Compliance Analyst in United States at Jobgether
Explore Related Opportunities
Job Description
This position is listed on behalf of a partner company, who manages all applications and next steps. Our partner is looking for a Compliance Analyst based in the United States.
This role sits at the intersection of cybersecurity governance, regulatory compliance, and enterprise risk management, with a strong focus on ensuring technology and data practices meet stringent legal and industry standards.
You will play a key part in maintaining and evolving compliance programs tied to frameworks such as CJIS and NIST, helping safeguard sensitive information across multiple agencies and systems.
The position combines analytical oversight with hands-on coordination of audits, risk assessments, and policy enforcement activities in a dynamic public-sector environment.
You will act as a trusted advisor to security and IT leadership, translating regulatory requirements into actionable controls and improvement plans.
A significant part of the role involves leading governance processes such as change advisory boards and compliance reporting structures.
You will also contribute to special projects that enhance security maturity, reduce risk exposure, and strengthen organizational resilience.
This is a highly collaborative role requiring strong communication, attention to detail, and the ability to operate independently across complex initiatives.
- Lead and support enterprise compliance and risk management programs, including control mapping, compliance monitoring, and documentation aligned with frameworks such as CJIS and NIST.
- Oversee audit readiness and response activities, including biennial certification audits, gap analysis, remediation tracking, and evidence management.
- Serve as Change Advisory Board (CAB) lead, ensuring IT change and configuration management processes comply with established standards and governance requirements.
- Conduct risk assessments across technology and data environments, documenting findings, tracking remediation plans, and advising leadership on mitigation strategies.
- Support security incident response activities by identifying compliance impacts, documenting treatment plans, and ensuring proper reporting and escalation.
- Develop compliance metrics, reports, and position papers for leadership to support decision-making and program maturity tracking.
- Lead or contribute to special projects focused on control gaps, policy development, and continuous improvement of security and compliance practices.
- Bachelor’s degree or equivalent professional experience in cybersecurity, information systems, compliance, risk management, or a related field.
- At least 5 years of experience in security operations, compliance, audit, or risk management roles, ideally within regulated environments.
- Strong knowledge of frameworks and standards such as CJIS Security Policy, NIST SP 800 series, or comparable regulatory structures.
- Experience with cybersecurity tools and environments (e.g., SIEM, EDR, vulnerability scanning tools) and audit/compliance reporting systems.
- Preferred certifications such as CISSP, CISA, CISM, CRISC, CIPM, or CIPT.
- Strong analytical skills with the ability to interpret regulations, assess risk, and translate requirements into actionable controls.
- Excellent communication, stakeholder management, and documentation skills, with the ability to work effectively across technical and business teams.
- Competitive hourly compensation: $37.34 – $46.67 per hour, based on experience.
- Variable Hour Benefit Eligible structure (up to 40 hours/week with benefits eligibility).
- Medical, dental, and vision insurance options.
- Paid time off accrual plus 11 paid holidays annually.
- Hybrid work flexibility, with primarily remote work and occasional on-site meetings or projects.
- Participation in a well-funded retirement plan and access to additional public-sector benefits.
- Professional development opportunities, internal training programs, and career growth support.
- Exposure to high-impact public-sector security and compliance initiatives.