Company: Zayo Group
Location: Denver, CO
## About Zayo
Zayo provides mission-critical bandwidth to the world’s most impactful companies, operating a 141,000-mile network in North America and Europe. We serve wireless and wireline carriers, media, tech, content, finance, healthcare, and other large enterprises with dark fiber, private data networks, wavelengths, Ethernet, and dedicated Internet access.
## The Senior Compliance and Audit Analyst Role
This position supports the organization’s security assurance, customer trust, audit support, and third-party risk management activities. You’ll respond to customer security inquiries, complete security questionnaires, support security-related contract reviews, provide approved audit evidence, maintain customer-facing Trust Center content, and assist with third-party risk reviews. You’ll work closely with Information Security, Legal, Privacy, Compliance, Procurement, Sales, Product, and business stakeholders to ensure everything is accurate, timely, and aligned with policies and standards.
### What You’ll Do Day-to
– Day
– Respond to customer security inquiries, due diligence requests, questionnaires, and RFP/RFI security sections using approved templates.
– Review, triage, track, and manage requests through Service. Now or other systems.
– Coordinate with subject matter experts to gather and validate response content.
– Prepare clear, accurate responses related to security controls, policies, certifications, audit reports, privacy practices, and compliance.
– Assist in reviewing contract language involving information security, privacy, audit rights, data protection, and compliance obligations.
– Compare requirements against organizational policies and identify non-standard commitments or control gaps, escalating as needed.
– Help gather, validate, and track audit evidence, ensuring external releases are approved.
– Support Third Party Risk Management – review vendor security documentation, track assessment status, and follow up on remediation.
– Maintain Trust Center content, response libraries, and FAQs.
– Keep records of inquiries, responses, and outcomes; monitor timelines and report on metrics.
– Identify recurring themes and recommend process improvements.
### What We’re Looking For
– A bachelor’s degree in Information Systems, Cybersecurity, Risk Management, or a related field (or equivalent experience).
– At least six years of experience in information security, compliance, customer assurance, third-party risk, audit support, contract support, customer service, or vendor management.
– Familiarity with ISO 27001, NIST SP 800-171, GDPR, and SOC 2 is required.
– Experience with security questionnaires, contract reviews, and audit evidence coordination.
– Strong written communication, attention to detail, and ability to collaborate with legal, security, procurement, sales, and technical teams.
– Proficiency in Microsoft Office, Service. Now (or similar ticketing tools), and collaboration platforms.
– Professional certifications in cybersecurity, compliance, or risk are preferred but not required.
### Compensation and Benefits
The estimated base salary range is $95,100 – $146,300 USD per year, depending on geographic location, experience, skills, and certifications. Non-sales roles may be eligible for a discretionary annual incentive plan. Benefits include excellent health, dental, and vision insurance, a 401(k) savings plan, generous paid time off including paid parental leave, and more.
### Work Authorization
You must be currently authorized to work in the United States on a full-time basis. This position does not sponsor work visas (OPT, TN, H1B, etc.) now or in the future.
### Remote Work
This role is remote based in the USA. #LI
– Remote
—
_This job was found on [bandana.com](https://www.bandana.com/?utm_source=jd_attribution&utm_medium=repost)_