IT Governance Analyst, Security

Posted 1 day ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Assist in technology governance, security, and operational maturity initiatives across corporate IT, cloud, product, and operational systems.

• Create and uphold the IT and security roadmap in alignment with mission priorities and partner obligations.

• Manage the technology risk register and monitor remediation efforts.

• Formulate, document, and sustain IT and security policies, standards, and procedures.

• Keep system ownership documentation, governance records, and technology inventories current.

• Generate governance metrics, risk reports, and documentation for audit readiness.

• Aid in data classification, access governance, retention standards, and the documentation of data flows.

• Evaluate encryption, logging, and access controls relative to data sensitivity and contractual obligations.

• Collaborate with Engineering and program teams to implement secure and scalable system practices.

• Maintain architecture documentation, data flow diagrams, and mappings of security controls.

• Support IAM processes, including SSO, MFA, least privilege, access reviews, and joiner-mover-leaver workflows.

• Oversee endpoint and device management practices such as MDM, encryption, patching, configuration baselines, and endpoint protection.

• Assess SaaS governance and suggest improvements to mitigate shadow IT risks.

• Assist with backup, recovery, and resilience validation for critical systems.

• Provide departmental guidance on security and data handling best practices.

• Promote Secure SDLC practices in collaboration with Engineering.

• Coordinate vulnerability scanning, triage, remediation tracking, and verification processes.

• Support cloud security efforts in IAM, key management, logging, monitoring, and network security.

• Participate in security and architecture reviews for new systems and significant initiatives.

• Maintain documentation for incident response, runbooks, and severity classifications.

• Facilitate tabletop exercises, business continuity, and disaster recovery testing.

• Organize vendor and partner security assessments and track remediation efforts.

• Assist with audits, customer security questionnaires, and partner assurance initiatives.

• Collaborate with Legal and business stakeholders to enforce data protection and security requirements.


⛳️ Requirements

• Bachelor’s degree in Information Technology, Cybersecurity, Computer Science, or a related field, or at least one (1) year of relevant experience in IT governance, cybersecurity, IT operations, or risk management.

• Experience in multiple IT or security domains.

• Knowledge of IAM principles, including SSO, MFA, least privilege, and access reviews.

• Proficient understanding of logging, endpoint security, encryption, backup management, vulnerability management, and network security.

• Experience supporting IT, data, or security governance initiatives.

• Capacity to analyze technical risks and formulate practical recommendations.

• Ability to coordinate cross-functional projects and collaborate effectively with both technical and non-technical stakeholders.

• Experience with audits or security frameworks such as PCI DSS, SOC 2, ISO 27001, NIST 800-53 Rev. 5, or HIPAA-related controls is preferred.

• Familiarity with AWS, Azure, or GCP and CI/CD environments is preferred.

• Experience with MDM, EDR, SIEM, vulnerability scanners, or related tools is preferred.

• Understanding of secure software development practices and threat modeling is preferred.

• Relevant certifications such as Security+, SSCP, GSEC, or equivalent are preferred.

• Experience with grant-funded initiatives, multi-partner collaborations, or externally funded programs is preferred.

• Proficiency in American Sign Language is preferred.


🏝️ Benefits

• Comprehensive health and wellness benefits.

• Opportunities for professional development and career advancement.

• Flexible work arrangements.

• Collaborative and inclusive work environment.

People also viewed

Guthrie1 day ago

Identity & Access Management Analyst – IT Security

US flagUnited States OnlyFull-timeSecurity Analyst
ApplyView job
Great Gray Trust Company1 day ago

Lead Information Security Analyst

US flagCalifornia, +20 more statesFull-timeSecurity Analyst$120k – $150k/year
ApplyView job
Sony Interactive Entertainment1 day ago

Senior Game Application Security Analyst

US flagUnited States OnlyFull-timeSecurity Analyst$177.3k – $265.9k/year
ApplyView job
Re:Build Manufacturing1 day ago

IT Security Analyst

US flagUnited States OnlyFull-timeSecurity Analyst$83k – $132k/year
ApplyView job
Logicalis GmbH1 day ago

Compliance & Security Analyst

US flagUnited States OnlyFull-timeSecurity Analyst$90.3k – $120k/year
ApplyView job
Hanover1 day ago

Senior Information Security Analyst

US flagConnecticut, +1 more stateFull-timeSecurity Analyst
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers