Cybersecurity Governance Analyst
A
AgeroCybersecurity
United States: Arizona, California, Florida, Georgia, Illinois, Massachusetts, Michigan, New Hampshire, New York State, New Mexico, North Carolina, Tennessee, VirginiaFull-TimeMiddle
Salary75,000 - 95,000 USD per year
Apply NowOpens the employer's application page
Job Details
- Experience
- 3-5 years
- Required Skills
- Compliance
Requirements
- 3-5 years in information security compliance with hands-on experience to industry compliance frameworks such as PCI-DSS, SOC 2, or ISO 27001.
- Experience maintaining compliance documentation, ability to map controls to technical implementations and evaluate evidence quality.
- Ability to identify, evaluate, and mitigate security risks across application, network, endpoint, and cloud environments.
- Familiarity with DevSecOps practices and emerging technologies like AI.
- Skilled at building productive relationships across all organizational levels, including IT management, technical staff, external vendors, and consultants.
- Strong written and oral communication skills for authoring technical documentation and delivering security presentations.
- Ability to accurately complete complex client security questionnaires.
- Strong analytical skills and sound independent judgment to evaluate complex risk scenarios.
Responsibilities
- Assist in identifying, developing, and maintaining enterprise cybersecurity policies and standards, aligning processes with established frameworks such as ISO 27001, PCI-DSS, and SOC 2.
- Perform vendor security and privacy risk assessments, evaluate control environments, monitor findings, and track ongoing vendor remediation efforts.
- Respond to client security questionnaires, coordinate evidence collection, and support customer trust reviews and external audits.
- Provide guidance on core security controls—including access management, data encryption, logging, and business continuity—while investigating deficiencies to recommend and track corrective actions.
- Act as a liaison between business units and IT/Engineering teams to support data security implementations and drive enterprise-wide security awareness programs.
- Partner with IT and Engineering leaders to create and refine the enterprise security architecture while supporting security control assessment strategies.
View Full Description & ApplyYou'll be redirected to the employer's site