IT Security & Compliance Specialist I - EHRA - Early Career
$75.82k - $90kDepartment of Information Technology
Agency Department of Information Technology Division DIT Secretary , CIO Job Classification Title IT Security & Compliance Specialist I (NS) Position Number 65041630 Grade DT08 About Us The N.C. Department of Information Technology (NCDIT) serves as the Technology Center for the State of NC. Services that NCDIT provides reach a client base of state and local government agencies, as well as schools, colleges and universities. NCDIT’s mission is to enable trusted business-driven solutions that meet the needs of North Carolinians. NCDIT provides technology services to state agencies and is charged with closing the digital divide by expanding availability of broadband services and promoting the adoption of affordable, high-speed internet. Description of Work Salary Range: $75,818 - $90,000 The position is designated Statutory Exempt (EHRA) and is exempt from the State Human Resources Act. This position may be eligible for hybrid remote work in accordance with state policy and the agency’s remote work program but does require weekly onsite work. Any telework will be under the conditions of the state Teleworking Program Policy and the employer may end any teleworking arrangement at any time in the employer's sole discretion. The Early Career Associate Program is ideal for recent graduates, early-career professionals, or those looking to transition to a new career seeking broad exposure to state IT operations. The Early Career Associate Program is a two-year on-the-job training (OJT) program designed for individuals with three years or less of professional experience. After gaining exposure to the role through the development process, participants will have the opportunity to be placed in a permanent role based on mutual fit and career goals. Are you excited to launch your cybersecurity career and make an immediate impact? As an IT Security & Compliance Specialist I, you’ll work side‑by‑side with experienced security professionals to explore how modern technology is secured across an entire state enterprise. In this role, you’ll get hands‑on experience evaluating security controls, supporting risk‑based decision‑making, and learning core disciplines like Zero Trust, cloud and application security, identity and access management, vulnerability management, and emerging technology risk. If you’re eager to grow, curious about how large‑scale IT environments operate, and ready to help protect critical systems and data, this position offers a unique opportunity to build your skills while contributing to meaningful work. Key Responsibilities Conduct security assessments of new and existing applications, systems, cloud services, software, and technology solutions. Review technology and business requests to identify cybersecurity risks, control requirements, and potential security gaps. Assist with the development and maintenance of security assessments, system security documentation, security standards, procedures, and other governance artifacts. Review firewall, network, access, and system configuration requests for alignment with security principles and organizational requirements. Support vulnerability management and threat‑informed activities, including vulnerability analysis, threat hunting, remediation tracking, and identification of potential security exposures. Assist with identity and access management reviews, including privileged access, service accounts, authentication, least privilege, and Zero Trust considerations. Participate in cybersecurity audits, control assessments, risk assessments, and remediation activities aligned with applicable security frameworks and organizational requirements. Assist with documenting, evaluating, and tracking cybersecurity risks, security exceptions, compensating controls, and risk acceptance decisions. Collaborate with infrastructure, cloud, application, network, architecture, privacy, and business teams to integrate security requirements into technology initiatives. Research emerging technologies, threats, vulnerabilities, and security practices, including cybersecurity considerations associated with artificial intelligence and cloud technologies. About the Division The Information Security team provides cybersecurity risk management, governance, security assessment, and advisory services that help protect organizational information systems and technology assets while enabling the delivery of business and technology services. The team works collaboratively across technology and business functions to identify and communicate cybersecurity risk, establish security requirements and standards, assess the effectiveness of security controls, and provide practical recommendations for reducing risk. The work unit supports a broad range of cybersecurity disciplines, including governance, risk and compliance (GRC), security architecture, Zero Trust, identity and access management, application and cloud security, vulnerability and threat management, data protection, third‑party risk, and emerging technology security. The team operates with a risk‑based approach that seeks to enable innovation and business objectives while ensuring cybersecurity risks are understood, appropriately mitigated, documented, and accepted by the appropriate stakeholders. Knowledge Skills and Abilities/Management Preferences Demonstrated knowledge of cybersecurity fundamentals, including at least three of the following areas: network security, identity and access management, vulnerability management, endpoint security, cloud security, data protection, security operations, or governance, risk and compliance (GRC). Demonstrated ability to identify and evaluate cybersecurity risks and controls, gained through academic coursework, internships, cybersecurity labs, capstone projects, certifications, volunteer experience, or professional experience. Working knowledge of networking, operating systems, and enterprise technology concepts, including foundational understanding of TCP/IP, firewalls, authentication and authorization, Windows and/or Linux operating systems, and common cloud or web‑based technologies. Minimum Education and Experience Some state job postings say you can qualify by an “equivalent combination of education and experience.” If that language appears below, then you may qualify through EITHER years of education OR years of directly related experience, OR a combination of both. See the Education and Experience Equivalency Guide for details. Bachelor’s degree in computer science or a related IT related field or closely related field from an appropriately accredited institution and one year experience in IT Security or Associate degree in computer science or a related IT related field or closely related field from an appropriately accredited institution and two years of experience in IT Security; or an equivalent combination of education and experience. Note: This position requires a fingerprint-based background search. Hires must agree to a fingerprint-based background search prior to being hired. EEO Statement The State of North Carolina is an Equal Employment Opportunity Employer and dedicated to providing employees with a work environment free from all forms of unlawful employment discrimination, harassment, or retaliation. The state provides reasonable accommodation to employees and applicants with disabilities; known limitations related to pregnancy, childbirth, or related medical conditions; and for religious beliefs, observances, and practices. #J-18808-Ljbffr Department of Information Technology
$87.62k - $117k
...IT Security & Compliance Specialist II (NS) The Application Security Penetration Tester is responsible for identifying, analyzing, and mitigating vulnerabilities in software applications and APIs throughout the development lifecycle. This role collaborates closely with...SuggestedContract workWork experience placementWork at officeNight shift- This role is based within the IT Depertment which plays a... ...business. About the role Cyber security is now a continuous business... ...positioned as a graduate or early-career development opportunity for someone... ...work Support governance and compliance activity, including Cyber...Entry level
- Esh Group is seeking a Cyber Security Analyst based in Bowburn to help turn cyber security investment... ...and clearer governance. The role sits in the IT Department and offers a development path for graduates or early-career professionals passionate about security. You will...Entry level
$110.7k - $218.3k
...role ends on 12/31/2026.Work you'll doAs a Security Engineer II on the Cyber Defense &... ...guidance to othersThe teamDeloitte’s Cyber Specialists help organizations manage cyber risk through... ...to continue to grow throughout their career. As used in this posting, "...Entry levelLocal area$105.4k - $207.8k
...threat landscape through scalable, resilient security operations solutions. In this hands-on... ...threats, vulnerabilities, and compliance trendsA successful candidate would possess... ...opportunities to continue to grow throughout their career. As used in this posting, "...Entry levelLocal areaVisa sponsorship$122k - $240.5k
...safety capabilities, implement product compliance controls, operationalize privacy-by-design... ...communicate effectively with business, security, privacy, legal, and compliance stakeholders... ...to continue to grow throughout their career. As used in this posting, "...Entry levelLocal areaVisa sponsorship- The Department of Information Technology in Raleigh, North Carolina, is seeking an IT Security & Compliance Specialist I (NS) to join the Early Career Associate Program. This two‑year OJT program exposes you to security controls, Zero Trust, cloud, IAM, vulnerability management...Entry levelRemote jobPermanent employment
$134.5k - $265.1k
...preferred.Familiarity with cybersecurity concepts (e.g., application security, cloud security, identity, detection engineering).Experience... ...variety of opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means Deloitte &...Entry levelLocal areaVisa sponsorship$82.6k - $162.8k
...with confidence, and proactively manage to secure success.Recruiting for this role ends on... ...with business stakeholders, cyber specialists, developers, testers, and alliance/vendor... ...opportunities to continue to grow throughout their career. As used in this posting, "...Entry levelLocal areaVisa sponsorship- Perform SOX IT and cybersecurity compliance testing. Identify and assess Truist’s Corporate cybersecurity legal, regulatory and industry compliance... ...and track the cyber program maturity, serving as a security advisor to business segments and functions. This position...Full timePart timeWork at officeShift workDay shift
- ...IT Security Specialist The NC Department of Health and Human Services seeks a highly experienced IT Security Specialist to manage, assist and assess NCFAST compliance with CMS, USDA, ACF, State of NC and DHHS requirements. This resource must manage and review the RFP...
- ...Security Specialist Location: Raleigh NC 27601 Duration: Long Term The Compliance Officer will be familiar with risk management, comfortable leading internal risk assessments, and possess knowledge of HIPAA and NIST privacy and security requirements for health...Full timeRemote work
$134.5k - $265.1k
...with confidence, and proactively manage to secure success.Recruiting for this role ends on... ..., remediation, renewal automation, and compliance monitoring programsStrong client... ...opportunities to continue to grow throughout their career. As used in this posting, "...Entry levelLocal area- ...looking for a Junior Intellectual Property Associate in Raleigh, North Carolina. This position offers a unique opportunity for an early-career attorney to gain hands-on experience in advising clients on a wide range of intellectual property and commercial matters. The...Entry level
$105.4k - $207.8k
...with confidence, and proactively manage to secure success. Identity security market is... ...ll doAs a Senior Engineering Management Specialist on the Deloitte Cyber Identity & Access... ...opportunities to continue to grow throughout their career. As used in this posting, "...Entry levelLocal areaVisa sponsorship- ...and research activities while expanding your technical knowledge and engineering skills. This role offers hands-on experience with advanced software technologies and mission-focused engineering projects, ideal for recent graduates or early-career #J-18808-Ljbffr VadumEntry level
$68k - $133.9k
Position Summary Cyber Oracle Cloud Security - Analyst / Security Engineer I Deloitte... ...security, governance, risk, and compliance across Enterprise Resource Planning (ERP... ...opportunities to continue to grow throughout their career. As used in this posting, "...Entry levelLocal areaVisa sponsorship- ...engineering, procurement, fabrication, software, and field teams to maintain schedules, budgets, and deliverables. The role emphasizes early-career leadership development within complex industrial environments, with opportunities to coordinate cross-functional teams and...Entry level
- ...looking for builders, problem-solvers, and security professionals who thrive in a fast-... ...evidence to support regulatory, audit, and compliance requirements.Offensive Security... ...Directory Penetration Tester, Web Exploitation Specialist, Web Exploitation Expert, Offensive AI...Permanent employmentFull timePart timeH1bWork visaShift workDay shift
$105.4k - $207.8k
...Join Deloitte’s Cloud Cyber Risk practice and help organizations secure cloud transformation at scale. As a Cloud Architect, Senior... ...a variety of opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means Deloitte & Touche...Entry levelLocal areaVisa sponsorship- ...firm seeks a Junior Intellectual Property Associate in Raleigh, North Carolina. This role offers an excellent opportunity for an early‑career attorney to gain hands‑on experience advising clients on a wide range of intellectual property and commercial matters. Duties...Entry level
$105.4k - $207.8k
...Senior Engineering Management Specialist As a Senior Engineering... ...governance, access management, and security architecture across... ...access controls supporting audit, compliance, or regulatory requirementsOracle... ...to grow throughout their career. As used in this posting...Entry levelLocal areaVisa sponsorship$155.6k - $306.8k
...clear guidance to othersThe teamDeloitte’s Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy... ...opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means...Entry levelLocal area$134.5k - $265.1k
Position Summary Join Deloitte’s Cloud Cyber Security practice as a GCP Forward Deployed Engineer, Senior Consultant and help organizations... ...variety of opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means Deloitte &...Entry levelLocal areaVisa sponsorship- ...data collection in diverse laboratories and shops, with mentorship from senior staff. Ideal candidates are recent graduates or early‑career professionals with a solid technical foundation, strong problem‑solving abilities, and a willingness to travel to field sites nationwide...Entry level
- ...accommodation or an alternative application process. IT System Administrator & Security Specialist Full-Time Employee Apex, NC, US 3 days ago... ...practices to enhance security measures. Security ISO Compliance Ensure adherence to security ISO and NIST CSF standards...Hourly payFull timeWork experience placementWorldwide
- US Inspect US Inspect is the nations leading inspection services firm, delivering residential inspections since 1987. We have openings for experienced NC licensed inspectors to join our team of highly skilled inspectors. Home Inspector Our inspectors are more ...Extra incomeTemporary workWork at office
$155.6k - $306.8k
...services, healthcare, public sector) and exposure to associated compliance regimes (SOX, PCI DSS, FFIEC, HIPAA, GDPR).• Edge / fraud and... ...variety of opportunities to continue to grow throughout their career. As used in this posting, "Deloitte" means Deloitte & Touche...Entry levelLocal areaVisa sponsorship$134.5k - $265.1k
...with confidence, and proactively manage to secure success.Recruiting for this role ends on 1... ..., internal control risk management, IT controls and related standardsResponsible... ...opportunities to continue to grow throughout their career. As used in this posting, "Deloitte...Entry levelLocal areaVisa sponsorship$20 per hour
Pace Analytical Services, LLC is seeking an entry-level Regulatory Analyst in the Scientific Insourcing Services department. The role includes training to master global chemical regulations and to work with vendors in a non-laboratory setting. The position offers remote...Entry levelRemote jobHourly payMonday to Friday
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Security & Compliance Specialist I - EHRA - Early Career. Be the first to apply!
- cyber security analyst Raleigh, NC
- remote cyber security analyst Raleigh, NC
- information security consultant Raleigh, NC
- entry level cyber security analyst Raleigh, NC
- regulatory compliance analyst Raleigh, NC
- medicare compliance specialist Raleigh, NC
- regulatory analyst Raleigh, NC
- senior compliance officer Raleigh, NC
- legal compliance officer Raleigh, NC
- senior compliance analyst Raleigh, NC

