IT Security & Compliance Specialist I - EHRA - Early Career
$75.82k - $90kState of North Carolina
Agency Department of Information Technology
Division
DIT Secretary , CIOJob Classification Title
IT Security & Compliance Specialist I (NS)Position Number
65041630Grade
DT08About Us
The N.C. Department of Information Technology (NCDIT) serves as the Technology Center for the State of NC. Services that NCDIT provides reach a client base of state and local government agencies, as well as schools, colleges and universities. NCDIT’s mission is to enable trusted business-driven solutions that meet the needs of North Carolinians. NCDIT provides technology services to state agencies and is charged with closing the digital divide by expanding availability of broadband services and promoting the adoption of affordable, high-speed internet.
Description of Work
Salary Range: $75,818 - $90,000 The position is designated Statutory Exempt (EHRA) and is exempt from the State Human Resources Act. This position may be eligible for hybrid remote work in accordance with state policy and the agency’s remote work program but does require weekly onsite work. Any telework will be under the conditions of the state Teleworking Program Policy and the employer may end any teleworking arrangement at any time in the employer's sole discretion. The Early Career Associate Program is ideal for recent graduates, early-career professionals, or those looking to transition to a new career seeking broad exposure to state IT operations. The Early Career Associate Program is a two-year on-the-job training (OJT) program designed for individuals with three years or less of professional experience. After gaining exposure to the role through the development process, participants will have the opportunity to be placed in a permanent role based on mutual fit and career goals. Are you excited to launch your cybersecurity career and make an immediate impact? As an IT Security & Compliance Specialist I, you’ll work side‑by‑side with experienced security professionals to explore how modern technology is secured across an entire state enterprise. In this role, you’ll get hands‑on experience evaluating security controls, supporting risk‑based decision‑making, and learning core disciplines like Zero Trust, cloud and application security, identity and access management, vulnerability management, and emerging technology risk. If you’re eager to grow, curious about how large‑scale IT environments operate, and ready to help protect critical systems and data, this position offers a unique opportunity to build your skills while contributing to meaningful work. Key Responsibilities: • Conduct security assessments of new and existing applications, systems, cloud services, software, and technology solutions.• Review technology and business requests to identify cybersecurity risks, control requirements, and potential security gaps.
• Assist with the development and maintenance of security assessments, system security documentation, security standards, procedures, and other governance artifacts.
• Review firewall, network, access, and system configuration requests for alignment with security principles and organizational requirements.
• Support vulnerability management and threat-informed activities, including vulnerability analysis, threat hunting, remediation tracking, and identification of potential security exposures.
• Assist with identity and access management reviews, including privileged access, service accounts, authentication, least privilege, and Zero Trust considerations.
• Participate in cybersecurity audits, control assessments, risk assessments, and remediation activities aligned with applicable security frameworks and organizational requirements.
• Assist with documenting, evaluating, and tracking cybersecurity risks, security exceptions, compensating controls, and risk acceptance decisions.
• Collaborate with infrastructure, cloud, application, network, architecture, privacy, and business teams to integrate security requirements into technology initiatives.
• Research emerging technologies, threats, vulnerabilities, and security practices, including cybersecurity considerations associated with artificial intelligence and cloud technologies. About the Division: The Information Security team provides cybersecurity risk management, governance, security assessment, and advisory services that help protect organizational information systems and technology assets while enabling the delivery of business and technology services. The team works collaboratively across technology and business functions to identify and communicate cybersecurity risk, establish security requirements and standards, assess the effectiveness of security controls, and provide practical recommendations for reducing risk. The work unit supports a broad range of cybersecurity disciplines, including governance, risk and compliance (GRC), security architecture, Zero Trust, identity and access management, application and cloud security, vulnerability and threat management, data protection, third-party risk, and emerging technology security. The team operates with a risk-based approach that seeks to enable innovation and business objectives while ensuring cybersecurity risks are understood, appropriately mitigated, documented, and accepted by the appropriate stakeholders.
Knowledge Skills and Abilities/Management Preferences
The following Management Preferences are not required, but applicants that possess these skills are preferred:
• Demonstrated knowledge of cybersecurity fundamentals , including at least three of the following areas: network security, identity and access management, vulnerability management, endpoint security, cloud security, data protection, security operations, or governance, risk and compliance (GRC).
• Demonstrated ability to identify and evaluate cybersecurity risks and controls , gained through academic coursework, internships, cybersecurity labs, capstone projects, certifications, volunteer experience, or professional experience.
• Working knowledge of networking, operating systems, and enterprise technology concepts , including foundational understanding of TCP/IP, firewalls, authentication and authorization, Windows and/or Linux operating systems, and common cloud or web-based technologies.
Discover why NCDIT is the ideal destination for your professional growth - Why Work for NCDIT
Minimum Education and Experience
Some state job postings say you can qualify by an “equivalent combination of education and experience.” If that language appears below, then you may qualify through EITHER years of education OR years of directly related experience, OR a combination of both. See the Education and Experience Equivalency Guide for details.
Bachelor’s degree in computer science or a related IT related field or closely related field from an appropriately accredited institution and one year experience in IT Security
or
Associate degree in computer science or a related IT related field or closely related field from an appropriately accredited institution and two years of experience in IT Security; or an equivalent combination of education and experience.
Note: This position requires a fingerprint-based background search. Hires must agree to a fingerprint-based background search prior to being hired.
EEO Statement
The State of North Carolina is an Equal Employment Opportunity Employer and dedicated to providing employees with a work environment free from all forms of unlawful employment discrimination, harassment, or retaliation. The state provides reasonable accommodation to employees and applicants with disabilities; known limitations related to pregnancy, childbirth, or related medical conditions; and for religious beliefs, observances, and practices.
Recruiter:
Shaun OsborneRecruiter Email:
$81.5k - $122.26k
...position is designated Statutory Exempt (EHRA) and is exempt from the State Human Resources... ...you ready to take the next step in your career? We currently have an opening for an Applications... ...to Enterprise Business Services an IT competency center whose mission is to...SuggestedFull timeLocal areaRemote work- ...Overview: Position: Junior Cyber Security Consultant Location: Charlotte, NC Experience: 0-2 Years Employment Type:... ...Overview We are looking for recent college graduates or early-career professionals with 0-2 years of experience to join our Cyber...Entry levelFull timeRemote workWork from home
- This role is based within the IT Depertment which plays a... ...business. About the role Cyber security is now a continuous business... ...positioned as a graduate or early-career development opportunity for someone... ...work Support governance and compliance activity, including Cyber...Entry level
- ...SGI Global is seeking qualified Junior Compliance Officer to support a federal law enforcement... .... The position is ideal for early-career professionals interested in federal compliance... ...processes in government location Security Requirements ~ All candidates will...Entry levelContract workFor contractorsLocal areaRemote workWeekend work
$35k - $48k
...Junior Compliance Officer (Operations, Junior Analyst) Position Location Charlotte, NC The... .... The position is ideal for early‑career professionals interested in federal compliance... ...refresher courses in areas such as information security, records management, and privacy, and...Entry levelFull timeContract workFor contractorsWork at officeRemote workWeekend work- SummaryThe AI Senior Compliance Advisor will be a key member of the growing Enterprise Compliance and Governance (EC&G) Compliance Team, serving as an experienced second-line Compliance advisor responsible for advisory support for Artificial Intelligence (“AI”) across...Full time
- Esh Group is seeking a Cyber Security Analyst based in Bowburn to help turn cyber security investment... ...and clearer governance. The role sits in the IT Department and offers a development path for graduates or early-career professionals passionate about security. You will...Entry level
$105.4k - $207.8k
...threat landscape through scalable, resilient security operations solutions. In this hands-on... ...threats, vulnerabilities, and compliance trendsA successful candidate would possess... ...opportunities to continue to grow throughout their career. As used in this posting, "...Entry levelLocal areaVisa sponsorship$105.4k - $207.8k
...could be the place for you. Traditional security programs have often been unsuccessful in... ...associated with at least 1 regulatory or compliance framework, such as ISO 27001/27017, SOC... ...opportunities to continue to grow throughout their career. As used in this posting, "...Entry levelLocal areaWorldwideVisa sponsorship$122k - $240.5k
...safety capabilities, implement product compliance controls, operationalize privacy-by-design... ...communicate effectively with business, security, privacy, legal, and compliance stakeholders... ...to continue to grow throughout their career. As used in this posting, "...Entry levelLocal areaVisa sponsorship$105.4k - $207.8k
...enterprise environments. You’ll help bridge security findings with operational action by... ...ll doAs a Senior Engineering Management Specialist on the Cyber Defense & Resilience Continuous... ...to continue to grow throughout their career. As used in this posting, "Deloitte...Entry levelLocal area- ...Overview EHRA Human Resources Consultant role at Inside Higher... ...Personnel Admin-260106 Career Area: Human Resources Posting... ...administration. Ensure compliance with university, state, and federal... ...preferred. Campus Security Authority Not Applicable....Entry levelPermanent employmentFull timeTemporary workPart timeRemote work
- The Department of Information Technology in Raleigh, North Carolina, is seeking an IT Security & Compliance Specialist I (NS) to join the Early Career Associate Program. This two‑year OJT program exposes you to security controls, Zero Trust, cloud, IAM, vulnerability management...Entry levelRemote jobPermanent employment
$86.7k - $170.9k
Position Summary Consultant - Regulatory & Compliance - Enterprise Operations & Risk Our Deloitte Regulatory, Risk & Forensic team... ...variety of opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means Deloitte & Touche...Entry levelLocal areaVisa sponsorship$134.5k - $265.1k
...preferred.Familiarity with cybersecurity concepts (e.g., application security, cloud security, identity, detection engineering).Experience... ...variety of opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means Deloitte &...Entry levelLocal areaVisa sponsorship$82.6k - $162.8k
...with confidence, and proactively manage to secure success.Recruiting for this role ends on... ...with business stakeholders, cyber specialists, developers, testers, and alliance/vendor... ...opportunities to continue to grow throughout their career. As used in this posting, "...Entry levelLocal areaVisa sponsorship- ...IT Security Specialist The NC Department of Health and Human Services seeks a highly experienced IT Security Specialist to manage, assist and assess NCFAST compliance with CMS, USDA, ACF, State of NC and DHHS requirements. This resource must manage and review the RFP...
- ...IT Security Specialist Charlotte North Carolina (Hybrid role) Must have skill: Web Security, Microsoft Office, Splunk Job Description Candidate will participate in multiple projects and have a specific set of deliverables around Performance...Work at office
- Perform SOX IT and cybersecurity compliance testing. Identify and assess Truist’s Corporate cybersecurity legal, regulatory and industry compliance... ...and track the cyber program maturity, serving as a security advisor to business segments and functions. This position...Full timePart timeWork at officeShift workDay shift
- Vision Technologies seeks an entry-level Site Safety Coordinator to support foremen in developing Job Hazard Analyses and ensuring OSHA-aligned operations. The role focuses on delivering world-class safety and quality while building a trusted customer relationship. The...Entry level
$105.4k - $207.8k
...with confidence, and proactively manage to secure success. Identity security market is... ...ll doAs a Senior Engineering Management Specialist on the Deloitte Cyber Identity & Access... ...opportunities to continue to grow throughout their career. As used in this posting, "...Entry levelLocal areaVisa sponsorship$68k - $133.9k
Position Summary Cyber Oracle Cloud Security - Analyst / Security Engineer I Deloitte... ...security, governance, risk, and compliance across Enterprise Resource Planning (ERP... ...opportunities to continue to grow throughout their career. As used in this posting, "...Entry levelLocal areaVisa sponsorship- ...looking for a Junior Intellectual Property Associate in Raleigh, North Carolina. This position offers a unique opportunity for an early-career attorney to gain hands-on experience in advising clients on a wide range of intellectual property and commercial matters. The...Entry level
- ...and research activities while expanding your technical knowledge and engineering skills. This role offers hands-on experience with advanced software technologies and mission-focused engineering projects, ideal for recent graduates or early-career #J-18808-Ljbffr VadumEntry level
- ...Raleigh or Charlotte office***• This team uses automated API security tools like Akamai, Salt Security and ReadyAPI tools to identify... ...area of responsibility, helping maintain regulatory and policy compliance.Shares knowledge and best practices with technical teammates,...Full timePart timeWork at officeShift workDay shift
- ...looking for builders, problem-solvers, and security professionals who thrive in a fast-... ...evidence to support regulatory, audit, and compliance requirements.Offensive Security... ...Directory Penetration Tester, Web Exploitation Specialist, Web Exploitation Expert, Offensive AI...Permanent employmentFull timePart timeH1bWork visaShift workDay shift
$105.4k - $207.8k
...Join Deloitte’s Cloud Cyber Risk practice and help organizations secure cloud transformation at scale. As a Cloud Architect, Senior... ...a variety of opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means Deloitte & Touche...Entry levelLocal areaVisa sponsorship- ...identify, assess, and mitigate technology risks while ensuring compliance with applicable federal, state, and local regulations. This... ...monitoring under the guidance of senior technology and information security staff. The role also supports documentation of security...Entry levelLocal area
$78.68k - $157.88k
...Reports (SOC 1,2,3)System ImplementationsCyber Security AuditsInternal Control AssessmentsDigital... ...services, external audit, or IT auditDemonstrated ability to plan and manage... ...opportunities to continue to grow throughout their career. As used in this posting, "...Entry levelWork experience placementWork at officeLocal areaVisa sponsorship- ...Huxley in Charlotte, NC is seeking an early-career Data Engineer to support financial crime analytics on the Quantexa platform. You will design, build, and maintain data pipelines, collaborate with stakeholders, and contribute to AML risk scoring and reporting. You should...Entry levelFull time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Security & Compliance Specialist I - EHRA - Early Career. Be the first to apply!
- regulatory compliance analyst North Carolina
- medicare compliance specialist North Carolina
- regulatory analyst North Carolina
- regulatory specialist North Carolina
- risk and compliance analyst North Carolina
- aml compliance analyst North Carolina
- regulatory compliance associate North Carolina
- compliance officer North Carolina
- compliance associate North Carolina
- compliance consultant North Carolina

