iremote.grstudy1 Sr. IT Security Compliance Analyst

Sr. IT Security Compliance Analyst

  • Anywhere

This is a remote, contract to hire role based out of the Dallas, TX area.

Sr. IT Security Compliance Consultant

Remote but prefer DFW, EST or CST

Contract to Hire

Job Description:

The client is seeking a IT Security Compliance Analyst to assist our IT Security Team in providing comprehensive IT security governance and compliance. This is a pivotal role responsible for ensuring compliance and managing risk mitigation strategies. The successful candidate will have a proven track record in cybersecurity, governance, risk, and compliance, as well as vulnerability management and PCI compliance.

Key Responsibilities:

路 Engage with IT security engineers, overseeing daily operations including anti-virus protection, vulnerability management, and logging/monitoring activities.

路 Develop, implement, and maintain IT security policies, standards, and procedures.

路 Manage the deployment and operation of security technologies.

路 Oversee vulnerability management programs, including identifying vulnerabilities, developing remediation plans, and tracking issue resolution.

路 Drive initiatives to enhance security to protect from malicious content.

路 Oversee compliance with regulatory requirements, frameworks, and industry standards, including PCI DSS, NIST, and ISO 27001.

路 Facilitate PCI, SOC, and other assessments, manage remediation efforts, and ensure ongoing compliance.

路 Maintain a robust Governance, Risk, and Compliance (GRC) framework to align security strategies with organizational objectives.

路 Perform risk assessments to identify, analyze, and prioritize IT security risks, creating mitigation plans to reduce exposure.

路 Manage and coordinate audits, including external and internal audits, and ensure findings are addressed effectively and promptly.

路 Monitor and report on key security metrics, providing visibility into risk levels and compliance status for senior leadership.

路 Collaborate with business units to embed risk management practices into decision-making processes.

路 Collaborate with cross-functional teams to support annual audits, risk assessments, and compliance activities.

路 Identify and mitigate IT security risks, ensuring robust risk management processes are in place.

路 Assist in response to client聮s security questionnaires.

Qualifications:

路 7+ years of experience in IT security operations, governance, risk, and compliance.

路 Deep knowledge of PCI, SOC, GDPR, CCPA compliance requirements, audit management, and remediation processes.

路 Extensive experience with GRC tools, platforms, and methodologies, ensuring effective integration into IT workflows.

路 Proficiency with security tools and technologies such as SIEM, FIM, IPS, web proxies, and email gateways.

路 Strong understanding of cybersecurity frameworks, best practices, and regulatory requirements (e.g., NIST, ISO 27001).

路 Demonstrated ability to lead risk management initiatives and build risk-aware organizational culture.

路 Certifications such as CISSP, CISM, CRISC, or CISA are highly desirable.

路 Strong interpersonal and communication skills, with the ability to collaborate effectively across teams and influence stakeholders.

Preferred Skills:

路 Experience with cloud security and modern infrastructure platforms.

路 Proven ability to manage and resolve security incidents effectively.

路 Strategic thinker with the ability to balance security objectives with business needs.

We would love to have you join our team! ECCO Select is committed to hiring and retaining a diverse workforce. ECCO Select聮s policy is to provide equal opportunity to all people without regard to race, color, religion, national origin, ancestry, marital status, veteran status, age, disability, pregnancy, genetic information, citizenship status, sex, sexual orientation, gender identity or any other legally protected category.

Equal Employment Opportunity is The Law

This Organization Participates in E-Verify