
Senior Security Assurance Analyst
Airbnb
full-time
Posted on:
Location Type: Remote
Location: United States
Visit company websiteExplore more
Salary
💰 $177,000 - $208,000 per year
Job Level
Tech Stack
About the role
- Participate in building a comprehensive compliance program, ensuring Airbnb meets requirements for compliance frameworks such as PCI.
- Address security posture-related questionnaires to support ongoing compliance initiatives.
- Collaborate with external and internal auditors to assist with the Test of Design and Test of Effectiveness processes.
- Collaborate with stakeholders to understand operational needs and deliver realistic, risk-based recommendations for remediation.
- Monitor remediation activities and build metrics and reports on testing/remediation results
Requirements
- 6+ Years of hands-on experience in Information Security Assurance, Governance, Risk and Compliance
- Deep understanding and working experience of regulatory frameworks (PCI DSS, SOX, DORA, DFS 500)
- Strong understanding of security foundations to be able to effectively respond to partner security posture questionnaires
- Skilled in developing and implementing security controls and InfoSec policies
- Experience with risk-based approach in evaluating security weaknesses
- Experienced in streamlining compliance processes, automating manual workflows, and managing audit readiness
- Strong understanding of cybersecurity frameworks and standards (e.g., NIST, ISO 27001, SOC 2, PCI DSS).
- Ability to work independently and collaborate with cross-functional teams, executive management, and external stakeholders
- Experience with AWS, Github, Asana and Microservices preferred.
- Bachelor’s degree in Computer Science, Information Systems or related degree, Master’s degree preferred.
Benefits
- This role may also be eligible for bonus, equity, benefits, and Employee Travel Credits.
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
Information Security AssuranceGovernanceRisk and Complianceregulatory frameworkssecurity controlsInfoSec policiesrisk-based evaluationcybersecurity frameworksNISTISO 27001
Soft Skills
collaborationindependencecommunicationstakeholder engagementproblem-solvinganalytical thinkingreportingmetrics developmentremediation recommendationsaudit readiness