IT - Security Compliance Analyst II
On-siteMacon, Georgia, United States
Job Summary
Adhere to, evaluate, and assist in the development of security policies, standards, and procedures to align with legal, regulatory, and business requirements. Perform security and compliance assessments to identify control gaps, document findings, and support remediation activities while tracking risks and exceptions. Assist in internal and external risk assessments, monitor regulatory changes, and prepare compliance metrics and status reports for management review. Escalate issues and exceptions to management for decision-making while maintaining positive relationships with internal and third-party vendors. Provide clear, accurate information regarding compliance posture and share knowledge to support team members in continuously improving the security program.
Required Qualifications
- Bachelor's degree in Information Technology, Information Security, Risk Management, Business, or a related field, or an equivalent combination of education, training, and experience
- Familiarity with developing, maintaining, reviewing, or assessing security policies, standards, and procedures
- General understanding of IT systems, security controls, and enterprise technology environments
- Experience working with, interpreting, or mapping controls to recognized frameworks such as NIST CSF, NIST SP 800‐53, CIS Controls, ISO/IEC 27001, or similar
- Knowledge of regulatory, legal, or contractual security and compliance expectations in regulated or complex environments
- Strong organizational, analytical, and documentation skills with attention to detail
- Ability to interpret requirements and translate them into clear, practical, and business-aligned guidance
- Strong written and verbal communication skills, with the ability to engage effectively with both technical and non‐technical stakeholders
- Demonstrates curiosity and willingness to learn, with interest in understanding the 'what,' 'why,' and 'how' behind security controls and compliance requirements
- Self-motivated, adaptable, and comfortable working in an evolving security and compliance program
Desired Qualifications
- Background or experience in information security, compliance, governance, risk management, audit, IT operations, or a related discipline is desired
- Exposure to security or compliance assessments, risk evaluations, audit support activities, or control testing is beneficial
- Security-related professional certifications (e.g., Security+, CISSP, CISA, CISM, CRISC, or similar) are a plus
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.