Jobs · Finance · New York

Security Compliance Specialist

Mistral · New York, NY · Yesterday
On-siteFinanceFull-time

About the role

As a Security Compliance Specialist, you will contribute to the development and operation of Mistral AI’s cybersecurity compliance program. You will support the implementation and maintenance of security frameworks, coordinate compliance activities across the organization, and help the company obtain and maintain the certifications required to support its growth and enterprise business.

Responsibilities

  • Contribute to the development and ongoing management of Mistral AI’s cybersecurity compliance program.
  • Support the definition, implementation, and maintenance of the Information Security Management System.
  • Coordinate cybersecurity compliance activities, including internal reviews, control assessments, and external audits.
  • Collect, review, and organize evidence from relevant stakeholders to demonstrate compliance with certification and regulatory requirements.
  • Help teams understand their responsibilities and expected contributions to compliance initiatives.
  • Develop and deliver cybersecurity compliance training and awareness materials.
  • Participate in cybersecurity risk assessments and support the monitoring of remediation actions.
  • Maintain compliance documentation, policies, procedures, control records, and audit materials.
  • Track changes in relevant cybersecurity standards and regulations and assess their potential impact on the organization.
  • Collaborate with Sales, Marketing, Legal, and other teams to identify certifications that may support customer acquisition and business development.
  • Help evaluate and prioritize new certification initiatives based on business value, customer demand, implementation effort, and cost.

Requirements

  • 5+ years of experience in cybersecurity compliance, information security governance, risk management, or a related field.
  • Experience supporting cybersecurity compliance programs, certification processes, or external audits.
  • Strong understanding of cybersecurity standards and frameworks such as ISO 27001, SOC 2, HDS, SecNumCloud, or C5.
  • Familiarity with cybersecurity regulations such as NIS2, the Cyber Resilience Act, LPM, or DORA.
  • Knowledge of requirements relating to sensitive or classified information, such as II 901 or IGI 1300, would be an advantage.
  • Strong organizational skills and attention to detail, with the ability to manage documentation and coordinate multiple stakeholders.
  • Excellent written and verbal communication skills.
  • Strong analytical and problem-solving abilities.
  • Ability to work collaboratively across technical, legal, commercial, and operational teams.
  • Professional proficiency in English; French proficiency is a plus.

Benefits

We offer a comprehensive benefits package designed to support your well-being, growth, and work-life balance. Benefits vary by country and may include healthcare coverage, parental leave, retirement plans, relocation support, wellness programs, meal and transportation allowances, and other location-specific perks.

Similar jobs