Job Title: Security & Compliance Analyst (Hybrid)
Duration (Contract): 12 Months
Client Location: Lansing, MI 48933
Location Preference: Hybrid
Job Description:
As a Security & Compliance Analyst, you will be responsible for supporting security, compliance, risk management, audit readiness, and business continuity initiatives across enterprise systems and processes. The role requires collaboration with business and technical teams to ensure adherence to security frameworks, regulatory requirements, and organizational governance standards while driving secure, compliant, and efficient operations.
Key Responsibilities:
- Analyze and document security processes, requirements, and compliance controls.
- Collaborate with stakeholders to define and implement security and compliance requirements.
- Develop and maintain audit-ready security and compliance documentation.
- Conduct security risk assessments and recommend mitigation strategies.
- Support security audits, assessments, and control validation activities.
- Perform gap analyses related to regulatory, policy, and compliance changes.
- Lead and support Disaster Recovery (DR) and Business Continuity Planning (BCP) activities.
- Participate in solution testing to ensure security and compliance requirements are met.
- Coordinate vulnerability assessments and assist with remediation planning.
- Provide guidance, training, and leadership on security and compliance best practices.
Required Skills, Experiences, Education, and Competencies:
- Minimum 7 years of experience in security, compliance, risk management, or a related field within a regulated environment.
- 5+ years of experience with security frameworks such as NIST CSF, NIST 800-53, and enterprise security standards.
- 5+ years of experience using security compliance and workflow management tools such as Azure DevOps and GRC platforms.
- 5+ years of experience supporting Disaster Recovery Plans (DRPs), Business Continuity Planning (BCP), RTOs, and RPOs.
- Strong experience supporting audits, compliance assessments, policy reviews, and control validation activities.
- Knowledge of common security vulnerabilities including XSS, CSRF, SQL Injection, and authentication-related risks.
- Experience working within Agile SDLC environments with a focus on security and compliance integration.
- Strong analytical, documentation, communication, and stakeholder management skills.
- Bachelor's degree in Information Security, Cybersecurity, Information Systems, Public Administration, or a related field preferred.
- Professional certifications such as CGRC, CAP, Security+, CISA, or equivalent are highly preferred.
The hourly range for roles of this nature are $45.00 to $80.00/hr. Rates are heavily dependent on skills, experience, location, and industry.
cyberThink is an Equal Opportunity Employer.