CareerZen Logo
Company logo

Security Analyst (GRC & Security Operations)

Addison Group

Contract

Arlington, VA

Job description

Hello

This is Rashmi from Dexian! I’m a Senior Technical Recruiter with a passion for connecting top-tier talent with outstanding career opportunities. I’m currently Hiring Regulatory Compliance Analyst – IT Security Controls. If you’re interested, feel free to reach out to me directly at (703) 420-3980 or share your updated resume at [email protected]

job Title: Regulatory Compliance Analyst – IT Security Controls
Location: Dearborn, MI (Hybrid – Onsite Tuesday to Thursday)
Duration: Contract to Hire

Key Responsibilities:
Audit & Regulatory Compliance:

  • Manage and support regulatory audits and examinations
  • Collect and validate evidence for IT and cybersecurity control assessments.
  • Interpret emerging regulations and contribute to the organization’s compliance roadmap.
  • Work closely with audit teams to resolve findings and track corrective actions.

IT Security Controls Testing:

  • Evaluate and test controls across multiple cybersecurity frameworks (NIST CSF, ISO 27001, COBIT).
  • Identify control weaknesses and help drive remediation efforts with IT and application teams.
  • Ensure secure integration and ongoing compliance for applications, APIs, and cloud platforms.

Vendor & Third-Party Risk Management:

  • Conduct supplier privacy and security assessments and analyze IT control responses.
  • Collaborate with Legal, Vendor Management, and business units to validate third-party security practices.
  • Guide suppliers on required security controls (e.g., MFA, data protection, secure APIs).

AI Tools & Data Security Awareness:

  • Leverage foundational knowledge of AI to assess potential data risks and identify security gaps using tools such as Excel and data lakes.
  • Assist with analyzing two or more years of trend data to detect vulnerabilities or areas of non-compliance.

Cloud Security & Tool Integration:

  • Participate in Credit’s GCP migration by addressing cloud-related compliance and security questions.
  • Use tools such as JIRA, ServiceNow, and RSA Archer to track compliance tasks, control testing, and issue resolution.

Training & Governance:

  • Support annual cybersecurity training programs (e.g., phishing, social engineering).
  • Maintain documentation and evidence repositories in systems like SharePoint and internal document management systems.
  • Create and manage user stories in JIRA to log compliance tasks and updates.

Required Qualifications:

  • Bachelor’s degree in Information Systems, Cybersecurity, Computer Science, Accounting, or a related field (required).
  • 3–10 years of professional experience in IT Security Controls and regulatory compliance.
  • Demonstrated experience managing or supporting audits and examinations from regulatory bodies.
  • Knowledge of industry-standard frameworks (e.g., NIST, ISO, SOC 2) and how to apply them in enterprise environments.
  • Understanding of cloud security principles, especially with (GCP).
  • Ability to assess security risks related to AI and evaluate third-party compliance against regulatory standards.

Preferred Qualifications:

  • Certifications such as CISA, CISM, CRISC, CISSP, or similar.
  • Experience in financial services, banking, or another regulated industry.
  • Experience with RSA Archer, JIRA, and ServiceNow.
  • Familiarity with vendor onboarding, decommissioning processes, and continuous monitoring strategies.

Soft Skills & Attributes:

  • Strong sense of integrity, professionalism, and ethical conduct.
  • Excellent communication and relationship-building skills.
  • Ability to manage multiple priorities in a fast-paced environment with minimal supervision.
  • Organized, proactive, and capable of guiding peers and business units through compliance requirements.

Thanks & Regards,

Dexian is a leading provider of staffing, IT, and workforce solutions with over 12,000 employees and 70 locations worldwide. As one of the largest IT staffing companies and the 2nd largest minority-owned staffing company in the U.S., Dexian was formed in 2023 through the merger of DISYS and Signature Consultants. Combining the best elements of its core companies, Dexian's platform connects talent, technology, and organizations to produce game-changing results that help everyone achieve their ambitions and goals.

Dexian's brands include Dexian DISYS, Dexian Signature Consultants, Dexian Government Solutions, Dexian Talent Development and Dexian IT Solutions. Visit https://dexian.com/ to learn more.

Dexian is an Equal Opportunity Employer that recruits and hires qualified candidates without regard to race, religion, sex, sexual orientation, gender identity, age, national origin, ancestry, citizenship, disability, or veteran status.

Job Type: Contract

Pay: $40.00 - $52.26 per hour

Expected hours: 40 per week

Work Location: Hybrid remote in Dearborn, MI 48126