1

Soc 2 Analyst Jobs (NOW HIRING)

ABOUT THIS POSITION The Compliance Analyst II plays a key role in supporting and coordinating ... Coordinate and manage assigned compliance assessments and audits, including HITRUST, PCI DSS, SOC ...

ABOUT THIS POSITION The Compliance Analyst II plays a key role in supporting and coordinating ... Coordinate and manage assigned compliance assessments and audits, including HITRUST, PCI DSS, SOC ...

Tier 1 SOC Analyst

Seaside, CA · On-site

$78K - $105K/yr

Coordinate with Tier 2 analysts and other cybersecurity stakeholders to support timely investigation and response in the 24x7 SOC environment. Minimum Qualifications * Business Analyst I requires a ...

Tier 1 SOC Analyst

Alexandria, VA · On-site

$78K - $105K/yr

Coordinate with Tier 2 analysts and other cybersecurity stakeholders to support timely investigation and response in the 24x7 SOC environment. Minimum Qualifications * Business Analyst I requires a ...

Tier 1 SOC Analyst

Alexandria, VA · On-site

$78K - $105K/yr

Coordinate with Tier 2 analysts and other cybersecurity stakeholders to support timely investigation and response in the 24x7 SOC environment. Minimum Qualifications * Business Analyst I requires a ...

Evaluate vendor controls, documentation, and compliance certifications (SOC 2, ISO, GDPR, etc.). * Analyze shared responsibility models and identify security gaps. * Review controls across IAM ...

Level 2 SOC Analyst Location: Remote Job Type: Contract Job Overview Our client is seeking an experienced Level 2 SOC Analyst to serve as the primary escalation point for Level 1 SOC analysts. The ...

CSOC CIR Tier II Analyst

Hines, IL · On-site

$79 - $110/hr

... SOC). Description PingWind is seeking a Cyber Incident Response Tier II Analyst to support our VA ... customer at Hines, IL; Martinsburg, WV; or Austin, TX. Certifications Must currently have or be ...

Tier 1 SOC Analyst

Alexandria, VA · On-site

$78 - $105/hr

Coordinate with Tier 2 analysts and other cybersecurity stakeholders to support timely investigation and response in the 24x7 SOC environment. Minimum Qualifications * Business Analyst I requires a ...

... SOC) Description PingWind is seeking a Cyber Incident Response Tier II Analyst to support our VA customer at Hines, IL Martinsburg, WV, or Austin, TX. Certifications: Must currently have or be ...

SOC Analyst II

Monterey, CA · On-site

$39 - $44/hr

As the SOC Analyst II, you will provide tier II cybersecurity support in a Security Operations Center "SOC" environment. Daily responsibilities of the SOC are ever changing, however, you can expect ...

Generous PTO policy (15 vacation, 5 sick, 2 personal days, 11 holidays) * We support your growth ... SOC Analyst Tier 3 and Incident Responder , a senior analyst role in the SOC. This role leads the ...

Showing results 21-40

Soc 2 Analyst information

See salary details

$32K

$84.2K

$133.5K

How much do soc 2 analyst jobs pay per year?

As of Aug 22, 2026, the average yearly pay for soc 2 analyst in the United States is $84,207.00, according to ZipRecruiter salary data. Most workers in this role earn between $65,000.00 and $98,500.00 per year, depending on experience, location, and employer.

What is a SOC 2 analyst?

A SOC 2 Analyst is a professional who specializes in helping organizations achieve and maintain SOC 2 compliance, which is a widely recognized standard for managing customer data based on five trust service criteria: security, availability, processing integrity, confidentiality, and privacy. They assess internal controls, identify potential risks, and ensure that processes meet the requirements for a SOC 2 audit. SOC 2 Analysts also assist with preparing documentation, conducting risk assessments, and working with auditors to address any gaps or findings. Their work is essential for companies that handle sensitive client data and need to demonstrate trustworthiness to clients and partners.

What are the key skills and qualifications needed to thrive as a SOC 2 analyst?

To thrive as a SOC 2 Analyst, you need a solid understanding of information security principles, risk assessment methodologies, and relevant compliance frameworks, usually supported by a degree in information security or a related field. Familiarity with audit tools, governance, risk, and compliance (GRC) platforms, and certifications such as CISA or CISSP are commonly required. Attention to detail, analytical thinking, and strong communication skills help SOC 2 Analysts effectively interpret controls and coordinate with stakeholders. These competencies are crucial for ensuring organizations meet SOC 2 requirements and maintain trust with clients and regulatory bodies.

What are some common challenges faced by SOC 2 analysts when preparing for an audit?

SOC 2 Analysts often encounter challenges such as ensuring all relevant security controls are properly documented and consistently followed across departments. Coordinating with various teams to gather evidence and remediate gaps within tight deadlines can also be demanding. Additionally, staying updated on evolving compliance requirements and translating technical controls into auditor-friendly documentation requires strong communication and organizational skills. Proactively addressing these challenges helps ensure a smoother audit process and ongoing compliance.

What is the difference between Soc 2 Analyst vs Security Analyst?

AspectSoc 2 AnalystSecurity Analyst
CertificationsSOC 2, CISSP, CISACISSP, Security+, CEH
Work EnvironmentAuditing, compliance, risk assessmentThreat detection, incident response, security monitoring
Industry UsageIT service providers, SaaS companiesAny organization with cybersecurity needs

While both roles focus on security, a Soc 2 Analyst primarily ensures compliance with SOC 2 standards through audits and assessments, whereas a Security Analyst concentrates on protecting systems from threats and managing security incidents. The Soc 2 Analyst's work is more compliance and audit-oriented, often within service providers, while Security Analysts work across various industries to safeguard digital assets.

Is a SOC 2 analyst still in demand?

Yes, SOC 2 analysts are in demand due to increasing cybersecurity and data privacy concerns. Organizations seek professionals with expertise in security frameworks, compliance standards, and audit processes to ensure their systems meet SOC 2 requirements.
More about Soc 2 Analyst jobs

What are the most commonly searched types of Soc 2 Analyst jobs?

The most popular types of Soc 2 Analyst jobs are:

Infographic showing various Soc 2 Analyst job openings in the United States as of August 2026, with employment types broken down into 75% Full Time, 20% Contract, and 5% Nights. Highlights an 85% In-person, 5% Hybrid, and 10% Remote job distribution, with an average salary of $84,207 per year, or $40.5 per hour.

Compliance Analyst II

Crew Career Center

Louisville, KY • On-site

Full-time

Medical, Retirement, PTO

Re-posted 6 days ago


Job description

ABOUT THIS POSITION

The Compliance Analyst II plays a key role in supporting and coordinating Waystar's information technology compliance and assurance programs. This position is responsible for managing day-to-day activities related to regulatory and industry assessments, including HITRUST, PCI DSS, SOC 2 / 3 + HIPAA, and TX-RAMP. The Compliance Analyst II serves as a primary liaison between internal stakeholders and external auditors, helping ensure successful completion of assessments and maintaining audit readiness throughout the year.
This role requires strong organizational skills, attention to detail, project management capabilities, and the ability to work effectively with technical and non-technical teams across the organization. The Compliance Analyst II is expected to independently manage assigned assessments from planning through completion while supporting broader compliance initiatives as directed by the Manager, IT Compliance.

WHAT YOU'LL DO

Compliance Assessment Management

  • Coordinate and manage assigned compliance assessments and audits, including HITRUST, PCI DSS, SOC 2 / 3 + HIPAA, and TX-RAMP.
  • Develop and maintain assessment project plans, timelines, request trackers, and status reporting.
  • Facilitate audit planning activities, kick-off meetings, stakeholder interviews, walkthroughs, and evidence collection efforts.
  • Assign audit requests to appropriate control owners and monitor progress through completion.
  • Serve as a primary point of contact for internal teams and external auditors during assessments.
  • Maintain ongoing communication with stakeholders regarding audit requirements, deadlines, risks, and remediation efforts.
  • Monitor assessment status and escalate issues or delays when necessary.

Audit Readiness & Documentation

  • Maintain an audit-ready compliance posture by collecting, organizing, and maintaining evidence throughout the year.
  • Develop, review, and update compliance documentation, procedures, narratives, inventories, and process flows.
  • Assist with the development and maintenance of policies, standards, and supporting compliance documentation.
  • Support continuous monitoring activities designed to maintain compliance with organizational and regulatory requirements.

Cross-Functional Collaboration

  • Partner with Information Security, Infrastructure, Engineering, Product Development, Legal, Privacy, Human Resources, Procurement, and other business units to support compliance initiatives.
  • Facilitate meetings and communications between internal stakeholders and external assessors.
  • Assist process owners in understanding audit requirements and evidence expectations.
  • Support remediation efforts by tracking corrective actions and validating completion of assigned tasks.

\Compliance Operations

  • Manage and respond to requests submitted through the Compliance team inbox.
  • Track and maintain compliance metrics, assessment schedules, documentation inventories, and ongoing compliance activities.
  • Support responses to customer and regulatory inquiries related to compliance certifications and attestations.
  • Participate in internal process improvement initiatives that increase efficiency and strengthen compliance programs.

WHAT YOU'LL NEED

  • Stay current on emerging regulatory requirements, industry frameworks, and compliance best practices.
  • Contribute to special projects and strategic initiatives assigned by the Manager, IT Compliance.
  • Perform other duties as assigned.

Minimum Qualifications

  • Bachelor's degree in Information Systems, Cybersecurity, Business, Risk Management, Compliance, Accounting, or a related field; or equivalent combination of education and experience.
  • 2+ years of experience in information technology compliance, audit, risk management, cybersecurity, or a related discipline.
  • Experience supporting one or more compliance frameworks including HITRUST, PCI DSS, SOC 2 / 3, HIPAA, TX-RAMP, NIST, or similar regulatory frameworks.
  • Experience coordinating audits and working directly with external assessors or auditors.
  • Experience managing multiple concurrent projects and competing priorities.

Preferred Qualifications

  • Experience managing compliance assessments from planning through final reporting.
  • Knowledge of healthcare regulatory requirements and HIPAA security and privacy requirements.
  • Experience using Governance, Risk, and Compliance (GRC) platforms or audit management tools.
  • Familiarity with cloud environments, information security controls, and third-party risk management.
  • Relevant certifications such as:
    • HITRUST CCSFP
    • CISA
    • CRISC
    • CISSP
    • CIPP/US
    • PCI ISA

ABOUT WAYSTAR

Through a smart platform and better experience, Waystar helps providers simplify healthcare payments and yield powerful results throughout the complete revenue cycle.

Waystar's healthcare payments platform combines innovative, cloud-based technology, robust data, and unparalleled client support to streamline workflows and improve financials so providers can focus on what matters most: their patients and communities. Waystar is trusted by 1M+ providers, 1K+ hospitals and health systems, and is connected to over 5K commercial and Medicaid/Medicare payers. We are deeply committed to living out our organizational values: honesty; kindness; passion; curiosity; fanatical focus; best work, always; making it happen; and joyful,optimistic & fun.

Waystar products have won multiple Best in KLAS or Category Leader awards since 2010 and earned multiple #1 rankings from Black Book surveys since 2012. The Waystar platform supports more than 500,000 providers, 1,000 health systems and hospitals, and 5,000 payers and health plans. For more information, visit waystar.comor follow @Waystaron Twitter.

WAYSTAR PERKS

  • Competitive total rewards (base salary + bonus, if applicable)
  • Customizable benefits package (3 medical plans with Health Saving Account company match)
  • We offer generous paid time off for our non-exempt team members, starting with 3 weeks +13 paid holidays, including 2 personal floating holidays. We also offer flexible time off for our exempt team members + 13 paid holidays
  • Paid parental leave (including maternity + paternity leave)
  • Education assistance opportunities and free LinkedIn Learning access
  • Free mental health and family planning programs, including adoption assistance and fertility support
  • 401(K) program with company match
  • Pet insurance
  • Employee resource groups

Waystar is proud to be an equal opportunity workplace. We celebrate, value, and support diversity and inclusion. Qualified applicants will receive consideration for employment without regard to race, color, religion, age, sex, national origin, disability status, genetics, marital status, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws.

This applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training.