Federal Security & Compliance Analyst II
CLEAR · New York, NY · 2 wk ago
On-siteLegal$119k–$140k/yrFull-time
About the role
The Federal Security & Compliance Analyst II supports the security and compliance of CLEAR's federal products and services. This role partners with Engineering, Product, Infrastructure, and Security teams to maintain compliance with federal cybersecurity requirements and ensure CLEAR meets evolving government security standards.
Responsibilities
- Support the ongoing security and compliance of federal products and services through continuous monitoring and governance activities
- Develop and maintain security documentation, including System Security Plans (SSPs), Plans of Action & Milestones (POA&Ms), policies, procedures, risk assessments, and supporting artifacts
- Track security findings through remediation and validate evidence supporting closure
- Partner with cross-functional teams to implement and maintain NIST SP 800-53 security controls
- Review application code, infrastructure configurations, and system architectures to identify security risks and recommend secure solutions
- Communicate security and compliance requirements to technical and non-technical stakeholders
- Identify opportunities to improve security governance and compliance processes
Requirements
- 4+ years of experience in cybersecurity, governance, risk, compliance, or information assurance
- 2+ years of experience developing technical security documentation, including System Security Plans (SSPs), policies, procedures, risk assessments, and audit artifacts
- 2+ years of experience working with federal cybersecurity frameworks such as NIST SP 800-53, RMF, FedRAMP, or FISMA
- Excellent code review skills and the ability to review application code, infrastructure configurations, and system architectures to identify security risks and recommend secure solutions
- Experience supporting federal security compliance programs and continuous monitoring activities
- Exceptional analytical, organizational, project management, and written communication skills
- Effective communicator who can explain security concepts to technical and non-technical audiences and collaborate effectively across teams
Qualifications
- Security+, CAP, CISA, CISM, or CISSP certifications are a plus
Skills
- Strong cross-functional partnerships with Engineering and Security teams, enabling timely issue resolution and compliance execution
Benefits
At CLEAR, we provide a comprehensive benefits package that includes:
- Comprehensive healthcare plans
- Fertility and adoption/surrogacy support
- Flexible time off
- An annual wellness stipend
- Free OneMedical memberships for you and your dependents
- A CLEAR Plus membership
- A 401(k) retirement plan with employer match
Pay
The base salary range for this role is $119,000 - $140,000, depending on levels of skills and experience.
Schedule
Our schedule is flexible to accommodate your needs.