CarGurus logo
CarGurusPosted 3 weeks ago

Information Security Risk and Compliance Analyst

$84,000–$106,000 year

HybridBoston, Massachusetts, United States

Full TimeLargeE-commerce Services

Job Summary

Manage third-party risk, customer security assurance, and cyber risk initiatives while ensuring regulatory compliance and SOX IT General Controls. Partner with security, engineering, legal, and finance stakeholders to build scalable governance processes, improve operational maturity, and reduce organizational risk. Optimize security workflows through automation and process improvement to enhance audit readiness. Communicate complex security concepts to both technical and non-technical audiences. This role supports CarGurus' mission to drive trust and transparency across the automotive marketplace by strengthening the company's overall security posture.

Required Qualifications

  • Experience with GRC platforms such as Auditboard, SAFE, Loopio or similar tools.
  • Professional certifications such as CISSP, CISA, CRISC, Security+ or CISM.
  • Experience supporting cloud environments.
  • Familiarity with AI governance, automation or security workflow optimization.

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce