Security Compliance & Regulatory Affairs Analyst

1 hour, 54 minutes ago
Full-time
Senior
Cybersecurity
Twilio

Twilio

Twilio is a cloud communication company that offers Communication APIs for SMS, Voice, Video, and Authentication, empowering developers to embed communication capabilities into their software applications globally.

Diversified Telecommunication Services
5K-10K
Founded 2008

Description

  • Support the SCRA Lead in executing Twilio’s global security regulatory strategy, including program design, prioritization, and long-term regulatory planning.
  • Independently interpret complex and ambiguous regulatory frameworks and produce structured outputs that inform leadership decisions.
  • Maintain regulatory repositories and systems of record to ensure accuracy, traceability, and audit readiness.
  • Execute and improve the Cyber Regulation Intake & Triage process with Legal, including classification, routing, and lifecycle tracking of obligations.
  • Map regulatory requirements to internal control frameworks, policies, and technical implementations, identifying gaps and supporting control strategy decisions.
  • Develop regulator-ready documentation such as evidence mappings, control narratives, risk statements, and audit support artifacts.
  • Identify, analyze, and escalate regulatory risks and audit obligations to improve program-level visibility and planning.
  • Partner cross-functionally with Legal, Public Policy, R&D, Security, Product, Sales, and Risk teams to align interpretation with implementation.
  • Drive process improvements, tooling enhancements, and automation initiatives within the SCRA program.
  • Own assigned workstreams end-to-end with high autonomy and accountability.

Requirements

  • 5–8+ years of experience in security compliance, telecom compliance, regulatory affairs, GRC, or a related domain in a global technology, cloud, or telecom environment.
  • Experience interpreting and operationalizing security frameworks and regulations such as NIS 2, ISO 27001, SOC 2, and telecom regulatory regimes.
  • Experience mapping regulatory requirements to control frameworks, policies, and technical implementations.
  • Broad understanding of security architecture, networking, access control, software development, cryptography, and operations.
  • Ability to analyze ambiguous regulations and produce defensible interpretations for leadership decision-making.
  • Strong written communication skills with the ability to produce audit-ready and regulator-defensible documentation.
  • Proven ability to collaborate across Legal, Engineering, Security, Product, Sales, and Risk teams.
  • High self-sufficiency, critical thinking, and ownership, with the ability to execute without detailed instruction.
  • Ability to independently deliver complex workstreams end-to-end under high-level guidance.
  • Ability to manage multiple concurrent priorities in a global, fast-evolving regulatory landscape.
  • Deep understanding of hybrid cloud environments (AWS/GCP), on-premise infrastructure, APIs, and microservices architectures (preferred).
  • Telecommunications sector experience, including messaging, voice, network security, or CPaaS environments (highly preferred).
  • Familiarity with global regulatory regimes across the EU, UK, APAC, and LATAM (preferred).
  • Experience with regulatory repositories, intake/triage workflows, or compliance automation systems (preferred).
  • Experience supporting external audits or regulator engagements (preferred).
  • Exceptional organizational skills and the ability to context-switch across a high volume of projects and emerging regulations (preferred).
  • Ability to distill technical findings into concise, high-level summaries for leadership (preferred).

Benefits

  • Remote-first role based in Ontario, British Columbia, or Alberta, Canada.
  • Competitive pay with an estimated salary range of $120,640 to $150,800 CAD.
  • Target bonus percentage of 15%.
  • Eligibility for additional compensation and benefits, including incentive programs, commissions, and equity grants.
  • Healthcare coverage.
  • Retirement savings program and retirement contributions.
  • Generous time off, including paid time off.
  • Parental and wellness leave, plus health and wellness benefits.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

FOIA Analyst

Contact Government Services 1-10 Professional Services

CGS is hiring a FOIA Analyst to support a large federal agency’s legal mission by processing Freedom of Information Act requests and managing related correspondence and communications.

24 minutes ago

Senior Specialist, Information Security, Third Party Risk

Planned Parenthood 251-1K Health Care Providers & Services

Planned Parenthood Federation of America is hiring a remote Senior Specialist, Information Security, Third Party Risk to lead vendor risk assessments and support privacy, compliance, and cybersecurity decisions across third-party engagements.

Asana Confluence Cybersecurity HIPAA JIRA
39 minutes ago

Member of Compliance, TPRM

Anchorage Digital 251-1K Capital Markets

Anchorage Digital is seeking a Member of Compliance to support and enhance its Third Party Risk Management program across regulated and non-regulated entities, with a focus on due diligence, ongoing monitoring, findings management, and quality control.

39 minutes ago

FOIA Analyst

Contact Government Services 1-10 Professional Services

CGS is seeking a Mid-Level FOIA Analyst to support a large federal agency’s legal mission by processing FOIA requests and managing related correspondence, communications, and records review.

54 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers