As a Senior Security and Compliance Analyst, you will manage security policies, conduct compliance reviews, and address customer security inquiries.
About the Team
SalesLoft’s infosec team comprises seasoned and up-and-coming infosec professionals who are all aligned on one vision and mission:
Vision: Every seller is loved by the buyers they serve (#saleslove)
Mission: Equip companies to maximize revenue by creating a fantastic buying experience.
The security team consists of security professionals who maintain controls that protect the business in keeping with industry best practices and relevant regulations and frameworks. They are also the epitome of our core values - Customers First. Team Over Self. Focus on Results. Bias Towards Action. Glass Half Full.
About the Role
As a Senior Security and Compliance Analyst at SalesLoft, you will play a pivotal role in our company's success. Join our high-performing information security team and be the go-to expert for all customer-facing security and compliance matters.
Your primary focus will be to serve and build trust with Salesloft customers by addressing security, privacy, and compliance concerns as they arise
This is a fully remote opportunity and can be worked from any location in Mexico. Candidates must be based in Mexico and be able to travel to the office in Jalisco as needed.
Responsibilities
- Maintain and evolve policies that hold employees accountable to security and privacy best practices, while remaining practical and aligned with Salesloft’s systems and control environment
- Conduct third party risk management activities that evaluate the security posture and controls of third party providers, including the implementation and ongoing use of third-party systems
- Conduct security, privacy and compliance reviews as part of the software development lifecycle for the Salesloft platform
- Work with business stakeholders to ensure security and privacy requirements are adequately considered as part of the development and delivery methodology
- Liaise with third party auditors and internal control owners to ensure the successful completion of attestation and compliance engagements
- Support the automation of cybersecurity risk management programs and reporting capabilities to measure and demonstrate control operational effectiveness
- Work with various departmental control owners to identify, assess, and treat security and privacy risks
- Respond to customer security and compliance inquiries, including customer security and privacy questionnaires, compliance attestations, and discussions on product functionality and its impact on customer environments
- Maintenance of the public facing Salesloft trust portal
- Participate in meetings with customer security, privacy, legal, and IT teams to address detailed security and compliance questions related to the Salesloft platform and security program
- Create and maintain customer-facing materials that streamline the security evaluation process and proactively address common customer concerns
- Ensure Salesloft’s security awareness training program communicates relevant content that results in meaningful learning across the employee base
- Support the responsible adoption of AI by enabling GRC automation and partnering with business teams on AI-driven initiatives, while establishing and maintaining appropriate AI governance, risk controls, and compliance guardrails
Qualifications
- 5+ years of experience auditing and/or maintaining information security controls
- Experience engaging directly with customers as a security subject matter expert
- Working knowledge of ISO 27001, SOC 2 Trust Services Principles, GDPR and other common security standards
- Experience with "defense-in-depth" principles and technology
- Strong attention to detail and commitment to quality
- Self-driven, autonomous and can contribute to the strategy and roadmap of the team
- Advanced documentation, prioritization and change management skills
- CISA or similar certification
#BI-Remote #LI-Remote
Top Skills
Gdpr
Iso 27001
Soc 2
What you need to know about the Charlotte Tech Scene
Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.
Key Facts About Charlotte Tech
- Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
- Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
- Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
- Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
- Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

