Governance, Risk and Compliance Analyst

Job description

Coupa makes margins multiply through its community-generated AI and industry-leading total spend management platform for businesses large and small. Coupa AI is informed by trillions of dollars of direct and indirect spend data across a global network of 10M+ buyers and suppliers. We empower you with the ability to predict, prescribe, and automate smarter, more profitable business decisions to improve operating margins.

Why join Coupa?

πŸ”Ή Pioneering Technology: At Coupa, we’re at the forefront of innovation, leveraging the latest technology to empower our customers with greater efficiency and visibility in their spend.

πŸ”Ή Collaborative Culture: We value collaboration and teamwork, and our culture is driven by transparency, openness, and a shared commitment to excellence.

πŸ”Ή Global Impact: Join a company where your work has a global, measurable impact on our clients, the business, and each other.

Learn more on Life at Coupa blog and hear from our employees about their experiences working at Coupa.

The Impact of a Senior Technical Audit & Controls Analyst at Coupa:

We’re seeking a Senior Technical Audit & Controls Analyst to join our growing team that manages over 30 product audits including SOC 2, PCI, and ISO 27001. This role will be a key contributor to technical control testing, with a focus on cloud-native environments (AWS, Azure), IAM, and Cloud Operations.

You will collaborate with engineering, security, DevOps, and audit teams to evaluate control effectiveness, support remediation efforts, and drive audit readiness in a fast-paced, cloud-centric environment.

What You’ll Do:

  • Lead the design and effectiveness testing of technical and operational controls across multiple compliance frameworks (e.g., SOC 2, PCI DSS, ISO 27001/27701/42001, SWIFT, TISAX, C5 or UK Cyber Essentials).
  • Develop, execute, and maintain control testing scripts and walkthroughs to validate configurations, access controls, and cloud-native security mechanisms.
  • Conduct gap assessments against regulatory and industry standards, document findings, and recommend mitigation strategies.
  • Evaluate technical controls across IAM, cloud operations, CI/CD, IaC, container security, and vulnerability management to ensure compliance alignment.
  • Collaborate with control owners across Engineering, IAM, IT, Cloud Operations, and Security to map, validate, and optimize control implementations.
  • Automate audit evidence collection using scripts, APIs, and tools; maintain a standardized control library and audit-ready documentation for assurance activities.

What You Will Bring to Coupa:

  • 5+ years of experience in technical audit, cloud security, IT risk management, or compliance.
  • Hands-on expertise with cloud service providers (AWS, Azure), particularly in IAM and Cloud Operations.
  • Strong understanding of PCI DSS, with direct experience supporting technical aspects of PCI audits.
  • Familiarity with DevSecOps practices, CI/CD workflows, and the secure software development lifecycle (SSDLC).
  • Deep knowledge of key control domains: access control & IAM, logging & monitoring, system hardening, and vulnerability management.
  • Skilled at translating complex technical controls into clear audit documentation and actionable evidence, with strong cross-functional communication abilities.

#LI-REMOTE

#LI-KG1

Coupa complies with relevant laws and regulations regarding equal opportunity and offers a welcoming and inclusive work environment. Decisions related to hiring, compensation, training, or evaluating performance are made fairly, and we provide equal employment opportunities to all qualified candidates and employees.

Please be advised that inquiries or resumes from recruiters will not be accepted.

By submitting your application, you acknowledge that you have read Coupa’s Privacy Policy and understand that Coupa receives/collects your application, including your personal data, for the purposes of managing Coupa’s ongoing recruitment and placement activities, including for employment purposes in the event of a successful application and for notification of future job opportunities if you did not succeed the first time. You will find more details about how your application is processed, the purposes of processing, and how long we retain your application in our Privacy Policy.

Share this job:
Please let Coupa Software know you found this job on Remote First Jobs πŸ™

Similar Remote Jobs

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service πŸ™

Apply