Security Compliance Analyst Jobs in New York
Security Compliance Analyst jobs in New York are among the most active in the country, concentrated in financial services, healthcare, and technology sectors with demand at every level from entry-level GRC analyst through senior compliance architect. Most openings are in New York City, Albany, and Buffalo, where employers like JPMorgan Chase, Citigroup, and IBM maintain substantial compliance and risk functions. The most in-demand specialties include financial regulatory compliance, cybersecurity frameworks such as NIST and SOC 2, and healthcare data privacy under HIPAA. Find a role that fits below and apply directly.
Find JobsOverview
Showing 5 of 25+ Security Compliance Analyst jobs











About us
At LangChain, our mission is to make intelligent agents ubiquitous. We build the foundation for agent engineering in the real world, helping developers move from prototypes to production-ready AI agents that teams can rely on. We began as widely adopted open-source tools and have grown to also offer a platform for building, evaluating, deploying, and operating agents at scale.
With $125M raised at Series B from IVP, Sequoia, Benchmark, CapitalG, and Sapphire Ventures, we’re at a stage where we’re continuing to develop new products, growth is accelerating, and all team members have meaningful impact on what we build and how we work together. LangChain is a place where your contributions can shape how this technology shows up in the real world.
Today, our platform includes LangSmith (Observability, Evaluation, Deployment, Fleet, and Sandboxes), our open source frameworks (LangChain, LangGraph, and Deep Agents), and the newly launched LangSmith Engine for autonomous agent improvement. We have 100M+ monthly open source downloads, 6,000+ active LangSmith customers, and 5 of the Fortune 10 use LangSmith in production (+ 35% of the Fortune 500 overall), including teams at Klarna, Clay, Coinbase, Workday, Lyft, Cloudflare, Harvey, Rippling, Vanta, LinkedIn, Monday.com, Nvidia, and Bridgewater.
About the Team
The Security team at LangChain treats compliance as a business enabler, not a checkbox. We move fast, build customer trust across regulated industries, and are actively rethinking what modern security compliance looks like at an AI-native company. We are a small team that operates nothing like a traditional compliance function, still deep in the work of building controls, implementing frameworks, and pushing the business forward on security.
About the role
You'll play a central role in building and scaling LangChain's privacy compliance program, developing the processes, technical controls, and automation that back our commitments to customers, partners, and regulators. You'll maintain and grow our SOC 2, ISO 27001, and privacy programs while taking primary ownership of our privacy framework across multiple cloud environments, deployment models, and geographies. We are looking to hire in-person in SF or NY.
- Build and automate our compliance operations layer, including evidence pipelines, control monitoring, and agentic systems for always-on visibility into our compliance posture.
- Work directly with Engineering to embed security and privacy controls into our products, including deletion pipelines, PII detection, access audit logging, and fine-grained data access controls.
- Maintain and scale our certification and audit programs across SOC 2, ISO 27001, ISO 27701, ISO 42001, HIPAA, GDPR, CCPA, EU-US Data Privacy Framework, and others. Drive audit readiness, identify overlapping requirements, and reuse evidence across frameworks to continuously strengthen our security story.
- Partner with Legal on security and privacy contract execution, covering DPAs, BAAs, security addenda, and vendor terms. Build the templates, playbooks, and review processes that enable fast, reliable execution in regulated verticals and unblock enterprise sales.
- Monitor adherence to security and privacy contractual obligations across all signed agreements, building the operational workflows and tracking mechanisms to stay on top of commitments as our customer base grows.
- Contribute to LangChain's customer trust program — security questionnaire responses, due-diligence reviews, and the trust documentation and whitepapers that give regulated-industry customers confidence in our security posture.
- Support vendor privacy risk assessments during onboarding and renewals.
What you'll bring
- 5+ years in privacy, GRC, or security compliance, ideally with time at a Big 4 or advisory firm, or in-house at a high-growth tech company.
- Hands-on operational experience with privacy regulations and compliance frameworks (GDPR, HIPAA, CCPA, ISO 27001, ISO 27701, SOC 2), including controls mapping, audit support, and day-to-day program operations.
- Experience with DPAs and BAAs: reviewing, negotiating, or operationalizing them in a commercial context.
- Technical fluency: comfortable reading code, understanding data flows, validating that controls work as described, and collaborating directly with engineering teams.
- Exceptional writer. You'll draft policies, respond to security questionnaires, and translate complex requirements into clear guidance for audiences ranging from engineers to executives.
Nice to have
- Background in a regulated industry (healthcare, finance, government) or working directly with regulated-industry customers.
- Experience working across multi-cloud deployment environments.
- Ability to write scripts or code (Python is a strong plus) to automate compliance checks, privacy workflows, or build integrations between security and compliance tooling.
- Relevant certifications such as CIPM, CIPP/E, CIPP/US, CISA, CISSP, ISO 27001 Lead Implementer, or ISO 27701 Lead Implementer.
- Annual salary range: $175,000- $220,000 USD
Compensation Philosophy:
We offer competitive compensation that includes base salary, variable compensation for relevant roles, meaningful equity, benefits, and perks. Actual compensation and offerings will vary based on role, level, and location. Team members in the EU, UK, and APAC receive locally competitive benefits aligned with regional norms and regulations.
Benefits
Benefits include medical, dental, and vision coverage, flexible vacation, a 401(k) plan, meals on in-office days in the US and more.
See All 25 Security Compliance Analyst Jobs in New York
Find roles in New York that match your experience and apply in just a few clicks.
Find JobsSecurity Compliance Analyst Jobs by City in New York
Where New York roles are concentrated, by current openings.
Security Compliance Analyst Job Market in New York
A snapshot from current New York openings, updated as new roles post.
Who's Hiring
- Citi5

- TD Securities3

- Bank of China USA1

- Bloomberg1

- City of New York1

Top Industries Hiring
- Technology & Software9
- Investment & Asset Management7
- Banking & Financial Services2
- Education2
- Law & Legal Services2
What New York Employers Look For
The qualifications that appear most often in security compliance analyst jobs across New York.
- Bachelor's degree in information security, computer science, or a related field required
- Certified Information Systems Security Professional or Certified Information Security Manager certification preferred
- Demonstrated experience with NIST, ISO 27001, or SOC 2 compliance frameworks
- Familiarity with New York Department of Financial Services cybersecurity regulation 23 NYCRR 500
- Experience conducting risk assessments, gap analyses, and internal audits
- Strong written communication skills for producing compliance reports and policy documentation
Security Compliance Analyst Jobs in New York: Frequently Asked Questions
How do you become a security compliance analyst in New York?
A bachelor's degree in information security, cybersecurity, or a related field is the standard starting point for this role in New York. There is no state-issued license specific to the position, but industry certifications such as CISA, CISSP, or CompTIA Security+ carry significant weight with New York employers, particularly in financial services firms regulated under the New York Department of Financial Services cybersecurity requirements. Relevant work in IT audit or risk management accelerates hiring.
How much do security compliance analysts make in New York?
Security compliance analysts in New York earn a median of about $134,660 a year, based on May 2025 Bureau of Labor Statistics wage data, ranging from around $83,110 for the lowest 10% to over $216,220 for the top 10%. Pay rises with experience, specialty, and employer.
Which companies hire security compliance analysts in New York?
Employers hiring security compliance analysts in New York right now include Citi, TD Securities, and Bank of China USA, based on current listings on Migrate Mate as of June 2026. New York's concentration of major financial institutions, large hospital systems, and enterprise technology companies makes it one of the deepest markets in the country for this role.
Which New York cities have the most security compliance analyst jobs?
New York, Getzville, and Bronx have the most security compliance analyst openings in New York. New York City drives the majority of listings because of its dense concentration of regulated financial institutions, healthcare networks, and corporate headquarters, while Albany and Buffalo contribute openings from state government agencies, regional banks, and healthcare systems that maintain dedicated compliance functions.
Are there remote security compliance analyst jobs in New York?
Yes, and more than most fields. Security compliance analyst work is largely desk-based and documentation-driven, making it well suited to remote arrangements. About 24% of security compliance analyst openings tied to New York are remote or hybrid as of June 2026, reflecting how broadly employers have extended flexibility for this role. Policy review, risk assessments, and audit prep are the functions most commonly performed fully remotely.
How can I get hired as a security compliance analyst in New York with little or no experience?
The most realistic entry path is a lateral move from an IT support, audit associate, or junior risk analyst role, since those positions develop the controls and documentation skills compliance teams value. Large New York employers in financial services and healthcare, including regional banks and hospital networks, often post associate-level GRC or compliance coordinator roles that require no prior compliance title. Earning a CompTIA Security+ or CISA certification before applying gives candidates a concrete credential edge in a competitive New York market.
Where can I find and apply to security compliance analyst jobs in New York?
You can find and apply to security compliance analyst jobs in New York on Migrate Mate, which lists current openings from employers across the state. Search the available roles, find the ones that match your experience and location, and apply directly to each one.
See All 25 Security Compliance Analyst Jobs in New York
Find roles in New York that match your experience and apply in just a few clicks.
Find Jobs