Simplify Logo

Full-Time

Senior Governance

Risk and Compliance, GRC, Analyst II

Updated on 9/19/2024

Kandji

Kandji

201-500 employees

Unified platform for Apple device management

Hardware
Enterprise Software

Senior, Expert

Miami, FL, USA

Category
Risk & Compliance
Legal & Compliance
Required Skills
Communications
Management
Requirements
  • Seven (7) years or more of relevant experience in risk-based technology compliance management programs, or Auditing experience
  • Experience in performing risk-based testing for control compliance, including the identification, assessment, and mitigation of compliance issues: understanding how to balance the company's risk appetite to compliance needs/requirements
  • Detailed knowledge and experience with technology controls across a variety of industry frameworks and how to assess controls supporting compliance for SOC2, FedRamp, CMMC, ISO 27001, ISO 27701, ISO 42001, CSA Star and global privacy regulations
  • Detailed knowledge of information security, technology compliance management industry frameworks and standards: NIST, OWASP, SANS, ISO-27001/2
  • Experience developing dynamic approaches to the implementation of a technology compliance program utilizing a variety of testing methods, both manual and automated, to provide qualitative and quantitative results where applicable
  • Strong analytical and problem-solving skills
  • Excellent project management, written and verbal communication skills
  • Ability to manage multiple priorities and deadlines
  • Proven track record as a strong cross-teams collaborator and team player, dealing with complex programs and influencing cross-functional audiences
  • **Required to work on-site 4 days a week (Monday through Thursday) in Miami. Managers may require additional on-site days.**
Responsibilities
  • In support of multiple frameworks (e.g. ISO 27XXX, SOC2) plan, design and execute controls testing, controls assessment and risk management practices.
  • Develop and execute on dynamic risk-based information security risk management and third party risk management programs.
  • Execute on the risk assessment life cycle including identifying key risks, assessing risks and controls, calculating residual risk, identifying areas of improvement and collaborating with control owners on remediation plans against products, features, datasets, applications, and third parties.
  • Collaborate with cross-functional teams to develop and implement privacy policies, procedures, and controls to mitigate data privacy risks.
  • Provide expertise and guidance on data privacy laws and regulations, including GDPR, CPRA, EU AI Act and other relevant frameworks.
  • Design and execute strategies for ensuring organizational compliance with SOC2, GDPR, Data Privacy, federal, state, and local government compliance, or similar regulations.
  • Conduct impact assessments (PIAs, BIAs, AIIAs) and assist in developing strategies to address identified risks.
  • Conduct data classification assessments to identify and categorize sensitive information based on its level of confidentiality, criticality, and regulatory implications.
  • Be a trusted advisor for internal audit programs to expedite reviews and mitigate operational impacts.
  • Assist with the preparation of reports and presentations for management and regulatory agencies.
  • Support in the development and implementation of compliance training and awareness programs.
  • Participate or lead special ad-hoc projects or initiatives as assigned.

Kandji offers a platform designed for managing and securing Apple devices in businesses. Their system enables companies to deploy secure devices, update software, and address vulnerabilities across all their devices efficiently. A key feature is the MigrationAgent, which simplifies the transition from older Mobile Device Management (MDM) solutions to Kandji's platform, requiring minimal user interaction. What sets Kandji apart from competitors is their deep knowledge of the Apple ecosystem and dedicated customer support, with engineers available to assist users who have experience with Mac administration. The goal of Kandji is to help businesses strengthen their IT infrastructure and support their growth by providing effective device management solutions.

Company Stage

Series C

Total Funding

$188.4M

Headquarters

San Diego, California

Founded

2018

Growth & Insights
Headcount

6 month growth

-1%

1 year growth

-11%

2 year growth

-15%
Simplify Jobs

Simplify's Take

What believers are saying

  • The recent $100 million funding round will accelerate innovation and growth, potentially leading to new features and improved services.
  • The introduction of tools like Prism and iOS Home Screen Management demonstrates Kandji's commitment to enhancing user experience and compliance.
  • Partnerships with companies like SecureW2 and Diamond Assets expand Kandji's ecosystem, offering more integrated solutions for clients.

What critics are saying

  • The company's focus on Apple devices may limit its market to businesses heavily invested in the Apple ecosystem, potentially missing out on clients using other platforms.
  • Rapid growth and scaling efforts, fueled by recent funding, could strain resources and impact service quality.

What makes Kandji unique

  • Kandji's focus on Apple devices sets it apart in the MDM market, which is often dominated by solutions catering to multiple operating systems.
  • Their MigrationAgent tool simplifies the transition from old MDM solutions, reducing user interaction to a few clicks, which is a significant advantage over competitors.
  • Kandji's 24/5 customer support staffed by Mac admin-experienced engineers provides a level of peer-to-peer guidance that is rare in the industry.

Benefits

Health Coverage - 100% individual and dependent medical + dental + vision coverage

Flexible Spending Account

Equity for full-time employees

New MacBook Pro and software setup

Exciting opportunities for career growth

An outstanding, inclusive culture

4% 401(k) company match

Monthly Uber Eats meal credit

$1,000 Home Office Equipment Stipend

$50 monthly Internet reimbursement

Equipment discounts

Week long company shutdown, first week of August

10 Health and Wellness Days

12 weeks of Paid Parental Leave

14 Holidays