Security Analyst
WFA Digital Insight
As remote work expands, demand for skilled security professionals is on the rise, with a 25% increase in job postings in 2025 alone. The Security Analyst role at Lucidya stands out for its focus on AI governance and compliance. With the company's international growth, candidates with experience in GRC, security engineering, and global compliance efforts will be highly competitive. Before applying, consider how your skills align with Lucidya's mission to empower enterprises through AI-native Customer Experience Intelligence
Job Description
About the Role
The Security Analyst position at Lucidya is a critical component of the company's expansion strategy, focusing on maintaining strong security controls and achieving global compliance certifications. As a key member of the security organization, you will bridge GRC, security engineering, and global compliance efforts, ensuring Lucidya meets the highest standards of data protection and information security. Your day-to-day responsibilities will involve working closely with cross-functional teams, including GRC and Security Engineering, to support compliance initiatives and strengthen internal controls.Lucidya's growth into international markets, including Saudi Arabia and the U.S., necessitates a deep understanding of regional data protection compliance activities. The successful candidate will be adept at navigating the complexities of global compliance frameworks, including ISO/IEC 27001 and ISO/IEC 42001. The role requires a strong foundation in Excel and the ability to implement and maintain security controls, ensuring alignment with SOC 2, NIST frameworks, and U.S. data privacy requirements.
Given the company's AI-native Customer Experience Intelligence platform, experience working with AI management systems and a solid grasp of AI governance will be highly valued. The ideal candidate will have a strong background in security, compliance, and risk management, with a proven track record of supporting security, privacy, and compliance initiatives across international regions.
What You Will Do
- Support the implementation and ongoing maintenance of ISO/IEC 27001, ISO/IEC 42001, NCA, and SOC 2 controls
- Work closely with GRC and Security Engineering teams to support security, privacy, and compliance initiatives across Saudi Arabia, Qatar, international regions, and the U.S. market
- Assist in the creation, update, and maintenance of security, privacy, and AI governance policies, procedures, and control documentation
- Help with document control, evidence collection, and audit readiness for internal reviews, customer assessments, and external audits
- Participate in regional data protection compliance activities, including KSA PDPL, Qatar PDPL, and U.S. states privacy laws
- Support daily security, privacy, and compliance activities across KSA, MEA, and the U.S.
- Maintain and update controls for ISO/IEC 27001, ISO/IEC 42001, NCA, DCC, NIST
- Align systems and processes with U.S. & Saudi market requirements, including SOC 2 evidence, NIST-aligned controls, and U.S. & Saudi data privacy obligations
- Review security controls for cloud infrastructure, SaaS environments, APIs, and integrations
- Track compliance tasks, findings, and remediation actions in coordination with GRC and Security Engineering teams
What We Are Looking For
- 2-4 years of experience in a similar Security Analyst / GRC role
- Experience working with US-based SaaS companies
- Strong understanding of security, compliance, and risk management
- Experience with Excel and the ability to implement and maintain security controls
- Knowledge of global compliance frameworks, including ISO/IEC 27001 and ISO/IEC 42001
- Solid grasp of AI governance and AI management systems
- Ability to work cross-functionally with engineering, product, and operations teams
- Experience with security, privacy, and compliance initiatives across international regions
Nice to Have
- Experience with cloud security, specifically AWS or Azure
- Familiarity with NIST Cybersecurity Framework and NIST AI Risk Management Framework
- Knowledge of U.S. data privacy laws, including CCPA and GDPR
- Certification in security or compliance, such as CISM or CISA
- Experience with security information and event management (SIEM) systems
Benefits and Perks
- Competitive salary
- Opportunity to work with a leading AI-native Customer Experience Intelligence platform
- Collaborative and dynamic work environment
- Professional development and growth opportunities
- Flexible remote work arrangements
- Access to cutting-edge technology and tools
- Comprehensive benefits package, including health insurance and retirement plans
- Generous paid time off and holidays
- Remote work stipend and home office setup support
How to Stand Out
- Develop a deep understanding of global compliance frameworks, including ISO/IEC 27001 and ISO/IEC 42001, to stand out as a candidate.
- Highlight your experience working with Excel and implementing security controls in your application.
- Showcase your knowledge of AI governance and AI management systems, as these skills are highly valued in this role.
- Be prepared to discuss your experience working with cross-functional teams, including GRC and Security Engineering.
- Consider obtaining certifications in security or compliance, such as CISM or CISA, to demonstrate your expertise.
- Research Lucidya's AI-native Customer Experience Intelligence platform and be prepared to discuss how your skills align with the company's mission.
- Emphasize your ability to work in a fast-paced, dynamic environment and your experience with cloud security, specifically AWS or Azure, if applicable.
This is a remote position listed on WFA Digital, the platform for professionals who work from anywhere. Browse more remote jobs across all categories.