entity compliance environment experience strongly preferred.
Commitment to Diversity and Inclusion at Momentum
At Momentum, our commitment to change for the better is reflected in our dedication to fostering a culture of belonging, inclusion, and diversity. We recognize diversity and inclusion as key components of our company's success and growth. Recognizing the ongoing journey ahead, we are determined to make lasting impacts through the collective efforts of our Leadership team, People & Culture team, and every employee.
Momentum is an equal opportunity employer, considering all qualified applicants regardless of characteristics protected by law. These include, but are not limited to, race, color, religion, sex, sexual orientation, gender identity, national origin, age, disability, genetic information, color, ancestry, and Veteran status. We actively seek qualified applicants from diverse backgrounds, with no consideration of criminal histories, in alignment with applicable legal requirements.
Should a reasonable accommodation be necessary for the application process and beyond, we are eager to review and provide reasonable accommodations as needed, in compliance with applicable laws.
Total Rewards
At Momentum, we prioritize the well-being of the whole individual. We are committed to supporting our people in every moment that matters on their journey with us! We are pleased to offer a comprehensive total rewards package designed to provide protection, peace of mind, and a focus on overall well-being while helping our people plan for the future.
The base salary range for this position may vary based on location. Actual compensation will be determined by role, level, and location, considering additional factors such as job-related skills, experience, and relevant education or training. For roles eligible for remote work, the base salary is tailored to the designated work location. In addition to the base salary, candidates may be eligible to receive a discretionary annual bonus, determined based on both the company's business performance and individual contributions. The People & Culture team will provide specific details during the hiring process.
We take pride in offering a comprehensive benefits package for our full-time employees, encompassing healthcare benefits, a 401(k) plan with an employer match, short-term and long-term disability coverage, life insurance, paid time off, parental leave, and various paid holidays, among other perks.
Our workplace offers opportunities for involvement in a wide range of challenging and impactful projects, across diverse industries and business models, fostering career advancement and development within our growing organization. The culture is highly collaborative and supportive, contributing to a fulfilling professional journey.
Note on Confidentiality
Any personal data collected during the application process will be treated with the utmost confidentiality and privacy.
About Momentum Learning
Sourced by ZipRecruiter
Company size
51 - 200 Employees
Headquarters location
Durham, NC, US
Year founded
2017