CrawlJobs Logo

Lead Analyst, Information Security Governance & Compliance

bhsg.com Logo

Beacon Hill

Location Icon

Location:
United States , Boca Raton

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

Beacon Hill Technologies is partnering with a client to identify a Lead Analyst, Information Security Governance & Compliance to support and guide audit, compliance, and risk activities within the information security organization. This role is lead-level and highly hands-on, requiring the ability to both direct work and actively participate in daily execution. The Lead Analyst will be responsible for ensuring audit readiness, coordinating audit responses, and validating the quality and completeness of evidence. A Senior Analyst will assist with execution; however, the Lead Analyst is expected to remain closely involved in day-to-day activities and decision-making.

Job Responsibility:

  • Support and guide audit, compliance, and risk activities within the information security organization
  • Ensure audit readiness
  • Coordinate audit responses
  • Validate the quality and completeness of evidence

Requirements:

  • Practical, working knowledge of audit and assurance concepts and terminology
  • Experience supporting both internal and external audits
  • Ability to evaluate the quality and sufficiency of audit evidence
  • Strong attention to documentation, traceability, and control effectiveness
  • Prior experience in information security governance, compliance, or risk management
  • Demonstrated ability to lead work while remaining directly involved in execution
  • Clear communication skills, particularly when explaining audit or compliance topics
  • Bachelor’s degree in Information Security, Risk Management, or a related discipline
  • 7+ years of experience in governance, risk, and compliance or information security roles
  • Familiarity with security and control frameworks such as NIST or ISO
  • Professional certifications such as CISA or CISSP
  • Experience coaching or mentoring junior or senior analysts

Additional Information:

Job Posted:
March 24, 2026

Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Lead Analyst, Information Security Governance & Compliance

Information Security Professional Lead Analyst

The Info Sec Prof Lead Analyst is an intermediate level position responsible for...
Location
Location
Philippines , City of Taguig
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • At least 7+ years of strong data analysis and report development experience
  • 7+ years of experience in information security or related technology experience required
  • At least 7+ years’ experience with Business Intelligence Reporting tools like Cognos, Tableau
  • At least 7+ years’ experience with Databases like Oracle, SQL Server, Microsoft Access
  • Strong Business Intelligence Developer Skills
  • Strong understanding of application development life cycle, CI/CD and DevOps concepts
  • Excellent Excel data analysis and Access database skills
  • Excellent SQL Skills
  • Experience with issue resolution - ability to research, identify and communicate solutions
  • Consistently demonstrates clear and concise written and verbal communication
Job Responsibility
Job Responsibility
  • Design and implement a solution for performance measurements on effectiveness of controls and overall vulnerability assessment program
  • Analyze trends on assets security health posture and report using visualization tools for program review with management and stakeholders
  • Analyze and report aggregated data from multiple data sources
  • Develop data visualization mock-ups for monitoring program data trends and communicate using analytical tools
  • Develop reports for tracking program effectiveness and update power point deck for weekly, monthly and quarterly updates
  • Develop, optimize and provide continuous support for reports and ad-hoc queries from end user
  • Create dashboards with parameters and interactive drill down functionality
  • Analyze trends on assets security health posture and report using visualization tools for program review with management and stakeholders
  • Excellent Analytical Ability - Understand the systems and data flow at a high level to evaluate if appropriate controls are in place for the standards
  • Provide timely, accurate, and actionable reporting on application vulnerability activity, trends, service levels, and areas of concern to senior management
  • Fulltime
Read More
Arrow Right

Lead Analyst, Digital Data Governance & Compliance

As a member of the Information Services department, the Lead Analyst, Digital Da...
Location
Location
United States , Princeton
Salary
Salary:
115000.00 - 126000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Management, Computer Science, Business Administration, or a related field
  • 7+ years of experience in digital data governance, compliance, data mapping, litigation hold or eDiscovery roles
  • Demonstrated experience with data governance programs, particularly in regulated and/or law firm environments
  • Working knowledge of SQL, PowerShell, and Power BI technologies
  • Strong understanding of litigation hold and internal investigation protocols
  • Familiarity with data governance and data management platforms such as Microsoft Purview, Relativity, or similar platforms
  • Strategic thinker with strong analytical and critical thinking skills
  • Excellent written and verbal communication skills
  • High integrity and sound judgment with sensitive information
Job Responsibility
Job Responsibility
  • Work closely with the Senior Manager, Digital Data Governance & Compliance to lead the strategy, implementation and management of comprehensive electronic data governance frameworks, standards, and policies
  • Develop and execute data lifecycle management processes for unstructured and structured digital content
  • Develop and execute Litigation Hold process, ensuring data relevant to ongoing or anticipated litigation is properly identified, preserved, and tracked throughout Litigation Hold lifecycle
  • Lead internal data collections in response to audits, investigations or internal reviews, ensuring completeness, chain of custody, and evidentiary standards are met
  • Lead process for maintaining enterprise data map, ensuring all data assets, flows, and repositories are documented, regularly reviewed, and updated for accuracy
  • Partner with IT, legal, privacy, and business units to identify, classify, and document digital data assets across systems and platforms
  • Collaborate with cross-functional teams (Legal, Compliance, Information Security, IT, Business Units) to identify risks, close control gaps, and support continuous improvement of data governance practices
  • Prepare and deliver training, guidance, and communications to staff regarding electronic data governance, best practices, and compliance obligations
  • Work with the Office of the General Counsel to support internal and external audits and investigations
  • Evaluate and implement digital tools for litigation hold, data mapping, governance, and eDiscovery processes
  • Fulltime
Read More
Arrow Right

Lead Analyst, Digital Data Governance & Compliance

As a member of the Information Services department, the Lead Analyst, Digital Da...
Location
Location
United States , Los Angeles
Salary
Salary:
115000.00 - 126000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Management, Computer Science, Business Administration, or a related field
  • 7+ years of experience in digital data governance, compliance, data mapping, litigation hold or eDiscovery roles
  • Demonstrated experience with data governance programs, particularly in regulated and/or law firm environments
  • Working knowledge of SQL, PowerShell, and Power BI technologies
  • Strong understanding of litigation hold and internal investigation protocols
  • Familiarity with data governance and data management platforms such as Microsoft Purview, Relativity, or similar platforms
  • Strategic thinker with strong analytical and critical thinking skills
  • Excellent written and verbal communication skills
  • High integrity and sound judgment with sensitive information
Job Responsibility
Job Responsibility
  • Work closely with the Senior Manager, Digital Data Governance & Compliance to lead the strategy, implementation and management of comprehensive electronic data governance frameworks, standards, and policies
  • Develop and execute data lifecycle management processes for unstructured and structured digital content
  • Develop and execute Litigation Hold process
  • Lead internal data collections in response to audits, investigations or internal reviews
  • Lead process for maintaining enterprise data map
  • Partner with IT, legal, privacy, and business units to identify, classify, and document digital data assets
  • Collaborate with cross-functional teams (Legal, Compliance, Information Security, IT, Business Units) to identify risks, close control gaps, and support continuous improvement
  • Prepare and deliver training, guidance, and communications to staff
  • Work with the Office of the General Counsel to support internal and external audits and investigations
  • Evaluate and implement digital tools for litigation hold, data mapping, governance, and eDiscovery processes
  • Fulltime
Read More
Arrow Right

Lead Analyst, Digital Data Governance & Compliance

As a member of the Information Services department, the Lead Analyst, Digital Da...
Location
Location
United States , Chicago
Salary
Salary:
105000.00 - 120000.00 USD / Year
benchmarkmakers.com Logo
Benchmark Makers
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Information Management, Computer Science, Business Administration, or a related field
  • 7+ years of experience in digital data governance, compliance, data mapping, litigation hold or eDiscovery roles
  • Demonstrated experience with data governance programs, particularly in regulated and/or law firm environments
  • Working knowledge of SQL, PowerShell, and Power BI technologies
  • Strong understanding of litigation hold and internal investigation protocols
  • Familiarity with data governance and data management platforms such as Microsoft Purview, Relativity, or similar platforms
  • Strategic thinker with strong analytical and critical thinking skills
  • Excellent written and verbal communication skills
  • High integrity and sound judgment with sensitive information
Job Responsibility
Job Responsibility
  • Work closely with the Senior Manager, Digital Data Governance & Compliance to lead the strategy, implementation and management of comprehensive electronic data governance frameworks, standards, and policies
  • Develop and execute data lifecycle management processes for unstructured and structured digital content
  • Develop and execute Litigation Hold process, ensuring data relevant to ongoing or anticipated litigation is properly identified, preserved, and tracked throughout Litigation Hold lifecycle
  • Lead internal data collections in response to audits, investigations or internal reviews, ensuring completeness, chain of custody, and evidentiary standards are met
  • Lead process for maintaining enterprise data map, ensuring all data assets, flows, and repositories are documented, regularly reviewed, and updated for accuracy
  • Partner with IT, legal, privacy, and business units to identify, classify, and document digital data assets across systems and platforms
  • Collaborate with cross-functional teams (Legal, Compliance, Information Security, IT, Business Units) to identify risks, close control gaps, and support continuous improvement of data governance practices
  • Prepare and deliver training, guidance, and communications to staff regarding electronic data governance, best practices, and compliance obligations
  • Work with the Office of the General Counsel to support internal and external audits and investigations
  • Evaluate and implement digital tools for litigation hold, data mapping, governance, and eDiscovery processes
  • Fulltime
Read More
Arrow Right

Senior Information Security Compliance Analyst

We're looking for a technically grounded Senior IS Compliance Analyst who speaks...
Location
Location
United States , Chicago
Salary
Salary:
90000.00 - 130000.00 USD / Year
blumeglobal.com Logo
Blume Global
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Hands-on experience in technical security roles such as Security Operations, Incident Response, Security Analysis, penetration testing, or similar
  • Practical knowledge of security tools, SIEM platforms, vulnerability management, and security monitoring
  • and ability to read and understand security logs, configurations, and technical documentation
  • 6+ years of total experience with significant time in GRC
  • Working knowledge of ISO 27001, NIST frameworks, SOC 1/2, and GDPR requirements
  • Experience developing and implementing information security policies and controls
  • ISO 27001:2022 Lead Implementer and Lead Auditor certification
Job Responsibility
Job Responsibility
  • Lead technical security assessments and integration of acquired companies, mapping their security architectures and controls to our GRC frameworks, identifying gaps, and building remediation roadmaps that address both technical security and compliance alignment
  • Bridge technical security and business stakeholders by evaluating risks through a technical lens, working alongside security engineering teams to translate GRC requirements into practical security measures, and communicating effectively across technical and non-technical audiences
  • Develop and harmonize security policies and control frameworks across acquired entities, ensuring they're both audit ready and operationally sound, while translating between technical security requirements and governance documentation
  • Own customer security questionnaire responses by leveraging your hands-on security background to provide detailed, accurate answers and collaborating with infrastructure, application security, and operations teams to gather technical evidence
  • Drive continuous improvement of our GRC program through technical security enhancements, meaningful security and compliance metrics, and process improvements that increase both control effectiveness and operational efficiency
What we offer
What we offer
  • health and welfare benefits
  • tuition assistance
  • 401K savings and other retirement programs
  • employee assistance programs
Read More
Arrow Right

Information Security Identity & Access Management Analyst

The Info Sec Prof Senior Analyst is an intermediate level position responsible f...
Location
Location
India , Chennai
Salary
Salary:
Not provided
https://www.citi.com/ Logo
Citi
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • 5-8 years of relevant Identity and Access Management experience
  • Applicable Certifications or willingness to earn within 12 months of joining
  • Consistently demonstrates clear and concise written and verbal communication
  • Proven influencing and relationship management skills
  • Proven analytical skills
  • Bachelor’s degree/University degree or equivalent experience
Job Responsibility
Job Responsibility
  • Identify potential Identity and Access Management (IAM) risks and make recommendations for enhancement
  • Lead execution of IAM governance procedures, specifically focusing on non-worker identities and IAM resources
  • Collect and analyze security risk evidence and coordinate with internal and external compliance and auditing agencies / officials
  • Develop and operationalize key risk indicators for related IAM topics and governance procedures
  • Produce insights from data that are tailored to specific requirements and audiences
  • Execute meetings and communicate complex security topics and IAM standards and best practices with all levels of the organization
  • Ensure that controls are utilized daily and that non-compliance remediation is addressed
  • Drive technological projects with cross-functional teams that support the expansion of IAM governance
  • Provide IAM consulting services, including interpreting and/or clarifying information security policy, procedures, standards or concepts
  • Assist with defining, implementing, and governing IS standards to align procedures and practices in compliance with Citi standards
What we offer
What we offer
  • Best-in-class benefits
  • Global benefits
  • Equal opportunity employer
  • Fulltime
Read More
Arrow Right

Security Analyst

As a Security Analyst, you will be a key player in our IT security team, focusin...
Location
Location
United States , Tallahassee
Salary
Salary:
Not provided
https://www.roberthalf.com Logo
Robert Half
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Lead the technical execution of security-related projects, focusing on system hardening and network security
  • Engage in effective communication and collaboration with various teams to meet specific security standards
  • Utilize your expertise in firewalls, Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS), and encryption to ensure secure configurations
  • Conduct comprehensive vulnerability assessments and devise relevant remediation strategies
  • Manage security tools and provide support for incident response, ensuring the seamless integration of security platforms
  • Ensure strict adherence to Criminal Justice Information Services (CJIS) and State of Florida regulations
  • Work closely with Governance, Risk, and Compliance (GRC) teams to address audit gaps
  • Document and provide training on cybersecurity solutions and processes with a focus on CJIS and State regulations
  • Reengineer security processes for improved efficiency and compliance
  • Stay informed about emerging threats and technologies, providing support for cybersecurity issues
Job Responsibility
Job Responsibility
  • Lead the technical execution of security-related projects, focusing on system hardening and network security
  • Engage in effective communication and collaboration with various teams to meet specific security standards
  • Utilize your expertise in firewalls, Intrusion Detection Systems/Intrusion Prevention Systems (IDS/IPS), and encryption to ensure secure configurations
  • Conduct comprehensive vulnerability assessments and devise relevant remediation strategies
  • Manage security tools and provide support for incident response, ensuring the seamless integration of security platforms
  • Ensure strict adherence to Criminal Justice Information Services (CJIS) and State of Florida regulations
  • Work closely with Governance, Risk, and Compliance (GRC) teams to address audit gaps
  • Document and provide training on cybersecurity solutions and processes with a focus on CJIS and State regulations
  • Reengineer security processes for improved efficiency and compliance
  • Stay informed about emerging threats and technologies, providing support for cybersecurity issues
What we offer
What we offer
  • medical, vision, dental, and life and disability insurance
  • eligible to enroll in our company 401(k) plan
  • Fulltime
Read More
Arrow Right

Senior Information System Security Officer

We are seeking a highly skilled and mission-driven Senior Information Systems Se...
Location
Location
United States , Clarksburg
Salary
Salary:
Not provided
imts.us Logo
Innovative Management & Technology Services
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor’s degree in Cybersecurity, Information Systems, Computer Science, or a related field (or equivalent combination of education and experience)
  • 8+ years of progressive experience in information systems security, with at least 3 years in a senior-level or lead ISSO role supporting federal or state government agencies
  • Strong working knowledge of: NIST 800-53, RMF, FISMA, OWASP Top 10, and SANS Institute standards
  • SAFe Agile environments and integrating security in Agile workflows
  • Networking, Linux/Windows system administration, and secure software development practices
  • Cloud platforms (AWS, Azure, GCP) and related security tools (e.g., AWS Security Hub, Azure Defender)
  • Experience in managing security documentation, participating in audits, and working with compliance frameworks
  • Relevant certifications such as CISSP, CISM, Security+, CEH, or equivalent
  • Active Top Secret clearance is required
  • U.S. Citizenship is required
Job Responsibility
Job Responsibility
  • Lead the implementation and maintenance of system security controls in compliance with federal cybersecurity frameworks, including NIST SP 800-53, RMF, OWASP, DISA STIGs, and Common Criteria
  • Oversee the full lifecycle of Authorization to Operate (ATO) processes, including preparation of System Security Plans (SSPs), Security Assessment Reports (SARs), POA&Ms, and risk assessments
  • Serve as a senior security advisor and liaison to system owners, developers, DevOps engineers, and government stakeholders
  • Participate in technical reviews of system architecture and ensure secure design of virtualized and software-defined infrastructures
  • Support integration of security controls into CI/CD pipelines using DevSecOps principles and tools (e.g., Jenkins, GitLab CI, SonarQube, Snyk)
  • Provide security engineering support for modern cloud environments, including AWS, Azure, or Google Cloud Platform, and assess cloud-native security capabilities
  • Conduct vulnerability assessments, interpret scan results from tools like Tenable, Nessus, Splunk, or Qualys, and lead remediation efforts
  • Mentor junior ISSOs and analysts on security policies, best practices, and tool usage
  • Ensure continuous monitoring activities are aligned with organizational risk tolerance and compliance goals
What we offer
What we offer
  • competitive compensation
  • excellent benefits including tuition reimbursement and employer-contributed 401K
  • referral bonuses
  • Fulltime
Read More
Arrow Right