> Markdown version of [/jobs/ext/2923752-office-of-infrastructure-it-systems-administrator-1-governance-risk-and-compliance-analyst-itp040-pg-l-atlanta-ga](https://www.wearedevelopers.com/jobs/ext/2923752-office-of-infrastructure-it-systems-administrator-1-governance-risk-and-compliance-analyst-itp040-pg-l-atlanta-ga). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Office of Infrastructure-IT Systems Administrator 1; Governance, Risk and Compliance Analyst (ITP040) PG-L; Atlanta, GA - **Company:** State of Georgia - **Location:** Atlanta, GA, United States - **Experience:** Expert - **Salary:** $70,000.0 - **Contract:** Permanent contract - **Skills:** Cloud Computing, Configuration Management Databases, Cyber Security, Information Systems, Desktop Computing, Information Technology Audit, IT Management, Local Area Networks, Network Control, Role-Based Access Control, Cloud Services, Virtualization Technology, Wide Area Networks, IT General Controls (ITGC), Information Technology, RSA Archer Platform - **Published:** September 15, 2026 - **Apply:** https://www.careerjet.com/job/use5d0937055a44d13e4f72047ffcc1bc6/eaa ## About the Role High school diploma/GED and two (2) years of related experience. Agency Specific Qualifications: · Demonstrated understanding of NIST SP 800-53, and comparable state-level security regulations. · Demonstrated ability to discuss complex infrastructure concepts (CMDB, Cloud, Virtualization) with engineers while translating them into "Risk Language" for leadership. · Demonstrated professional courage to identify and report risks, even when they conflict with operational deadlines. · Demonstrated experience in technology assessment. · Demonstrated proven ability to translate complex, multi-tier physical infrastructure into logical risks and procedures. · Demonstrated experience independently managing multiple assignments. · Demonstrated strong customer service orientation, anticipating and meeting the needs of clients in a time sensitive environment. · Demonstrated strong ability to communicate process requirements to senior engineering teams and leadership, with a firm commitment to enforcing governance standards. · Demonstrated commitment to fiscal stewardship and mission resilience, recognizing that infrastructure stability is essential to serving the citizens of the state. · Demonstrated excellent oral and written communication skills. Agency Preferred Qualifications: * 3-5 years of experience IT Audit, Compliance, or Information Security. Working experience with GRC platforms for centralized management of governance, risks and compliance activities * Strong familiarity of NIST SP 800-53 framework and comparable state-level security regulations. * Exceptional organizational and communication skills. * Comfortable working with many teams in a fast-moving and occasionally ambiguous environment. * CISA (Certified Information Systems Auditor) or CRISC (Certified in Risk and Information Systems Control) is highly preferred. (preferred), High school diploma/GED and two (2) years of related experience. ## Description Under supervision, installs, configures, and supports a local area network, wide area network, internet system, computers, desktops and/or mobile devices. Performs necessary maintenance to support network availability., · Establish and maintain the Enterprise IT Risk Register. Identify, categorize, and track operational and technical risks, providing leadership with a clear "threat map" of the environment. · Lead the mapping of IT controls against state-mandated frameworks (e.g., NIST CSF). Perform gap analyses and recommend specific technical or process remediations. · Draft, maintain, and audit the agency's IT policies. Ensure that infrastructure "Standard Operating Procedures" (SOPs) are documented and followed by engineering teams. · Provide regular, clear updates on the progress of infrastructure builds, risks and dependencies. · Improve inter-departmental communication to reduce misalignment on environment requirements. · Conduct security and compliance reviews for all outside vendors and cloud service providers to ensure taxpayer data is never exposed to unvetted third-party risk. · Act as the primary liaison for state auditors. Manage the "Library of Evidence," ensuring that Change Control logs, access reviews, and patching reports are ready for inspection at any time. · Oversee the periodic review of user privileges for mission-critical systems, ensuring that access is strictly limited based on the "Principle of Least Privilege." ## Related Videos - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Leverage Cloud Computing Benefits with Serverless Multi-Cloud ML ](https://www.wearedevelopers.com/videos/78-leverage-cloud-computing-benefits-with-serverless-multi-cloud-ml) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Your Manager Doesn’t Come with a User Manual (But You Can Totally Write One)](https://www.wearedevelopers.com/videos/1495-your-manager-doesn-t-come-with-a-user-manual-but-you-can-totally-write-one) - [ZEISS & Microsoft - Building the Next Generation Medical Ecosystem in the Cloud](https://www.wearedevelopers.com/videos/424-zeiss-microsoft-building-the-next-generation-medical-ecosystem-in-the-cloud) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [The Geometry of Incidents: Connecting User Impact to Architecture](https://www.wearedevelopers.com/magazine/764-the-geometry-of-incidents-connecting-user-impact-to-architecture) - [IT Salaries in Germany](https://www.wearedevelopers.com/magazine/287-it-salaries-in-germany) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [How should you format your IT resume?](https://www.wearedevelopers.com/magazine/68-how-should-you-format-your-it-resume)