Enable job alerts via email!

747-IT Security Risk & Compliance Analyst

Norland Group

Alhambra (CA)

On-site

USD 80,000 - 100,000

Full time

3 days ago
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Start fresh or import an existing resume

Job summary

A leading company is seeking a 747-IT Security Risk & Compliance Analyst to enhance its cybersecurity posture. This role focuses on governance, risk management, and compliance, requiring strong expertise in industry standards like NIST and ISO. Candidates should hold relevant certifications and possess at least 3 years of experience in information security risk assessments and audits, working onsite in Alhambra, CA.

Qualifications

  • 3+ years in risk management principles, audits, and security assessments.
  • Experience with NIST, ISO 27001, CIS frameworks.
  • Involvement in incident response processes and controlling enterprise risk.

Responsibilities

  • Develop and implement policies for cybersecurity compliance.
  • Conduct risk assessments and control evaluations.
  • Support enterprise-wide GRC initiatives and incident responses.

Skills

Governance
Risk Management
Cybersecurity Compliance
Vulnerability Management
Threat Intelligence Analysis
Security Architecture Design
Encryption Technologies
Data Protection Principles
IT Security
Networking
Systems Administration

Education

CISSP
CRISC
CISA
CISM

Job description

This position requires - Clear Background, Drug Test, and Education Check.
Must be authorized to work in the US for any employer without Sponsorship.
(Principal Only! No Corp to Corp)
---------------------------------------------------------------------------------------------------------------------

Position Title: 747-IT Security Risk & Compliance Analyst
Location: Alhambra, CA
Pay Rate: $45 - $65

Contract Duration: 1 year

OT Rate: Straight Time (Exempt)

Onsite

Skills Required:

-Demonstrated expertise in governance, risk management, and cybersecurity compliance, including the development and implementation of policies, standards, and control frameworks. -Strong working knowledge of information security regulations and industry frameworks such as NIST (800-53, CSF), ISO/IEC 27001, and PCI DSS, with the ability to map controls and assess compliance. -Experience conducting risk assessments, control evaluations, and compliance audits to support enterprise-wide GRC initiatives. -Familiarity with vulnerability management, threat intelligence analysis, and security architecture design in support of risk and compliance objectives. -Understanding of encryption technologies and data protection principles as they relate to governance and regulatory obligations. -Foundational knowledge of technical environments including IT security, networking, and systems administration, with awareness of tools such as SIEM (e.g., Microsoft Sentinel), firewalls, and other endpoint/network security platforms.

Experience Required:

3+ years of experience within each of the following: -Applying risk management principles, including conducting audits, security assessments, and interpreting industry-standard security frameworks (e.g., NIST, ISO 27001, CIS). -Conducting and supporting security operations, control assessments, audit remediation, and enterprise risk governance initiatives. -Performing information security risk assessments, evaluating control effectiveness, and analyzing risk impact for technology initiatives and third-party integrations. -Participating in incident response processes, including detection, containment, and post-incident analysis. -Managing the security of complex, multi-platform IT environments, including various operating systems, software suites, and network protocols, within a large organization.

Education Required:

One (1) or more industry-recognized Certifications in Security: --CISSP (Certified Information Systems Security Professional) --CRISC – Certified in Risk and Information Systems Control --CISA – Certified Information Systems Auditor --CISM (Certified Information Security Manager)

Additional Information:

California Resident Candidates Only. Work is expected to be done ON SITE, and interviews will be conducted in person. Work schedule is M-Thurs 7:15am-6pm (10 hours) at Public Works HQ in Alhambra, CA 91803.

We encourage Minorities, Women, Protected Veterans and Disabled individuals to apply for all positions that they may be qualified for. We maintain a drug-free workplace and perform pre-employment substance abuse testing and background checks

This position requires - Clear Background, Drug Test, and Education Check.
Must be authorized to work in the US for any employer without Sponsorship.
(Principal Only! No Corp to Corp)
---------------------------------------------------------------------------------------------------------------------

Position Title: 747-IT Security Risk & Compliance Analyst
Location: Alhambra, CA
Pay Rate: $45 - $65

Contract Duration: 1 year

OT Rate: Straight Time (Exempt)

Estimated Regular Hours/Week: 40.00

Onsite

Skills Required:

-Demonstrated expertise in governance, risk management, and cybersecurity compliance, including the development and implementation of policies, standards, and control frameworks. -Strong working knowledge of information security regulations and industry frameworks such as NIST (800-53, CSF), ISO/IEC 27001, and PCI DSS, with the ability to map controls and assess compliance. -Experience conducting risk assessments, control evaluations, and compliance audits to support enterprise-wide GRC initiatives. -Familiarity with vulnerability management, threat intelligence analysis, and security architecture design in support of risk and compliance objectives. -Understanding of encryption technologies and data protection principles as they relate to governance and regulatory obligations. -Foundational knowledge of technical environments including IT security, networking, and systems administration, with awareness of tools such as SIEM (e.g., Microsoft Sentinel), firewalls, and other endpoint/network security platforms.

Experience Required:

3+ years of experience within each of the following: -Applying risk management principles, including conducting audits, security assessments, and interpreting industry-standard security frameworks (e.g., NIST, ISO 27001, CIS). -Conducting and supporting security operations, control assessments, audit remediation, and enterprise risk governance initiatives. -Performing information security risk assessments, evaluating control effectiveness, and analyzing risk impact for technology initiatives and third-party integrations. -Participating in incident response processes, including detection, containment, and post-incident analysis. -Managing the security of complex, multi-platform IT environments, including various operating systems, software suites, and network protocols, within a large organization.

Education Required:

One (1) or more industry-recognized Certifications in Security: --CISSP (Certified Information Systems Security Professional) --CRISC – Certified in Risk and Information Systems Control --CISA – Certified Information Systems Auditor --CISM (Certified Information Security Manager)

Additional Information:

California Resident Candidates Only. Work is expected to be done ON SITE, and interviews will be conducted in person. Work schedule is M-Thurs 7:15am-6pm (10 hours) at Public Works HQ in Alhambra, CA 91803.

We encourage Minorities, Women, Protected Veterans and Disabled individuals to apply for all positions that they may be qualified for. We maintain a drug-free workplace and perform pre-employment substance abuse testing and background checks


------------------------------------------------------------------------------------------------------

If you are interested in this position, please submit your resume in a Word Document with the month and year that you have worked at each previous position to - lisa@norlandgroup.com and copy: 747-IT Security Risk & Compliance Analyst to the email Subject Line.

Or click this email link and attach your resume in a MS Word Document format

Job Posted Date: 6/26/2025

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.