Mainframe Security Analyst
Fidelity TalentSource
Full-time
Westlake, TX
Job description
Ready to Build a Secure Future with a Company That Values Your Expertise?
At Aurora InfoTech, we’re not your average IT company—we’re a mission-driven Cybersecurity consulting firm dedicated to helping small and mid-sized businesses grow confidently by securing their digital environments. As we continue to expand, we are seeking a Governance, Risk, and Compliance (GRC) Analyst to join our elite team of Cybersecurity professionals.
This is an exciting opportunity for someone who thrives on structure, precision, and continuous improvement—and who wants to play a pivotal role in helping our clients achieve and maintain compliance across frameworks like CMMC, NIST, HIPAA, and CompTIA Trustmark.
Why This Role Matters
As our GRC Analyst, you’ll be the cornerstone of our compliance operations. You’ll design, implement, and manage governance, risk, and compliance programs that align with both regulatory frameworks and Aurora InfoTech’s internal security posture. You’ll work closely with leadership, technical teams, and clients to ensure our policies, procedures, and controls remain effective, up to date, and audit-ready.
Duties & ResponsibilitiesGovernance
- Develop, maintain, and enhance Cybersecurity policies, standards, and procedures in alignment with industry frameworks (NIST 800-171, CMMC 2.0, HIPAA, CompTIA Trustmark).
- Support internal governance initiatives by tracking policy adherence and reporting deviations.
- Manage policy lifecycle documentation and version control across all internal and Client compliance programs.
- Collaborate with leadership to align compliance initiatives with Aurora InfoTech’s mission and business goals.
Risk Management
- Conduct regular risk assessments for internal systems and Client environments to identify vulnerabilities and compliance gaps.
- Maintain a risk register with defined mitigation strategies, ownership, and timelines.
- Analyze audit results and coordinate remediation actions with technical teams.
- Assist with vendor risk management and third-party security assessments.
Compliance
- Support implementation of compliance frameworks (CMMC, HIPAA, NIST, CompTIA Trustmark).
- Manage documentation, audit evidence, and compliance readiness for both internal operations and Client engagements.
- Prepare and support compliance audits, ensuring timely responses to audit findings and recommendations.
- Monitor changes in regulatory requirements and proactively update compliance strategies.
- Conduct gap analyses to assess current controls against regulatory and contractual obligations.
Reporting & Continuous Improvement
- Develop and maintain GRC dashboards, reports, and compliance metrics for leadership and clients.
- Track progress of compliance initiatives, providing regular updates to the CEO and CSO.
- Identify opportunities for process improvement and automation in compliance workflows.
- Support training and awareness programs on compliance and risk management best practices.
Qualifications Education
- Bachelor’s degree in Cybersecurity, Information Systems, Risk Management, or related field preferred.
Experience
- 2–4 years of hands-on experience in GRC, information security, or compliance roles.
- Experience working with compliance frameworks such as NIST 800-171, CMMC, HIPAA, SOC 2, or ISO 27001.
- Experience with PSA tools (e.g., Halo PSA, ConnectWise) and compliance tracking systems is a plus.
Skills & Abilities
- Deep understanding of IT governance, risk management, and Cybersecurity compliance.
- Strong analytical, problem-solving, and organizational skills.
- Excellent written and verbal communication abilities—able to convey complex compliance requirements clearly.
- Proficiency in Microsoft Office Suite (Word, Excel, PowerPoint) and compliance documentation tools.
- Strong ethical standards, attention to detail, and a passion for maintaining integrity in all compliance processes.
You’re a Great Fit If You…
- Have 2–4 years of experience in a compliance or risk-focused Cybersecurity role.
- Are detail-oriented, disciplined, and thrive in a fast-paced, mission-driven environment.
- Love structure, documentation, and continuous improvement.
- Are passionate about helping businesses stay secure, compliant, and audit-ready.
- Value being part of a team that fosters learning, growth, and respect.
What You’ll Get
- Competitive Base Salary
- Paid Time Off, Sick Leave, and Selected Major Holidays
- Health Insurance Coverage
- Ongoing Training and Certification Opportunities (CMMC, NIST, CompTIA)
- Career Advancement Opportunities – We Promote from Within
- A Supportive, Collaborative, and Growth-Oriented Team Culture
Work Schedule
- Monday to Friday
- 8-hour shifts
- In-person work environment (Orlando, FL)
Requirements to Apply
- Must be a U.S. Citizen
- Must work onsite in Orlando, FL
- Must pass a background check
To Apply
Submit your resume and a cover letter explaining your experience with governance, risk, and compliance and why you’re the ideal candidate to help Aurora InfoTech uphold its mission to protect and empower businesses through secure, compliant technology.
Job Type: Full-time
Pay: $33,600.00 - $39,360.00 per year
Benefits:
- Dental insurance
- Health insurance
- Paid time off
- Parental leave
- Vision insurance
Work Location: In person