
Cybersecurity Governance Analyst
Posted Aug 25

Posted Aug 25
This is a fully remote position, open to applicants in Arizona, +11 more states.
• Create and uphold enterprise-level cybersecurity policies and standards.
• Collaborate with key IT leaders to guarantee that security information remains current and precise.
• Promote security awareness throughout the organization.
• Organize security assessments, pinpoint risks, and suggest suitable corrective measures.
• Ensure processes are aligned with frameworks such as ISO 27001, PCI-DSS, and SOC 2.
• Conduct vendor security and privacy risk assessments.
• Assess control environments, monitor findings, and oversee vendor remediation activities.
• Address client security questionnaires and manage evidence collection.
• Assist with customer trust evaluations and external audits.
• Offer guidance on access management, data encryption, logging, and business continuity controls.
• Investigate control deficiencies and propose as well as monitor corrective actions.
• Act as a liaison between business units and IT/Engineering teams to facilitate data security implementations.
• Lead enterprise-wide security awareness initiatives.
• Collaborate with IT and Engineering leaders to enhance enterprise security architecture and support security control assessment strategies.
• 3-5 years of experience in information security compliance.
• Practical knowledge of PCI-DSS, SOC 2, or ISO 27001.
• Experience in maintaining compliance documentation.
• Capability to map controls to technical implementations and assess evidence quality.
• Skill in identifying, assessing, and mitigating security risks across application, network, endpoint, and cloud environments.
• Familiarity with DevSecOps practices and emerging technologies like AI.
• In-depth understanding of ISO 27001, PCI-DSS, and SOC 2 control frameworks.
• Ability to cultivate productive relationships with IT management, technical teams, external vendors, and consultants.
• Excellent written and verbal communication skills.
• Proficiency in authoring technical documentation, delivering security presentations, and completing intricate client security questionnaires.
• Capacity to quickly learn and apply advanced technical security concepts.
• Strong analytical abilities, attention to detail, independent judgment, and effective decision-making skills.
• Must currently have authorization to work in the United States on a full-time basis.
• This position is not eligible for employer visa sponsorship now or in the future.
• Healthcare, dental, vision, disability, life insurance, and mental health benefits for associates and their families.
• 401(k) plan with company matching.
• Tuition assistance.
• Flexible time off.
• Paid sick leave.
• Ten paid holidays each year.
• Parental planning benefits.
• Bonus/Incentive Programs.
• Initial onboarding travel to Medford with travel arrangements and expenses covered by Agero.
Zscaler
Viatris
ActBlue
AlphaSense
Get handpicked remote jobs straight to your inbox weekly.