Information Security - Risk & Compliance Analyst
Victaulic
Security Risk & Compliance Analyst
The Security Risk & Compliance Analyst supports the organizations global information security program by assisting in the identification, assessment, and management of information security risks and compliance demands across Victaulic's entire organization. This position plays an integral role in ensuring the company meets its obligations under domestic and international regulatory frameworks, including but not limited to, NIST CSF, ISO27001, CMMC and the EU's NIS2 Directive. The analyst will work closely with internal stakeholders, external auditors, and third-party vendors to support a culture of security awareness and continuous compliance improvement.
The ideal candidate for this role will have knowledge of, if not actual experience, in the processes of obtaining and maintaining compliance with security frameworks as well as an understanding of industry standard Information Technology auditing.
Responsibilities
Risk Assessment & Management
- Assist in conducting information security risk assessments across business units, systems, and processes in accordance with established methodologies.
- Document risk findings, assign risk ratings, and track remediation activities through the risk register.
- Support the development and maintenance of risk treatment plans in coordination with system owners and IT teams.
- Participate in annual and ad hoc enterprise risk reviews, contributing analysis and supporting materials.
Compliance & Framework Management
- Support compliance activities related to NIST Cybersecurity Framework (CSF), ISO/IEC 27001, CMMC (Cybersecurity Maturity Model Certification), and the EU NIS2 Directive.
- Conduct gap analyses against applicable frameworks and assist in developing remediation roadmaps.
- Maintain compliance documentation, including policies, procedures, control evidence, and assessment reports.
- Monitor regulatory changes and emerging framework updates; summarize implications for the security program.
Third-Party & Audit Management
- Coordinate and support third-party security audits and assessments, including scheduling, evidence collection, and stakeholder communication.
- Assist in managing vendor risk assessments for new and existing third-party vendors and suppliers.
- Track audit findings and corrective action plans, ensuring timely remediation and closure.
- Serve as a liaison between internal teams and external auditors during certification audits.
Policy, Documentation & Awareness
- Assist in drafting, reviewing, and updating information security policies, standards, and procedures.
- Support the delivery of security awareness training and phishing simulation programs.
- Maintain organized records of all compliance and risk management activities in the Governance, Risk & Compliance platform.
Collaboration & Reporting
- Collaborate with IT, Legal, Operations, and other business functions to integrate security requirements into business processes.
- Prepare regular status reports and metrics dashboards for management review.
- Contribute to the continuous improvement of the information security program by identifying process gaps and recommending enhancements.
Qualifications
Technical Experience
- Foundational understanding of information security principles, including confidentiality, integrity, and availability (CIA).
- Basic understanding of risk assessment methodologies and risk management concepts.
- Familiarity with third-party risk management and audit processes.
- Strong analytical and problem-solving skills with attention to detail.
- Capacity to understand legacy and progressive technology and security controls along with respective risk.
- Working knowledge of technologies such as cloud computing, DevOps, and application security is required.
General Requirements
- Analytical Thinking – applies structured reasoning to evaluate risk and compliance data objectively
- Integrity & Accountability – Handles sensitive security information with discretion and professionalism.
- Communication – Clearly translates security requirements and findings for varied audiences across the organization
- Continuous Learning – Proactively keeps pace with evolving security frameworks, threats, and regulatory requirements
- Collaboration – Builds effective working relationships across IT, operations, and business functions globally
- Detail Orientation – Produces thorough, accurate documentation and maintains meticulous records of compliance activities
Education & Certifications
- 0 – 2 years' experience in information security, IT audit, risk management, or a related field.
- Bachelor's degree, cybersecurity certification, or equivalent experience in an information security or related field.
- A minimum of an entry-level certification such as the CompTIA Security+ certification
- Additional Risk & Compliance certification(s), such as CISA, a plus
Work Environment & Physical Requirements
- This position is primarily office-based with hybrid flexibility. The role may require occasional visits to manufacturing facilities domestically and internationally. Ability to work across global time zones may be required for coordination with European and Asian teams.
Victaulic is an Equal Employment Opportunity (EOE/M/F/Vets/Disabled) employer and welcomes all qualified applicants. Applicants will receive fair and impartial consideration without regard to race, gender, color, religion, national origin, age, disability, veteran status, sexual orientation, genetic data, or other legally protected status. (Background checks may be required as part of our pre-employment process).
- ...GRC Analyst HYDAC is a family-owned and operated business with... ...development of our Information Security Management System, and its rollout... .... Creation of threat and risk analyses. Coordinate updates... ...activities to evidence our compliance with IT controls. Consult...SuggestedTemporary workWork at officeLocal areaWorldwideRelocation
- ...Job Description: The Regulatory & Compliance Specialist ensures that Bakerly products... ...&D. Ensuring compliance of nutrition information and regulatory statements used in product... ...local levels. Identifying regulatory risks affecting, labeling, ingredients, claims...SuggestedFull timeTemporary workWork at officeLocal areaFlexible hours
$92.22k - $115.27k
...Position Summary We are seeking a Risk and Reliability Statistical Specialist to... ...optimize sampling strategies, and ensure compliance within a regulated environment. Key... ...national origin, age, pregnancy, genetic information, disability, status as a protected veteran...SuggestedWork at officeRemote work- ...Trade Compliance Analyst/Specialist (contract) NO C2C Global Pharmaceutical Manufacturing company is seeking an experienced Trade Compliance contractor for a 3+-month engagement to support active workstreams across import/export operations, foreign trade zone...SuggestedContract workFor contractors
- ...brands - QVC®, HSN®, Ballard Designs®, Frontgate®, Garnet Hill® and Grandin Road. Your Opportunity, Your Team The Vendor Compliance Specialist supports QVC and serves as a key liaison between QVC, its vendor base, merchandising teams, and the Fulfillment Center...SuggestedLocal areaRelocation package
- ...Trade Compliance Coordinator (contractor) Global Pharmaceutical Manufacturing Company is seeking a Trade Compliance Assistant to the Director of Supply Chain for a 3+ month contract to support active workstreams across i mport/export operations, classification,...Contract workFor contractorsWork experience placement
- Description Business Analyst, Easton, PA GENERAL SUMMARY: The primary role of the Business Analyst (BA) is to ensure that... ...DUTIES & RESPONSIBILITIES: Provide a bridge role between Information Technology and the business. Acts as a business relationship manager...Full time
- ...Description POSITION: Product Configuration Analyst LOCATION : Supply Chain-World Headquarters REPORTS TO : Product... ...knowledge for part code and BOM development and shares this information with key stakeholders to enable effective execution globally...Work experience placement
- ...understand our consumers better. SR SAP Analyst PP/MM/WM, Full Time, Hybrid, Easton... ...and processes to remain in compliance for maintenance, security continuous monitoring and recovery... ...federal employment laws. For further information, please review the Know Your Rights...Full timeWork at office
$24 - $26 per hour
...Allied Personnel Services is seeking candidates for a Sales Support Analyst opening! This temp to hire opening offers full time hours, Mon-Fri. Pay is $24.00-26.00/hr based on experience. In this role you will, provide sales related support to the sales team: serve...Full timeTemporary work- ...Job Description Job Description Quality Assurance Compliance Support Specialist If you are attracted to a career opportunity... ...proficient level and effectively communicate moderately complex information in a concise and understandable way. Organizational...
$55k - $65k
...attentive and observant person who can uncover valuable insights from data and support informed decision-making, then you could be the next full-time Inventory Control Data Analyst (Travel Required) at Johnstone Supply ! With a friendly, fun, and team-oriented environment...Full timeFor contractors- ...model capabilities in coding, reasoning, tool use, and multimodality. Role Overview : Turing is seeking detail-oriented AI Analysts based in the United States to support a Google Wallet evaluation project. This is a Generalist role and do not require candidates...Full timeContract workRemote work
- ...Title 31 Analyst I Job Overview: The Wind Creek Hospitality Title... ...I focuses on ensuring compliance with applicable laws, regulations... ...transactional records prior to the information being reported, making... ...diligence procedures, the annual risk assessment, and AML Program...Odd jobNight shift
- ...Job Title Obtains information from various law enforcement, financial, and tax databases and compiles that data into written reports that assess case potential or corroborates allegations of possible criminal activity. Correlates collected information by manipulating...Local area
$68.97k - $113.31k
...Job Purpose The Business Analyst partners with business and technology stakeholders to identify, analyze, and document business... ...autonomy in day-to-day responsibilities. ~ Serves as a resource and informal mentor to colleagues with less experience. ~ Represents a...Full timeVisa sponsorshipWork visaFlexible hours$68.97k - $113.31k
...Process Improvement Analyst III This is a hybrid position, which requires three days per week attendance in one of our primary office... ..., and oversight of underwriting protocols that monitor compliance with state and federal regulatory requirements and align with...Work at officeRemote workWork from homeHome officeVisa sponsorshipWork visa3 days per week$70k - $115k
...The Business Data Analyst I role has a national salary range of $70,000 - $115,000. For roles within California the range is $70,304 - $115,000 and Washington is $80,169 - $115,000. DHL Supply Chain offers multiple benefits including Medical, Dental, Vision, Prescription...$55k
...be the right fit for you! Under HCS, the Business Systems Analyst position in Bethlehem, PA supports Miller-Keystone Blood Center... ...results ~ Familiarity with AI is a plus Additional information: Technical certifications or hands-on system...Full timeRemote workRelocationMonday to FridayFlexible hours- ...Financial Business Analyst HYDAC is a family-owned and operated business with a vibrant and rewarding working environment for our employees across the country. Our goal is to provide quality products, components and services that meet our customer expectations while...Temporary workWork at officeLocal area
- ...Marketing Intelligence Analyst Software Guidance & Assistance, Inc. (SGA) is searching for a Marketing Intelligence Analyst for... ...production for marketing campaigns, ensuring accuracy, timeliness, and compliance across channels Execute audience segmentation using defined...Contract work
- ...Marketing Intelligence Analyst Position Summary: As a Marketing Intelligence Analyst... ...segmentation logic, filters, exclusions, and compliance rules. Perform data QA to verify... ...exploratory analysis to uncover insights that inform targeting strategies and optimization...2 days per week3 days per week
$55k - $70k
...Job Description Job Description Job Title: Inventory Data Analyst-Travel Required FLSA Status: Exempt Reports to: Salary Range: Regional Operations Manager $55,000 - $70,000 Position Summary: At Johnstone Supply, we’re always looking to strengthen...Full timeWork experience placementWork at officeLocal areaMonday to Friday$75k - $90k
...Braun Medical, visit Position Summary: The OEM Sales Analyst is responsible for owning the lead intake process and... .../or external clients and customers to negotiate and interpret information on projects and unit operations. May consult with senior management...Seasonal work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Information Security - Risk & Compliance Analyst. Be the first to apply!



