> Markdown version of [/jobs/ext/1425186-it-security-compliance-analyst](https://www.wearedevelopers.com/jobs/ext/1425186-it-security-compliance-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Compliance Analyst - **Company:** Masco Corporation - **Location:** Vista, CA, United States - **Experience:** Experienced - **Salary:** $62,600.0 - $98,340.0 - **Contract:** Permanent contract - **Skills:** Microsoft Word, Microsoft Excel, Active Directory, Software System Penetration Testing, Microsoft Outlook, Business Process Modeling, Cyber Security, Identity and Access Management, Information Technology Operations, Productivity Software, Software Engineering, IT General Controls (ITGC), Office365, Ripple (payment Protocol), Servicenow - **Published:** July 24, 2026 - **Apply:** https://masco.wd1.myworkdayjobs.com/Masco/job/US---California---Vista/IT-Security-Compliance-Analyst_REQ53749 ## About the Role * Bachelor's degree in Business Administration, Accounting, Finance, or a related field with an IT background preferred. * 3+ years of experience in IT security, compliance, auditing, or a related field. * Proven audit experience supporting internal, external, or regulatory audits. * Understanding of IT General Controls (ITGCs), access management, and security best practices. * Experience working with compliance and regulatory frameworks such as SOX, PCI, NIST, CIS, ISO, or similar standards. * Familiarity with IT administration concepts and systems such as Active Directory or similar technologies. * Strong verbal and written communication skills with the ability to collaborate effectively with IT teams, management, auditors, and cross-functional stakeholders. * Excellent organizational skills, attention to detail, and ability to manage multiple priorities while meeting deadlines. * Proficiency with Microsoft 365 applications, including Outlook, Word, Excel, and other business productivity tools. * Experience with ServiceNow, ITIL-based processes, or related service management practices is a plus. * CISA and/or CISSP certifications are desirable., E-Verify Participation Poster: English & Spanish E-Verify Right to Work Poster: English & Spanish ## Description As the Analyst, IT Security Compliance, you'll serve as a key connection point between IT Operations, Software Development, management, and the Internal Audit functions. You'll help ensure that systems, processes, and controls are implemented effectively while meeting both regulatory compliance and internal security standards. In this role, you'll work cross-functionally across Watkins Wellness and Masco, partnering with IT teams, business leaders, and audit stakeholders to coordinate reviews, maintain documentation, respond to audit requests, and support cybersecurity and compliance initiatives. You'll balance day-to-day audit and compliance administration with opportunities to improve processes, strengthen controls, and identify more efficient ways of working. During your first several months, you'll focus on learning Watkins and Masco audit requirements, understanding key business processes, and building knowledge of how information is managed and secured across the organization. This position offers excellent growth potential as the organization continues to expand its security and compliance capabilities. While compliance and audit experience are essential, we are committed to helping the right candidate further develop their technical security knowledge and skills. This is a hybrid role. YOUR RIPPLE EFFECT * Do you enjoy being the connection point between IT, management, and audit teams? Partner with stakeholders across Watkins Wellness and Masco to coordinate audit activities, respond to compliance inquiries, communicate requirements, and ensure audit requests are addressed efficiently and accurately. * Are you passionate about security, compliance, and strong internal controls? Conduct and administer recurring audits and control reviews, monitor compliance with established security policies and regulatory frameworks, and help maintain a strong IT security and compliance posture across the organization. * Do you have an eye for detail when it comes to system access and administrative controls? Review employee access requests, account changes, privileged access assignments, department transfers, and deprovisioning activities to ensure appropriate controls are followed and security risks are minimized. * Do you enjoy solving problems and driving continuous improvement? Track audit findings and remediation efforts, support corrective action plans, and identify opportunities to streamline processes, strengthen controls, and improve the effectiveness of compliance activities. * Can you manage complex information and keep stakeholders organized? Collect, validate, and maintain audit evidence and documentation, prepare reports and responses for audit reviews, coordinate audit schedules, and ensure key information is available when needed. * Are you interested in helping protect the organization from evolving cybersecurity risks? Support security and risk management initiatives by coordinating cybersecurity assessments and penetration testing activities, assisting with NIST/CIS evaluations, and helping ensure IT practices remain secure, compliant, and current. ## Related Videos - [Developing the Rich Text Editor for DeepL.com](https://www.wearedevelopers.com/videos/1172-developing-the-rich-text-editor-for-deepl-com) - [Applying Agile Principles to Incident Management ](https://www.wearedevelopers.com/videos/101-applying-agile-principles-to-incident-management) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [AI in Production: applied AI & enterprise use cases](https://www.wearedevelopers.com/videos/100130-ai-in-production-applied-ai-enterprise-use-cases) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) - [Robots are coming into the wild! Full-Stack Robotics Engineers, be ready!](https://www.wearedevelopers.com/videos/479-robots-are-coming-into-the-wild-full-stack-robotics-engineers-be-ready) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Best Companies to work for in London: Top 25 Companies in 2023](https://www.wearedevelopers.com/magazine/187-best-companies-to-work-for-in-london-top-25-companies-in-2023) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)