> Markdown version of [/jobs/ext/735696-it-security-compliance-analyst](https://www.wearedevelopers.com/jobs/ext/735696-it-security-compliance-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security & Compliance Analyst - **Company:** Mission Critical Group - **Location:** United States (Remote available) - **Experience:** Experienced - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Microsoft Azure, Cloud Computing Security, CompTIA Security+, Cyber Security, Information Systems, Data Auditing, Identity and Access Management, Information Security Management, Information Systems Security Architecture Professional, PCI Data Security Standards, Security Information and Event Management, Software Vulnerability Management, Google Cloud, Information Technology, CIS Benchmarks - **Published:** June 29, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=9700e84574443af8 ## About the Role Do you have experience in Technical documentation?, Do you have a Bachelor's degree?, * Bachelor's degree in Information Technology, Cybersecurity, Information Systems, Computer Science, or related field. * 3-5 years of experience in information security, IT compliance, risk management, or related roles. * Knowledge of cybersecurity principles, security technologies, and regulatory requirements. * Experience supporting audits and compliance assessments. * Familiarity with security tools such as: + SIEM platforms + Vulnerability management tools + Endpoint security solutions + Identity and Access Management (IAM) systems * Strong analytical, problem-solving, and documentation skills. * Excellent written and verbal communication skills. Preferred Qualifications * Professional certifications such as: + CompTIA Security+ + Certified Information Systems Security Professional (CISSP) + Certified Information Security Manager (CISM) + Certified Information Systems Auditor (CISA) + Certified in Risk and Information Systems Control (CRISC) + Certified Ethical Hacker (CEH) * Experience with cloud security platforms (Microsoft Azure, AWS, Google Cloud). * Experience with governance, risk, and compliance (GRC) tools. * Knowledge of industrial, utility, or critical infrastructure environments. Key Competencies * Cybersecurity Risk Assessment * Regulatory Compliance * Security Governance * Audit Support * Incident Response * Vulnerability Management * Policy Development * Vendor Risk Management * Security Awareness Training * Technical Documentation * Communication and Stakeholder Management ## Description The IT Security & Compliance Analyst is responsible for supporting the organization's cybersecurity program, regulatory compliance initiatives, risk management activities, and security governance processes. This role helps protect company information systems and data by monitoring security controls, assessing risks, ensuring compliance with industry standards, and supporting audits and remediation efforts. The ideal candidate combines technical security knowledge with a strong understanding of compliance frameworks, policies, and risk management practices., Security Operations * Monitor security alerts, vulnerabilities, and incidents across enterprise systems. * Assist in investigating and responding to cybersecurity events and security breaches. * Support vulnerability management programs, including scanning, assessment, remediation tracking, and reporting. * Review security logs and reports to identify potential threats or compliance gaps. * Participate in security awareness and training initiatives. Compliance & Governance * Maintain compliance with regulatory and industry standards such as: + NIST Cybersecurity Framework (CSF) + NIST 800-53 + ISO 27001 + SOC 2 + CIS Controls + HIPAA (if applicable) + PCI-DSS (if applicable) + CMMC (if applicable) * Assist with internal and external audits. * Develop, review, and maintain security policies, standards, procedures, and documentation. * Track compliance requirements and remediation activities. * Support third-party risk management and vendor security assessments. Risk Management * Conduct security risk assessments and document findings. * Evaluate security controls and recommend improvements. * Assist business units in identifying and mitigating cybersecurity risks. * Maintain risk registers and track remediation plans. Reporting & Documentation * Prepare security and compliance reports for management and stakeholders. * Document audit evidence and compliance artifacts. * Maintain accurate records of security incidents, risk assessments, and compliance activities. * Develop metrics and dashboards to measure security program effectiveness. Collaboration * Work closely with IT, infrastructure, application, and business teams to implement security controls. * Support project teams by providing security and compliance guidance. * Participate in change management and system implementation reviews. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [The Cloud is Calling: Answer with In-Demand Skills](https://www.wearedevelopers.com/videos/945-the-cloud-is-calling-answer-with-in-demand-skills) - [A walkthrough on Responsible AI Frameworks and Case Studies](https://www.wearedevelopers.com/videos/509-a-walkthrough-on-responsible-ai-frameworks-and-case-studies) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [Cloud Run- the rise of serverless and containerization](https://www.wearedevelopers.com/videos/106-cloud-run-the-rise-of-serverless-and-containerization) ## Related Articles - [What Are The Top Skills Required For Azure Developers?](https://www.wearedevelopers.com/magazine/77-what-are-the-top-skills-required-for-azure-developers) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks)