Lead DI Security and Compliance Analyst
Jobtailor
Responsibilities Serve as a primary CISO organization liaison for IT audit activities Coordinate between Internal Audit, external auditors, and IT control owners to ensure efficient, timely, and accurate audit execution Track open audit requests, evidence submissions, and management responses, ensuring timely resolution and escalation of issues Execute risk‑based assessments and independent control testing activities from the second line of defense perspective, providing objective assurance on the effectiveness of IT controls Conduct annual and ad hoc IT risk assessments to identify, evaluate, and prioritize risks across the IT environment Perform second‑line‑of‑defense control testing across ITGC domains, including role‑based access reviews, segregation of duties (SoD) analysis, change management sampling, and operational control testing Monitor the effectiveness of first‑line control self‑assessments (CSAs) and provide feedback to strengthen the first line of defense Conduct periodic access recertification reviews and support User Access Reviews (UARs) for in‑scope systems Identify trends in control failures and emerging risks, escalating systemic issues to leadership with actionable recommendations Develop and maintain standardized tools, guidance materials, and training programs to build organizational GRC capability and ensure audit preparedness Develop, maintain, and distribute IT audit readiness checklists tailored to control domains, audit cycles, and specific regulatory requirements Design and deliver training programs and awareness sessions for IT control owners, process owners, and first‑line staff on ITGC requirements, SOX compliance, and evidence collection best practices Maintain a GRC knowledge base and content for ongoing stakeholder reference Act as a key point of contact between the CISO organization, Internal Audit, and the Risk & Controls function and other technology functions, fostering a collaborative and transparent governance culture Build and maintain trusted relationships with Internal Audit leadership, Risk & Controls management, IT leadership, and business process owners Provide regular status reporting on audit activities, risk posture, and control effectiveness to the CISO and senior IT leadership Requirements Bachelor's Degree or Equivalent Years of Relevant Work Experience Legal authorization to work in the U.S.; we will not sponsor individuals for employment visas, now or in the future Typically requires 12+ years of relevant experience Minimum of 3+ years of progressive experience in one or more of the following: information technology, information security, IT compliance, or IT audit Demonstrated hands‑on experience with IT General Controls (ITGC) design, documentation, and testing within a SOX‑regulated environment Experience working within or supporting a second line of defense function, internal audit team, or external audit engagement in an IT capacity Strong understanding of risk assessment methodologies and the ability to evaluate and document IT risk Familiarity with enterprise IT environments, including ERP systems (SAP, Oracle, Workday, Salesforce, IFS Cloud), cloud infrastructure (AWS, Azure, GCP), and identity governance and SOD technology platforms Technical knowledge and proficiency with Security Operations, Access Management, Platform Security, and Data Security technologies at an engineering or architecture level Solid understanding of IT control frameworks: COSO, COBIT, NIST Cybersecurity Framework (CSF), ISO 27001, and SOX 302/404 Working knowledge of cybersecurity principles including access management, identity governance, vulnerability management, and data protection Familiarity with common enterprise application controls, database controls, and infrastructure controls relevant to IT audit Experience in auditing, compliance, or risk management role with responsibility for risk assessments, ITGC walkthroughs, and control testing Exposure to audits conducted under PCAOB standards (AS 2201) is plus Certifications: CISA, CISM, CISSP, CIA, CPA #J-18808-Ljbffr Jobtailor
- ...Customer Focus, and Proactive Safety & Security’ are what every employee needs to know and... ...training initiatives to enhance compliance and service standards. Management of CAPA... ...Environmental Department. Essential Functions Leads operations compliance reviews/audits to...SuggestedHourly payPermanent employmentTemporary workWork experience placementInterim roleLocal areaRelocationFlexible hours
- Focus Partners Wealth is seeking a Compliance Analyst to oversee the day-to-day administration of the firm's Compliance Program and prepare for SEC examinations. You will serve as the go-to resource for ACA Compliance Alpha and data-driven regulatory guidance. With a Bachelor...SuggestedRemote job
- Risk Management LeadAs the Cybersecurity Risk Management Lead within ECR’s Risk and Solutions team, you will work to minimize overall security risk by identifying risks, monitoring requests through approval workflows, providing risk scoring, and presenting data to give...SuggestedFull time
- ...together through commerce. Role Whatnot's Security GRC team is dedicated to building trust... ...direction of the Security GRC team. Leading our security risk management program to... ...long way here. As our Governance, Risk, & Compliance Analyst you should have a minimum of 5+ years...SuggestedLocal areaRemote workWork from homeHome office
- ...established Food Lion procedures Ensures compliance with local, state and federal... ...policies and standard practices Maintains security standards Successfully complete Computer... ...graduate or equivalent preferred Ability to lead and manage a team Strong understanding of...SuggestedLocal areaImmediate start
- Eursdale Companies, LLC is seeking Compliance Investigator / Program Support Analysts to support a Department of Homeland Security program responsible for reviewing and processing civil rights and civil liberties complaints. Responsibilities include reviewing and processing...Remote job
$170k - $221k
...responsibility. Employees are expected to handle sensitive employee, financial, and company information in accordance with company security, confidentiality, and privacy policies, and promptly report suspected security incidents or policy violations. #J-18808-Ljbffr...- Select how often (in days) to receive an alert: Lead Gas Compliance Specialist - Pipeline Safety & Regulatory Affairs CenterPoint Energy and its predecessor companies have been in business for more than 150 years. Our Vision: Our vision is to become the most admired utility...Full timeFor contractorsFor subcontractorWork at officeFlexible hoursNight shift
- Choctaw Nation of Oklahoma seeks an AML/CFT Compliance Specialist to deter and detect potential risks across gaming operations. The role requires advanced knowledge of regulatory requirements and the ability to implement effective controls. The position emphasizes timely...
$25 - $50 per hour
...Role Overview TSA is accepting applications for Lead and Supervisory Transportation Security Officers at airports in Ridgewood. These roles are ideal... ...Supervise screening teams Ensure TSA compliance Train and mentor officers Manage checkpoint operations...Shift workNight shiftWeekend work$25 - $50 per hour
...Role Overview TSA is accepting applications for Lead and Supervisory Transportation Security Officers at airports in North Bergen. These roles are... ...Responsibilities Supervise screening teams Ensure TSA compliance Train and mentor officers Manage checkpoint...Shift workNight shiftWeekend work- ...Earned Value Management Implementation Lead: All Jobs > Deltek Cobra Earned Value Management... ...to support Earned Value Management in compliance with ANSI/EIA-748, including cost/... ...working with Agile development teams. Security Clearance: Authorized to Work in the US...Full timeContract workPart timeFor contractorsWork at officeLocal areaRemote work
- NS4 Inc. is seeking an experienced Endpoint Security Administrator (Senior/SME) to join the Cyber Security Services team at Fort Lee,... ...securing the DeCA enterprise's endpoint defenses and ensuring compliance with DoD requirements. The ideal candidate brings deep technical...
- Litehouse is seeking a Security & Compliance Lead to own the compliance program across SOC 2 and GDPR. You will verify security controls, manage audits, and coordinate with engineering, auditors, and clients to ensure controls meet requirements. Ideal candidates have 4...Remote work
- The Senate Sergeant at Arms seeks a seasoned Manager of Physical Security Programs to lead the team responsible for tracking, coordinating, and reporting on security projects across the Capitol Campus. This role requires strong collaboration, presentation and reporting...
- Figma is seeking a Technical Program Manager to support its Security Operations team. You will own end-to-end program execution for security, compliance, and infrastructure initiatives, coordinating across business and technology teams in a fast-paced cloud/SaaS environment...Remote jobFull time
$99.8k - $219.6k
Job Title: Innovation Lead Job Category: Science Time Type: Full time Minimum Clearance Required to Start: TS/SCI Employee Type: Regular... ...The Opportunity: Join a team dedicated to advancing national security through innovative irregular warfare and operations expertise. CACI...Full timeContract workWork experience placementLocal areaFlexible hours- Xcel Energy Inc is seeking a senior-level professional to guide physical security regulatory compliance across Federal, State, and local jurisdictions. The role involves developing programs, coordinating filings, and delivering testimony in regulatory proceedings to ensure...Local area
- Quantum Sky is seeking an Electronics Security Systems Site Lead Technician to support day-to-day activities for several programs. You will lead, mentor, and coordinate technician teams to deliver high-quality installations from kickoff to close. Required: 5+ years in...Remote job
- Goldbelt, Inc. seeks an EFB Manager to lead the Wing/Ops Group EFB program, ensuring devices operate with current publications and security directives. The role requires coordinating with AFGSC/A3TV and squadron managers to maintain accurate appointment letters and documentation...
- ...Senior Director of Government Programs to lead and expand the company’s government-... ...with BARDA, ASPR, DoD, and related health security programs. The role requires deep expertise... ...position emphasizes program governance, compliance with FAR/DFARS, cross-functional...
- ...Institute's cyber programs are at the cutting edge of technology and security. About Forge Institute, our mission is to advance critical... ...positive change. Position Description: The Role The Utility Engagement Lead is the linchpin of Forge’s utility-facing work. Effective...Ongoing contractPermanent employmentShift work2 days per week
- Leidos in Virginia is seeking an Information System Security Manager (ISSM) to oversee the cybersecurity posture of DoD information systems... ...or active clearance, DoD policy experience, and the ability to lead cross‑functional teams while delivering continuous monitoring,...
- Metro Fire + Security, Arizona's full-service fire protection company, is seeking a Lead Installation Security Technician. The role focuses on installing and replacing... ..., coordinate with customers, ensure safety compliance, and mentor junior technicians. Travel to multiple...
$158k - $184k
Washington, D.C. Backed by leading Silicon Valley investors, Peregrine helps public safety... ...decisions in environments where security, availability, data protection, and customer... ...customers, we are building the security and compliance capabilities necessary to operate some...Contract workFor contractorsFor subcontractorWork at officeLocal areaRelocationVisa sponsorship- Verus Research in Albuquerque, NM seeks an Information Systems Security Manager (ISSM)/Alternate Facility Security Officer (AFSO) to lead cybersecurity activities and safeguard critical government systems. The role focuses on governance, risk evaluation, and CMMC readiness...
$185k - $225k
...move from idea to production with speed, security, and exceptional developer experience.... ...Role: We are looking for a Global Benefits Lead to join our People team. In this role,... ...vendor selection (TPA, stop-loss, PBM), and compliance considerations Partner with EOR...Work at officeLocal areaRemote workWork from homeWorldwideMonday to FridayFlexible hours- Peregrine Technologies, Inc. in Washington, DC, is seeking a senior Governance, Risk, and Compliance leader to own FedRAMP High and establish security foundations for DoD IL4-IL6 deployments. This role requires translating federal requirements into implementable controls...
- ...rigor, and customer-driven innovation. Core Responsibilities Compliance & Governance Own and administer Litehouse's Vanta instance, including... ..., DPIAs, and sub-processor management. Refine and maintain security and compliance policies, keeping them aligned with each other...Contract workFor contractorsFor subcontractorWork at officeRemote workFlexible hours
- Scale AI seeks an Engagement Manager to lead delivery of agentic workflows for a national security customer. You will own or support a large account plan, manage day-to-day execution, and ensure exceptional customer experience. This role blends program leadership, customer...Contract work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead DI Security and Compliance Analyst. Be the first to apply!
- rate analyst Brooklyn, NY
- work from home security analyst Brooklyn, NY
- entry level information security analyst Brooklyn, NY
- national security analyst Brooklyn, NY
- application security analyst Brooklyn, NY
- information security analyst Brooklyn, NY
- entry level security analyst Brooklyn, NY
- security analyst Brooklyn, NY
- security operations analyst Brooklyn, NY
- information security compliance analyst Brooklyn, NY



