SlipstreamJobsFresh Startup & VC-Backed Jobs

Audit & Compliance Analyst

Candescent - Atlanta, GA, United States - Hybrid

Apply on the company site

SlipstreamJobs tracks this role from the company's public career site. Apply directly on the employer's site.

Candescent is a fintech company building intelligent banking solutions for financial institutions, combining digital banking, account opening, and branch solutions across digital, remote, and in-person channels. The Audit & Compliance Analyst will support the execution of the company's audit and compliance programs, serving as a key coordinator between control owners, auditors, information security teams, and business stakeholders. Key responsibilities include coordinating annual SOC 2 Type II and PCI DSS audits and assessments; collecting, organizing, and maintaining audit evidence and supporting documentation; partnering with control owners to validate control design and operating effectiveness; tracking audit findings, risk items, corrective actions, and remediation activities through closure; assisting with customer security assessments, due diligence requests, and compliance questionnaires; supporting regulatory examinations and internal compliance reviews; monitoring compliance activities against PCI DSS, FFIEC guidance, GLBA, and related industry standards; developing audit status reports, compliance metrics, and management reporting; participating in control readiness reviews and continuous compliance improvement initiatives; maintaining compliance repositories and audit workpapers; and collaborating with Information Security, Technology, Product, Legal, and Operations teams. The ideal candidate has 3–7 years of experience in audit, compliance, information security, risk management, or governance functions, with demonstrated expertise in SOC 2 Type II and PCI DSS compliance programs. A bachelor's degree in Information Systems, Cybersecurity, Business, Accounting, Finance, or a related field is required. Strong organizational skills, the ability to manage multiple concurrent audits and compliance initiatives, and excellent written and verbal communication skills are essential. Banking and financial services regulatory knowledge and understanding of control testing, evidence collection, and audit readiness processes are required. Preferred qualifications include experience in a banking, fintech, or financial technology organization; professional certifications such as CISA, PCI ISA, CRISC, CISM, or CIA; experience supporting customer-facing compliance and assurance activities; and familiarity with control frameworks such as FFIEC, NIST CSF, SOC 2 Trust Services Criteria, and PCI DSS. This hybrid role is based in Atlanta and offers the opportunity to play a key role in building trust with customers, auditors, and regulators while ensuring the security, compliance, and resilience of products and services powering financial institutions.

Similar roles