Security Compliance & Regulatory Affairs Analyst

Security Compliance & Regulatory Affairs Analyst

Full-Time 128560 - 170000 £ / year (est.) Home office (partial)
M

At a Glance

  • Tasks: Support Twilio’s global security regulatory strategy and manage complex regulatory frameworks.
  • Company: Join Twilio, a remote-first tech company revolutionising communications worldwide.
  • Benefits: Enjoy competitive pay, generous time off, healthcare, and a supportive work culture.
  • Other info: Remote role with opportunities for travel and excellent career growth.
  • Why this job: Make a real impact in cybersecurity while working with diverse teams globally.
  • Qualifications: 5+ years in security compliance or regulatory affairs; strong analytical and communication skills.

The predicted salary is between 128560 - 170000 £ per year.

At Twilio, we’re shaping the future of communications, all from the comfort of our homes. We deliver innovative solutions to hundreds of thousands of businesses and empower millions of developers worldwide to craft personalized customer experiences. Our dedication to remote-first work, and strong culture of connection and global inclusion means that no matter your location, you’re part of a vibrant team with diverse experiences making a global impact each day.

We are actively recruiting for this role to support Twilio’s global security regulatory program and directly support the SCRA Lead in executing and scaling the company’s regulatory strategy. This position is responsible for independently owning delegated components of regulatory analysis, triage, normalization, and operationalization of global cybersecurity and telecom regulatory obligations (e.g., NIS 2, TSA UK, Singapore IMDA), while contributing to broader program-level initiatives led by the SCRA Lead. The role operates with high autonomy and is expected to take ownership of assigned workstreams end-to-end, requiring strong critical thinking, defensible regulatory interpretation, designing and executing cross-functional initiatives, and the ability to operate without detailed instruction.

Responsibilities

  • Support the SCRA Lead in executing Twilio’s global security regulatory strategy, including contributing to program design, prioritization, and long-term regulatory planning.
  • Independently interpret complex and ambiguous regulatory frameworks (e.g., NIS 2, EU transpositions, TSA UK) and provide structured outputs that support Lead-level strategy and decision-making.
  • Support the development and maintenance of regulatory repositories and systems of record, ensuring accuracy, traceability, and audit readiness.
  • Execute and continuously improve the Cyber Regulation Intake & Triage process in partnership with Legal, ensuring consistent classification, routing, and lifecycle tracking of regulatory obligations.
  • Map regulatory requirements to internal control frameworks (e.g., UCF, ISO 27001, internal standards), identifying gaps and supporting Lead-driven control strategy decisions.
  • Develop regulator-ready and high-quality artifacts, including evidence mappings, control narratives, risk statements, and audit support documentation.
  • Identify, analyze, and elevate regulatory risks and audit obligations, supporting proactive planning and risk visibility at the program level.
  • Partner cross-functionally with Legal, Public Policy, R&D, Security, Product, Sales, and Risk teams, supporting the Lead in aligning regulatory interpretation with technical and business implementation.
  • Drive execution of process improvements, tooling enhancements, and automation initiatives defined by the SCRA program.
  • Operate with high ownership and accountability, executing work independently while aligning to strategic direction set by the SCRA Lead.

Qualifications

Twilio values diverse experiences from all kinds of industries, and we encourage everyone who meets the required qualifications to apply. If your career is just starting or hasn't followed a traditional path, don't let that stop you from considering Twilio. We are always looking for people who will bring something new to the table!

Required Experience:

  • 5+ years of experience in security compliance, telecom compliance, regulatory affairs, GRC, or related domain within a global technology, cloud, or telecom environment.
  • Experience interpreting and operationalizing security frameworks and regulations (e.g., NIS 2, ISO 27001, SOC 2, telecom regulatory regimes).
  • Experience mapping regulatory requirements to control frameworks, policies, and technical implementations.
  • Broad understanding of security architecture, networking, access control, software development, cryptography, and operations.
  • Strong written communication skills with ability to produce audit-ready and regulator-defensible documentation.
  • Proven ability to collaborate across Legal, Engineering, Security, Product, Sales, and Risk teams in support of program objectives.
  • High level of self-sufficiency, critical thinking, and ownership, with ability to execute without detailed instruction.
  • Demonstrated ability to independently execute and deliver complex workstreams end-to-end, while operating under high-level guidance.
  • Ability to manage multiple concurrent priorities in a global, fast-evolving regulatory landscape.

Desired:

  • Deep understanding of hybrid cloud environments (AWS/GCP), on-premise infrastructure, APIs, and microservices architectures.
  • Experience in the Telecommunications sector (e.g. telecommunications or CPaaS environments involving messaging, voice, network security) highly preferred.
  • Familiarity with primary global regulatory regimes (EU, UK, APAC, LATAM).
  • Experience working with regulatory repositories, intake/triage workflows, or compliance automation systems.
  • Experience supporting external audits or regulator engagements.
  • You are a self-starter who takes pride in being a "force multiplier." You have a proven ability to produce high-quality, audit-ready deliverables with minimal oversight.
  • Exceptional organizational skills with the ability to context-switch effectively, managing a high volume of concurrent projects and emerging regulations without sacrificing depth or accuracy.
  • You don't work in a silo. You are skilled at building bridges across Legal, R&D, Security, and IT, ensuring that Security Regulatory Affairs is integrated as a seamless partner.
  • You are constantly looking for ways to optimize your own output and team processes, turning manual, repetitive tasks into streamlined, automated successes.
  • Ability to distill granular technical findings into concise, high-level summaries that drive decision-making at the leadership level.

Location

This role will be remote, but is not eligible to be hired in CA, CT, NJ, NY, PA, WA.

Travel

For this role, you may be required to travel occasionally to participate in project or team in-person meetings.

What We Offer

Working at Twilio offers many benefits, including competitive pay, generous time off, ample parental and wellness leave, healthcare, a retirement savings program, and much more. Offerings vary by location.

Twilio thinks big. Do you? We like to solve problems, take initiative, pitch in when needed, and are always up for trying new things. That's why we seek out colleagues who embody our values — something we call Twilio Magic. Additionally, we empower employees to build positive change in their communities by supporting their volunteering and donation efforts.

We care about your safety. Scammers sometimes impersonate Twilio recruiters through fake job postings, emails, websites, or messages. Please ensure you are engaging with an official @twilio.com email address. We will never ask for payment, gift cards, cryptocurrency, or banking information during the recruiting process.

Twilio is proud to be an equal opportunity employer. We do not discriminate based upon race, religion, color, national origin, sex (including pregnancy, childbirth, reproductive health decisions, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, genetic information, political views or activity, or other applicable legally protected characteristics.

Security Compliance & Regulatory Affairs Analyst employer: Meetborderless

Canonical is an exceptional employer that champions innovation and collaboration in the tech industry. With a strong commitment to employee growth, we offer a generous personal learning and development budget, annual compensation reviews, and recognition rewards, all within a diverse and inclusive work culture. Our global presence allows for exciting travel opportunities and the chance to engage with cutting-edge technologies, making this role not just a job, but a meaningful career path.

M

Contact Details:

Meetborderless Recruitment Team

StudySmarter Expert Advice🤫

We think this is how you could land Security Compliance & Regulatory Affairs Analyst

Join Compliance Communities

Get involved in compliance and risk communities — both online and offline. Look for forums, LinkedIn groups, or even local meetups where compliance pros hang out. You never know who might drop a job opportunity your way!

Attend Industry Conferences

Keep an eye out for compliance and risk management conferences and workshops in your area. These events are a goldmine for networking, and they often have job boards or recruiters on-site looking for new talent. Plus, it’s a chance to learn what's trending in the field.

Leverage Your University Career Services

If you’ve recently graduated or are still studying, head over to your university's career services. Many companies, including those in compliance, actively recruit fresh talent through these services, so make sure you tap into that resource.

Showcase Your Knowledge Online

Start writing articles or blog posts about compliance topics that interest you. Share them on platforms like LinkedIn to demonstrate your knowledge and passion. This not only builds your presence in the field but can also catch the attention of companies like Meetborderless looking for candidates who are engaged and informed.

We think you need these skills to ace Security Compliance & Regulatory Affairs Analyst

Regulatory Analysis
Cybersecurity Compliance
Telecom Regulatory Knowledge
ISO 27001
NIS 2
Critical Thinking
Documentation Skills

Some tips for your application 🫡

Show Your Understanding of Compliance:In the compliance-risk field, it's super important to showcase your understanding of regulations and risk management frameworks. Highlight any relevant coursework, certifications (like ICA or AML), or even projects that demonstrate your knowledge and commitment to this area. We want to see how you can navigate this complex landscape!

Quantify Your Achievements:When detailing your experience, try to quantify your achievements. For example, if you've previously worked on a project that improved compliance metrics or reduced risk exposure, give us the numbers! This data-driven approach really stands out to hiring managers in compliance-risk roles.

Tailor Your CV to Reflect Relevant Skills:Make sure your CV highlights skills that are particularly relevant to compliance, like attention to detail, analytical thinking, and report writing. Ensure these are easy to spot – consider using bullet points to break down your responsibilities and achievements for maximum impact!

Craft a Motivating Cover Letter:In your cover letter, let us know why you’re excited about the compliance-risk role at Meetborderless. Share what motivates you about compliance, and how you believe you can contribute to our mission. This is your chance to showcase not only your skills but also your passion for this important field!

How to prepare for a job interview at Meetborderless

Master the Regulations

Brush up on key compliance regulations relevant to the industry you're applying to. Familiarising yourself with specific laws and frameworks used in your field will give you an edge during technical questions. Show that you’re not just aware of them but can also apply them—think real-life scenarios!

Show Your Analytical Skills

Compliance roles really focus on analytical skills, so be prepared for case studies or situational questions during the interview. We've got to demonstrate how we approach risk assessments or compliance audits, possibly drawing on examples from past experiences or university projects. Bring some thoughtful case scenarios to discuss!

Know Your Tools

Get comfortable with commonly used compliance software and tools. Familiarity with platforms like RSA or MetricStream can really impress during your interview, as it shows you're ready to hit the ground running. If you’ve had any experience with them, make sure to highlight that!

Align with Company Culture

Since it's a full-time position, show your long-term commitment and interest in the company’s mission and values. Dive into how your ethics and professional philosophy align with Meetborderless’s stance on compliance. A shared vision can really resonate with interviewers looking for fit as much as skill!