Snowflake
Snowflake
Snowflake oferă o platformă de date bazată pe cloud pentru stocarea, procesarea și analizarea informațiilor la scară largă. Arhitectura sa centralizată ajută companiile să reunească datele, să ruleze eficient interogări complexe și să susțină diverse sarcini de lucru pe măsură ce nevoile lor evoluează. Platforma companiei este relevantă pentru profesioniștii din domenii precum cloud computing, date, analiză, consultanță și tehnologie de marketing, iar oportunitățile sunt modelate de echipele care construiesc și susțin infrastructura modernă de date.

Senior Customer Trust Compliance Analyst at Snowflake

Lead customer trust assessments, vendor risk reviews, and compliance responses at Snowflake. Advise customers, regulators, sales teams, and internal stakeholders on security controls and compliance obligations.

Descriere

  • Manage the complete lifecycle of customer-facing and third-party assessments, including scope definition, project planning, and delivery for moderately to highly complex initiatives.
  • Collaborate with IT, Business, Procurement, Security, Compliance, and leadership teams to deliver vendor and customer projects.
  • Answer customer due diligence questionnaires and audit requests concerning Snowflake’s security and compliance obligations.
  • Develop deep expertise in Snowflake’s control environment, security capabilities, and customer deployment practices.
  • Advise customers and regulators on Snowflake’s security, compliance obligations, and supporting documentation.
  • Participate in sales discussions to explain Snowflake’s security and compliance capabilities.
  • Assess the security risks of new and existing vendors against contractual, regulatory, and industry requirements.
  • Work with Legal and Procurement to incorporate security requirements into vendor contracts and security agreements.
  • Strengthen the third-party risk management program by improving vendor tiering, simplifying intake, and reducing assessment turnaround times.
  • Track emerging threats in the vendor risk landscape and proactively reassess impacted vendors.
  • Support customer and regulator questions about third-party risk management during broader audit engagements.

Cerințe

  • At least five years of technical audit or compliance experience involving programs such as SOC 2, ISO certifications, PCI DSS, C5, Cyber Essentials Plus, or ISAE 3402-based IT audits is preferred.
  • Experience in vendor risk management, third-party risk, procurement security, or a related governance, risk, and compliance function.
  • Detailed knowledge of IT control design and effectiveness evaluation, evidence collection, and collaboration with auditors and regulators.
  • Ability to manage a substantial volume of concurrent vendor assessments while maintaining consistent turnaround times.
  • Excellent written and verbal communication skills, including the ability to explain compliance concepts to technical and non-technical audiences.
  • Experience applying AI to automate or streamline manual compliance processes.
  • CISSP, CRISC, CISA, or another GRC or security certification is a plus.
  • Experience with third-party risk management or GRC platforms such as OneTrust, ServiceNow, Prevalent, or Vanta is a plus.
  • Experience managing subprocessors and vendor data privacy obligations, including GDPR and CCPA, is a plus.
  • Experience with vendor requirements in regulated industries, including PCI DSS, HIPAA, or FedRAMP supply-chain provisions, is a plus.

Locuri de muncă similare

Thermo Fisher Scientific

Senior Clarity PPM Systems Developer

Thermo Fisher Scientific

Lead development and support for Thermo Fisher Scientific’s Clarity PPM platform, including integrations, upgrades, and production releases. Provide advanced troubleshooting, technical governance, mentoring, and SOX-compliant operations.

Deschide