Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Security Compliance Analyst (SOC 2 Experience) - Temporary Position - Moodle image - Rise Careers
Job details

Security Compliance Analyst (SOC 2 Experience) - Temporary Position - Moodle

Moodle with us!

We're the world's most popular learning platform and we’re on a mission to empower educators to improve our world.

Find out about your new workplace...

Moodle is the world’s most trusted online learning solution. The engine of our ecosystem is Moodle LMS, the secure and customizable open source learning management platform used by over 250 million learners worldwide. Developed in conjunction with our community, Moodle LMS is complemented by an ecosystem of products including Moodle Workplace and a network of partners and services providing hosting, customizations and support. We also teach and support educators to create effective online learning experiences and share open education resources. Collectively, we empower educators to improve our world.

Moodle US, a newly formed US-based services division of Moodle Pty, provides services in learning design, implementation support, training, hosting, custom development, and support for Moodle LMS, Moodle Workplace, as well as other Moodle products.

We’ve built a passionate team of hard-working and driven people from all over the world, united by a shared belief in the ability of our platform to make a positive difference to our world. We respect our colleagues and value an open and innovative workplace, filled with integrity and of course a strong focus on education (yes, these are our company values!)

Find out more about us on our website.

What your new role can look like…

The Security Compliance Analyst main function is to work within the Information Security department to support our SOC 2 recertification process. They will serve as subject matter expert on gathering or generating evidence, and manage the process with the auditors, including communicating across departments to respond to auditor requests. Additionally, they will provide quantitative risk assessment, threat and vulnerability assessment practices as needed. The individual will maintain the company’s Risk Management Program.

This is a short-term role (expected 6-8 weeks), for maternity leave coverage. Ideal for a consultant. Future opportunities may be available based on successful work.

With the pace of Moodle, no two days will ever be the same! You will...

  • Manage the SOC 2 recertification process, working closely with our Information Security Officer and external auditors to ensure a successful outcome.
  • Lead an internal audit to proactively collect and generate necessary evidence to provide for recertification process, or at auditor's request.
  • Maintain the global cyber risk quantification program, and vendor risk management program; performing risk analysis studies to inform business strategy and maintain acceptable protection of an organization's assets as needed.
  • Manages the global incident response program, from initiation to conclusion and documentation.
  • Assesses the nature of the incident, determines what resources are needed, and coordinates all efforts to resolve the situation and restore service.
  • Routinely interface with stakeholders and leaders in support of the Information Security Officer.
  • Be solutions oriented, highly organized and self-motivated, with the ability to prioritize and achieve tight deadlines.

This position embodies and promotes the department’s mission, goals and values:

Mission:

  • To reduce the probability of material impact due to a cyber event

Goals:

  • Support: Support the company strategy and objectives
  • Protect: Protect the critical assets including reputation 
  • Comply: Comply with laws, regulations and industry standards 
  • Enable: Enhance company competitive position by securely supporting and enabling new products / services 
  • Educate: Effectively promote information security education 

Values

  • Honesty
  • Integrity
  • Accountability
  • Collaboration
  • Continuous Improvement

We’d love to hear from you, especially if you can talk to us about your:

  • Strong understanding of the SOC 2 framework, certification requirements, and auditing practices.
  • Experience with participating in SOC 2 audits, collecting evidence, and interfacing with external auditors.
  • Experience with Drata, Vanta, or another Cloud Compliance Platform.
  • Experience with security assessment practices.
  • Strong understanding of information security concepts and principles.
  • Practicing meticulous attention to detail.
  • Excellent communication and interpersonal skills.
  • Ability to work independently and as part of a team.
  • Proficiency in data analysis and reporting.

You’ll sweep us off our feet if you have:

  • Incident Response Handling
  • Cyber Vulnerability Management

What's in it for you?

We’ve already talked about the importance we place on achieving our mission to empower educators to improve our world, our passion for our values and some of the cool things we are doing as a company.

So what about this?!

  • Fully remote opportunity, working from home or wherever suits you
  • Flexible work schedule
  • Supportive, passionate, and fun team
  • Culture that fosters personal growth and development
  • This role can be set up as a contractor consulting position or a short-term employee, depending on most suitable arrangement for chosen candidate.
  • If direct employee, you will be eligible for a benefits package, including health insurance coverage, employer 401(k) contribution, paid time off, group term life, and much more. For more information, visit our Career's Page.
  • Pay range is $30-$35 per hour depending on abilities and experience

Moodle US is an Equal Opportunity Employer and prohibits discrimination and harassment of any kind: Moodle US is committed to the principle of equal employment opportunity for all employees and to providing employees with a work environment free of discrimination and harassment. All employment decisions at Moodle US are based on business needs, job requirements and individual qualifications, without regard to race, color, religion or belief, family or parental status, or any other status protected by the laws or regulations in the locations where we operate. Moodle will not tolerate discrimination or harassment based on any of these characteristics. Moodle encourages applicants of all ages.

Average salary estimate

$67600 / YEARLY (est.)
min
max
$62400K
$72800K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Security Compliance Analyst (SOC 2 Experience) - Temporary Position - Moodle, Moodle

Are you ready to make a difference with one of the most trusted names in online learning? Join Moodle as a Security Compliance Analyst (SOC 2 Experience) in this temporary position and dive into the world of information security. In this role, you'll be an integral part of our Information Security department, primarily focusing on managing our SOC 2 recertification process. Your expertise will shine as you gather evidence needed for auditors and coordinate across departments to ensure excellent communication and collaboration. Your day-to-day may also involve conducting proactive audits, maintaining our global cyber risk quantification program, and overseeing incident responses where you'll be the lead in resolving security incidents. As part of the passionate Moodle team, you will thrive in a dynamic environment where the pace is brisk, and no two days are the same. We’re looking for someone with a solid understanding of SOC 2 framework and its requirements, who can bring their experience with tools like Drata or Vanta to the table. If you enjoy working in a flexible, remote environment and are detail-oriented, organized, and self-motivated, we can’t wait to welcome you to our team. Plus, you’ll get to contribute to our mission of empowering educators worldwide—all while enjoying a culture that values honesty, integrity, and continuous improvement!

Frequently Asked Questions (FAQs) for Security Compliance Analyst (SOC 2 Experience) - Temporary Position - Moodle Role at Moodle
What are the responsibilities of a Security Compliance Analyst at Moodle?

As a Security Compliance Analyst at Moodle, your primary responsibilities include managing the SOC 2 recertification process, leading internal audits to gather and generate necessary evidence, and maintaining the Risk Management Program. You'll also assess incidents and coordinate resources for incident resolution, ensuring compliance with industry standards and protecting organizational assets.

Join Rise to see the full answer
What experience is required for the Security Compliance Analyst position at Moodle?

The ideal candidate for the Security Compliance Analyst position at Moodle should have a strong understanding of the SOC 2 framework, experience in participating in SOC 2 audits, and familiarity with cloud compliance platforms like Drata or Vanta. Additional experience in security assessment practices and a solid grasp of information security concepts are crucial.

Join Rise to see the full answer
How long is the temporary Security Compliance Analyst role at Moodle?

This temporary position for a Security Compliance Analyst at Moodle is expected to last for about 6 to 8 weeks, aimed primarily at covering for maternity leave. This role is great for consultants looking for short-term opportunities.

Join Rise to see the full answer
What is the work environment like for a Security Compliance Analyst at Moodle?

At Moodle, the work environment for a Security Compliance Analyst is fully remote, giving you the flexibility to work from home or wherever suits you best. The culture is supportive and emphasizes personal growth and development, making it a fantastic opportunity for career advancement.

Join Rise to see the full answer
What qualities make a successful Security Compliance Analyst at Moodle?

A successful Security Compliance Analyst at Moodle embodies qualities such as meticulous attention to detail, excellent communication and interpersonal skills, as well as the ability to work independently and as part of a team. Being solutions-oriented and organized is also key to thriving in this fast-paced role.

Join Rise to see the full answer
Common Interview Questions for Security Compliance Analyst (SOC 2 Experience) - Temporary Position - Moodle
Can you explain the SOC 2 framework and its importance?

The SOC 2 framework is a set of criteria for managing customer data based on five trust service principles: security, availability, processing integrity, confidentiality, and privacy. It’s crucial because it assures clients and partners that your organization is securely managing their data, which is particularly important for companies like Moodle that prioritize education and trust.

Join Rise to see the full answer
What methods do you use to collect evidence for SOC 2 audits?

To collect evidence for SOC 2 audits, I typically leverage a combination of automated tools for data collection and manual processes for qualitative evidence. Maintaining detailed records and implementing thorough internal audits allows me to ensure readiness for auditor requests effectively.

Join Rise to see the full answer
How do you assess risks in an organization?

I assess risks using a structured approach that includes conducting threat assessments, vulnerability evaluations, and quantitative risk assessments. By analyzing potential impacts and likelihoods, I’m able to prioritize risks and assist in informing the business strategy.

Join Rise to see the full answer
Can you describe your experience with incident response handling?

In my previous roles, I managed the entire incident response process, which involved assessing the nature of incidents, coordinating necessary resources, and ensuring that incidents are resolved efficiently. Detailed documentation was key to informing future strategies and improving responsiveness.

Join Rise to see the full answer
How familiar are you with compliance platforms like Drata or Vanta?

I have extensive experience using compliance platforms like Drata for streamlining the SOC 2 compliance process. These tools assist in gathering evidence, automating workflows, and simplifying communication with auditors, making the entire process much more efficient.

Join Rise to see the full answer
What strategies do you implement to maintain data security?

To maintain data security, I focus on implementing robust access controls, performing regular security assessments, and fostering a culture of security awareness among employees. Proactive monitoring and continuous improvement based on feedback are also essential strategies.

Join Rise to see the full answer
How do you prioritize tasks when working under tight deadlines?

When working under tight deadlines, I prioritize tasks based on urgency and importance, often using project management tools to track progress. It’s crucial to remain organized and communicate effectively with team members to ensure an efficient workflow.

Join Rise to see the full answer
Can you give an example of a challenging security issue you've resolved?

One challenging security issue I resolved involved a data breach incident where I had to quickly assemble a response team, assess the impact, and communicate effectively with stakeholders. My quick actions led to a timely resolution that minimized data loss and restored normal operations.

Join Rise to see the full answer
What do you believe is the most important aspect of the Security Compliance Analyst role?

The most important aspect of the Security Compliance Analyst role is the ability to effectively communicate and collaborate across departments. Building strong relationships with stakeholders ensures that security measures are understood and followed, ultimately protecting the organization’s assets.

Join Rise to see the full answer
How do you stay updated with the latest trends in information security?

I stay updated on the latest trends in information security by following industry-leading blogs, participating in webinars, and attending professional conferences. Networking with other professionals in the field also provides valuable insights into emerging security challenges and solutions.

Join Rise to see the full answer
Similar Jobs
Photo of the Rise User
nextRoles Remote No location specified
Posted 6 days ago
Posted 7 days ago
Posted 6 days ago
Photo of the Rise User
Posted 4 days ago
Photo of the Rise User
Uni Systems Remote No location specified
Posted 11 days ago

Founded in 2001 and headquartered in Perth, Australia, Moodle is an open source learning platform, allowing educators to create a private space online filled with tools for collaborative learning for K-12, higher education and workplaces.

7 jobs
MATCH
Calculating your matching score...
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
EMPLOYMENT TYPE
Contract, remote
DATE POSTED
January 8, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!