This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
As a Compliance Analyst, you will play an important role in supporting Teradata's security compliance programs across our global cloud offerings, including our federal cloud environment. You'll help maintain key certifications and authorizations (FedRAMP Moderate, CMMC, ISO/IEC 27001, SOC 1/2, PCI DSS, HITRUST, and others), helping our commercial customers and federal stakeholders meet their security and regulatory obligations with confidence.
Job Responsibility
Support day-to-day operations of Teradata's FedRAMP Moderate authorization, including continuous monitoring (ConMon) deliverables, POA&M management and remediation tracking, significant change documentation, and 3PAO annual assessment support
Assist with Teradata's CMMC compliance activities, including evidence collection and control mapping aligned to NIST SP 800-171
Gather, organize, and provide evidence of Teradata's security controls to support internal and external audits and certification activities
Coordinate with internal stakeholders to support compliance initiatives across the broader framework portfolio, including ISO 27001, SOC 2 Type 2, PCI DSS, HIPAA, and HITRUST
Respond to customer and prospect security requests, including security documentation packages, questionnaires, and audit support
Develop and maintain compliance metrics to track program health and support continuous improvement reporting
Requirements
Must be a U.S. person located in the United States
A bachelor's degree in Information Security, Information Systems, or a related field, or equivalent experience, plus 1 to 3 years of experience in security, compliance, IT audit, or a related role
Foundational knowledge of security and privacy frameworks like ISO 27001, ISO 42001, SOC 1/2, HITRUST, and PCI DSS
Familiarity with FedRAMP (NIST SP 800-53), CMMC, and NIST SP 800-171 is strongly preferred
Experience supporting audits, risk assessments, or evidence collection activities
Strong organizational skills and the ability to manage multiple priorities in a deadline-driven environment
Effective communication skills, with the ability to work collaboratively across technical and non-technical teams
A working understanding of cloud security concepts and controls across environments such as AWS, Microsoft Azure, or Google Cloud Platform (GCP)
Familiarity with technologies and controls spanning hosts, databases, networking, and applications
Exposure to federal compliance artifacts and activities (SSP, SAR, POA&M, ConMon reporting) is a strong plus
Exposure to customer trust activities such as responding to security questionnaires (e.g., CAIQ, SIG) or supporting RFP processes
A general awareness of AI governance principles and emerging frameworks such as ISO 42001
A general understanding of global data protection and privacy requirements
Nice to have
Candidates located in or near San Diego, CA are preferred
Relevant certifications (e.g., CompTIA Security+, CISA, CCSK, or FedRAMP-focused credentials)