The Information Security Compliance Analyst is responsible for maintaining the organization’s information security compliance posture by managing security documentation, supporting audits, and ensuring consistent implementation of security controls across production information systems.
Requirements
- Bachelor's degree in Cybersecurity, Information Security, Information Systems, or a related field (preferred), or equivalent professional experience.
- 3–5 years of experience in information security compliance, cybersecurity assurance, GRC, or a related field.
- Demonstrated experience managing System Security Plans (SSPs) and supporting documentation for enterprise systems.
- Experience supporting compliance audits and certifications, including NIST 800-53 (FedRAMP/GovRAMP), ISO 27001, PCI DSS, and/or SOC 2.
- Strong understanding of modern information security compliance frameworks and control-based security programs (e.g., NIST 800-53, ISO 27001, SOC 2).
- Ability to interpret regulatory and compliance requirements and translate them into clear, actionable documentation.
- Strong analytical, writing, and organizational skills with exceptional attention to detail.
- Ability to manage multiple compliance activities concurrently while meeting deadlines and quality expectations.
- Certifications: Security+, GSEC, or equivalent certification preferred
Benefits
- Comprehensive health insurance
- Dental insurance
- Vision insurance
- Flexible Time Off
- 401(k) plan