TITLE Security Compliance Analyst II LEVEL Mid RELATIONSHIPS Assigned Team Leader EDUCATION ... Works closely with the Information Assurance Branch Chief and Chief Information Security Officer ...
TITLE Security Compliance Analyst II LEVEL Mid RELATIONSHIPS Assigned Team Leader EDUCATION ... Works closely with the Information Assurance Branch Chief and Chief Information Security Officer ...
Department Statement The IT Audit team is responsible for performing timely audits and ensuring ... Filevine is looking for a High Security Compliance Analyst to join our Information Security team to ...
Department Statement The IT Audit team is responsible for performing timely audits and ensuring ... Filevine is looking for a High Security Compliance Analyst to join our Information Security team to ...
As a Security Compliance Analyst III, you will serve as a senior compliance professional ... Preferred certifications include ISC2 Certified Information Systems Security Professional (CISSP ...
Quick apply
As a Security Compliance Analyst III, you will serve as a senior compliance professional ... Preferred certifications include ISC2 Certified Information Systems Security Professional (CISSP ...
We are seeking a detail-oriented Security Compliance Analyst to join our Risk and Security team ... Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent work ...
We are seeking a detail-oriented Security Compliance Analyst to join our Risk and Security team ... Bachelor's degree in Computer Science, Information Security, or a related field (or equivalent work ...
As a Security Compliance Analyst III, you will serve as a senior compliance professional ... Preferred certifications include ISC2 Certified Information Systems Security Professional (CISSP ...
As a Security Compliance Analyst III, you will serve as a senior compliance professional ... Preferred certifications include ISC2 Certified Information Systems Security Professional (CISSP ...
Security & Compliance Analyst Locations: Fairless Hills, PA (No Remote / Work From Home) Industry ... Maintain and enforce IT security policies, standards, and procedures * Assist with internal and ...
Security & Compliance Analyst Locations: Fairless Hills, PA (No Remote / Work From Home) Industry ... Maintain and enforce IT security policies, standards, and procedures * Assist with internal and ...
Security & Compliance Analyst Locations: Fairless Hills, PA (No Remote / Work From Home) Industry ... Maintain and enforce IT security policies, standards, and procedures * Assist with internal and ...
Security & Compliance Analyst Locations: Fairless Hills, PA (No Remote / Work From Home) Industry ... Maintain and enforce IT security policies, standards, and procedures * Assist with internal and ...
Security & Compliance Analyst Locations: Fairless Hills, PA (No Remote / Work From Home) Industry ... Maintain and enforce IT security policies, standards, and procedures * Assist with internal and ...
Security & Compliance Analyst Locations: Fairless Hills, PA (No Remote / Work From Home) Industry ... Maintain and enforce IT security policies, standards, and procedures * Assist with internal and ...
Security & Compliance Analyst
Doral, FL · On-site
Yes Position Summary Base-2 Solutions is seeking a Security & Compliance Analyst to support ... Certified Information Systems Security Professional (CISSP). * Certified Information Security ...
Security & Compliance Analyst
Doral, FL · On-site
Yes Position Summary Base-2 Solutions is seeking a Security & Compliance Analyst to support ... Certified Information Systems Security Professional (CISSP). * Certified Information Security ...
IT Compliance Analyst
Grand Rapids, MI · On-site
$78K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
IT Compliance Analyst
Grand Rapids, MI · On-site
$78K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
IT Compliance Analyst
Grand Rapids, MI · On-site
$90K - $90K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
IT Compliance Analyst
Grand Rapids, MI · On-site
$90K - $90K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
IT Compliance Analyst
Grand Rapids, MI · On-site
$78K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
Quick apply
IT Compliance Analyst
Grand Rapids, MI · On-site
$78K/yr
We're hiring an IT Compliance Analyst to support our Information Security and IT Risk Management team through audit coordination, risk tracking, control remediation, and compliance initiatives. This ...
IT Security Compliance Analyst
Vista, CA · On-site
$96K - $96K/yr
We are hiring an IT Security Compliance Analyst to join our IT Team! DISCOVER As the Analyst, IT Security Compliance, you'll serve as a key connection point between IT Operations, Software ...
IT Security Compliance Analyst
Vista, CA · On-site
$96K - $96K/yr
We are hiring an IT Security Compliance Analyst to join our IT Team! DISCOVER As the Analyst, IT Security Compliance, you'll serve as a key connection point between IT Operations, Software ...
We are seeking a highly experienced Security Compliance Analyst to join our EnterpriseITCompliance ... This role supports the foundational elements of the Generac Information Security Management System ...
We are seeking a highly experienced Security Compliance Analyst to join our EnterpriseITCompliance ... This role supports the foundational elements of the Generac Information Security Management System ...
Security Compliance Analyst
Garden Grove, CA · On-site
$130K - $160K/yr
Role Summary Harbinger is hiring a Security Compliance Analyst to build and own our security ... Bachelor's degree in Information Systems, Cybersecurity, or related field (or equivalent experience ...
Security Compliance Analyst
Garden Grove, CA · On-site
$130K - $160K/yr
Role Summary Harbinger is hiring a Security Compliance Analyst to build and own our security ... Bachelor's degree in Information Systems, Cybersecurity, or related field (or equivalent experience ...
Security Compliance Analyst IV
Sussex, WI · On-site
We are seeking a highly experienced Security Compliance Analyst to join our Enterprise IT Compliance & Governance team. This role supports the foundational elements of the Generac Information ...
Security Compliance Analyst IV
Sussex, WI · On-site
We are seeking a highly experienced Security Compliance Analyst to join our Enterprise IT Compliance & Governance team. This role supports the foundational elements of the Generac Information ...
National Security Compliance Analyst
Alexandria, VA · On-site
$145K - $185K/yr
Responsibilities The National Security Compliance Analyst will support DoW's input into both the ... Please note that the salary information shown below is a general guideline only. Salaries are ...
National Security Compliance Analyst
Alexandria, VA · On-site
$145K - $185K/yr
Responsibilities The National Security Compliance Analyst will support DoW's input into both the ... Please note that the salary information shown below is a general guideline only. Salaries are ...
SOSi is seeking a Security & Compliance Analyst to support mission requirements for a structured ... Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, or a related field, or ...
Quick apply
SOSi is seeking a Security & Compliance Analyst to support mission requirements for a structured ... Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, or a related field, or ...
As a Compliance Analyst - FedRAMP, you will play a key role in ensuring Fortra's cloud ... Coordinate with internal Development, Engineering, IT, Security, Support, and Audit teams to ensure ...
As a Compliance Analyst - FedRAMP, you will play a key role in ensuring Fortra's cloud ... Coordinate with internal Development, Engineering, IT, Security, Support, and Audit teams to ensure ...
SOSi is seeking a Security & Compliance Analyst to support mission requirements for a structured ... Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, or a related field, or ...
SOSi is seeking a Security & Compliance Analyst to support mission requirements for a structured ... Bachelor's degree in Cybersecurity, Information Assurance, Computer Science, or a related field, or ...
Information Security Compliance Analyst information
See salary details
$40K - $50.7K
3% of jobs
$50.7K - $61.5K
6% of jobs
$61.5K - $72.2K
14% of jobs
$73.5K is the 25th percentile. Wages below this are outliers.
$72.2K - $82.9K
15% of jobs
The median wage is $90.6K / yr.
$82.9K - $93.6K
17% of jobs
$93.6K - $104.4K
14% of jobs
$110.5K is the 75th percentile. Wages above this are outliers.
$104.4K - $115.1K
12% of jobs
$115.1K - $125.8K
9% of jobs
$125.8K - $136.5K
5% of jobs
$136.5K - $147.3K
3% of jobs
$147.3K - $158K
2% of jobs
$40K
$96.7K
$158K
How much do information security compliance analyst jobs pay per year?
What does an information security compliance analyst do?
An Information Security Compliance Analyst ensures that an organization follows regulatory requirements and security policies to protect sensitive data. They assess security controls, conduct audits, and identify compliance gaps. They also collaborate with different teams to implement security best practices and mitigate risks. Their role is crucial in preventing data breaches and ensuring adherence to frameworks such as GDPR, HIPAA, or ISO 27001.
What are the key skills and qualifications needed to thrive as an information security compliance analyst?
To thrive as an Information Security Compliance Analyst, you need a strong understanding of security frameworks, risk assessment, IT security controls, and relevant regulatory requirements, often supported by a degree in cybersecurity, information technology, or a related field. Familiarity with tools such as GRC platforms, vulnerability scanners, and certifications like CISSP, CISA, or CompTIA Security+ is highly valuable. Strong analytical thinking, attention to detail, effective communication, and collaboration skills set top analysts apart. These abilities are vital to ensure organizations meet regulatory obligations, protect sensitive data, and maintain a robust security posture.
What cities are hiring for Information Security Compliance Analyst jobs?
Cities with the most Information Security Compliance Analyst job openings:
What are the most commonly searched types of Information Security Compliance Analyst jobs?
The most popular types of Information Security Compliance Analyst jobs are:
What states have the most Information Security Compliance Analyst jobs?
States with the most job openings for Information Security Compliance Analyst jobs include:
What job categories do people searching Information Security Compliance Analyst jobs look for?
The top searched job categories for Information Security Compliance Analyst jobs are:

Job description
H4 Enterprises is currently seeking the following:
TITLE
Security Compliance Analyst II
LEVEL
Mid
RELATIONSHIPS
Assigned Team Leader
EDUCATION
Bachelor's degree in an Information Technology field
EXPERIENCE
10+ years of hands-on IT experience
CLEARANCE
Top Secret minimum
PLACE OF PERFORMANCE
National Capital Region
POSITION SUMMARY
The Security Compliance Analyst II will assist the assigned Government Division Chief and assigned team leader with various Information Technology (IT) security support duties that will guide the Department of State's classified systems through various computer security requirements and meet Department and Office of the Director of National Intelligence (ODNI) security mandates. This position is responsible for participating in security assessments and compliance reviews of Sensitive Compartmented Information (SCI) systems. The contractor will help improve the security posture of the organization by implementing best practices and controls to prevent or mitigate security risks and exposures.
RELATIONSHIPSThe Security Compliance Analyst II will receive direct government oversight, assignments, and directions from the assigned Government Office/ Program Director or Division Chief, through an assigned team leader.
DUTIES & RESPONSIBILITIES- Creates and develops Standard Operating Procedures, Policy, in support of the Information Assurance Branch (IAB)
- Participates in all steps of the Security Authorization and Assessment process for Information Systems
- Works closely with the Information Assurance Branch Chief and Chief Information Security Officer (CISO) to provide guidance and oversight for all requested initiatives
- Assists with the delivery of all required system documentation using the current National Institute of Standards and Technology (NIST), Diplomatic Security (DS), & Intelligence Community (IC) approved templates, forms, regulations, policies, methods, and standards
- Provides advisement to stakeholders to assign resources and establish timelines to ensure the successful security authorization of a system
- Ensures software installed in the production environment is evaluated and provides guidance regarding the potential for the software to introduce risk into the environment
- Continuously maintains a thorough understanding of all configurations, architecture, installed software, accounts (both Operating System and Application), data flows, ports, protocols, and other relevant data for each IT System
- Coordinates with the appropriate operational group to accurately update the System Design Document for each IT system to reflect the approved state of each IT system
- Analyzes Information Assurance Vulnerability Alert (IAVA) bulletins, security, and vulnerability assessment results, provides leadership with details on any required actions and related timelines, and creates mitigation plans
- Analyzes system weaknesses identified during system security assessments and the related mitigation plans
- Provides, tracks, and reports security requirements throughout the project life cycle of all projects that are within the accreditation boundary of assigned systems
- Performs in depth reviews of logs and other artifacts for each IT system
- Reviews and validates all relevant NIST 800-53 Security Controls and/or applicable departmental policies for each IT system assigned
- Performs oversight of compliance with Vulnerability Alerts
- Ensures that all Information Assurance Vulnerability Management (IAVM) review items are tracked and reported
- Reviews and validates Plan of Actions & Milestones (POA&Ms) for each noncompliant control for each managed IT System prior to authorizing closure and ensures that proper documentation to support the POA&M lifecycle is filed and updated as required, including well documented waivers and exceptions detailing the potential risk to the Authorizing Official
- Develops, documents, and executes internal audit programs, including the Federal Information Security Management Act (FISMA), to ensure that audits, inspections, and assessments appropriately address risks and management concerns
- Provides oversight and guidance regarding requests to modify technical policies such as firewall rules, ports, protocols, etc. for each IT system
- Coordinates with and briefs Federal staff on all activities pertaining to each IT system as requested
- Leads and facilitates walkthroughs with external auditors, explaining the various processes, improvements, and responses, and provides detailed and timely responses to audits and data calls
- Citizenship
- S. Citizenship required
- Education
- Bachelor's degree in an IT field
- Must possess the following current certifications:
- Certified Information Systems Security Professional (CISSP)
- Certified in Risk and Information Systems Control (CRISC)
- Certified Information Security Manager (CISM)
- Cybersecurity and Infrastructure Security Agency (CISA)
- Certified Ethical Hacker (CEH)
- Must possess the following current certifications:
- Bachelor's degree in an IT field
Or
- DoD 8570 Information Assurance Management (IAM) II equivalent certifications
- Experience
- Over ten (10) years of hands-on IT experience
- Preferred: Department of State experience
- Technical background and ability to review complex configurations for validation
- Experience with the Risk Management Framework (RMF) process from both a package preparation and assessor perspective
- Experience in the use of the XACTA, ACAS, and HBSS security tools
- Experience with federal policies and procedures to acquire and maintain an Information System's Authority to Operate (ATO) under FISMA Act following NIST 800-53 guidelines and NIST- 800-53a security controls assessment practices
- Excellent written and oral communication skills and the ability to work independently or as a member of a team
- Experience with the RFM, POA&Ms, Security Authorization and Assessments
- Experience conducting and documenting vulnerability assessments
- Knowledge of and experience with NIST SP 800-53, 800-53A, and 800-37
- Understanding of FISMA compliance
- Experience with maintenance, installation, and use of WebInspect, Nessus scans, or similar tools
Position will be subject to a U.S. Government Security Investigation. Incumbent must possess or obtain/maintain minimum a TOP SECRET clearance with ability to obtain special access requirements (SCI).
PLACE OF PERFORMACEPrimarily, the work will take place at a designated Department of State Location in the National Capital Region.
This position is telework eligible and may be authorized in accordance with OPM and DS policy, only with the approval of the assigned Government Office/Program Director.
EEO Statement
H4 Enterprises, LLC does not discriminate in employment on the basis of race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, military service, or other non-merit factor.
Working at H4
Working at H4 means applying a passion for meaningful work with intellectual rigor to help solve the leading issues of our day. Smart, compassionate, innovative, committed, H4 employees tackle unprecedented challenges to benefit people, businesses, and governments around the globe. We believe in collaboration, mutual respect, open communication, and opportunity for growth. We can only solve the toughest challenges by building an inclusive workplace that allows everyone to thrive. We are an equal opportunity employer, committed to hiring regardless of any protected characteristic, such as race, ethnicity, national origin, color, sex, gender identity/expression, sexual orientation, religion, age, disability status, or military/veteran status. Together, our employees are empowered to share their expertise and collaborate with others to achieve personal and professional goals. H4 does not discriminate in employment based on race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, membership in an employee organization, retaliation, parental status, military service, or other non-merit factor.
COVID-19 Policy:
New or prospective U.S. employees must provide proof of complete vaccination on the date of their commencement of employment. If selected for employment, you will provide proof of your full vaccination status, defined as vaccinated two weeks after receiving the requisite number of doses of a COVID-19 vaccine approved or authorized for emergency use by the FDA. Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process.
About H4 ENTERPRISES
Sourced by ZipRecruiter
Industry
Executive offices
Company size
51 - 200 Employees
Headquarters location
Fayetteville, NC, US