IT - Security Compliance Analyst II

Georgia Farm BureauMacon, GA

About The Position

This role involves adhering to, evaluating, and assisting in the development of security policies, standards, and procedures, recommending updates to align with legal, regulatory, and business requirements. The analyst will perform security and compliance assessments to evaluate adherence to internal policies, standards, and applicable regulatory frameworks. Key responsibilities include identifying control gaps, documenting findings, and supporting remediation activities. The role also entails tracking compliance status, risks, exceptions, and remediation efforts, maintaining appropriate documentation and evidence. Additionally, the analyst will assist in internal and external risk assessments, maintain knowledge of relevant security and privacy frameworks and regulations, and prepare compliance metrics and reports for management review. The position requires documenting activities, assessments, issues, and remediation tracking within designated systems. The analyst will also develop and maintain positive working relationships with internal and third-party vendors, provide clear and accurate information regarding compliance posture, and continually improve the security program by identifying gaps and recommending enhancements. Strong communication and interpersonal skills are essential for interacting effectively with both technical and non-technical stakeholders. The role also emphasizes supporting team members, following sound business ethics, and demonstrating a commitment to continuous learning and professional development. The individual should be self-motivated and able to complete tasks and priorities within established timelines, escalating issues as needed.

Requirements

  • Bachelor’s degree in Information Technology, Information Security, Risk Management, Business, or a related field, or an equivalent combination of education, training, and experience.
  • Background or experience in information security, compliance, governance, risk management, audit, IT operations, or a related discipline is desired.
  • Familiarity with developing, maintaining, reviewing, or assessing security policies, standards, and procedures.
  • Exposure to security or compliance assessments, risk evaluations, audit support activities, or control testing is beneficial.
  • General understanding of IT systems, security controls, and enterprise technology environments.
  • Experience working with, interpreting, or mapping controls to recognized frameworks such as NIST CSF, NIST SP 800-53, CIS Controls, ISO/IEC 27001, or similar.
  • Knowledge of regulatory, legal, or contractual security and compliance expectations in regulated or complex environments.
  • Strong organizational, analytical, and documentation skills with attention to detail.
  • Ability to interpret requirements and translate them into clear, practical, and business-aligned guidance.
  • Strong written and verbal communication skills, with the ability to engage effectively with both technical and non-technical stakeholders.
  • Demonstrates curiosity and willingness to learn, with interest in understanding the “what,” “why,” and “how” behind security controls and compliance requirements.
  • Self-motivated, adaptable, and comfortable working in an evolving security and compliance program.

Nice To Haves

  • Security-related professional certifications (e.g., Security+, CISSP, CISA, CISM, CRISC, or similar) are a plus.

Responsibilities

  • Adhere to, evaluate, and assist in the development of security policies, standards, and procedures; recommend updates to align with legal, regulatory, and business requirements.
  • Perform security and compliance assessments to evaluate adherence to internal policies, standards, and applicable regulatory frameworks.
  • Assist in identifying control gaps, document findings, and support management and stakeholders in remediation activities.
  • Track compliance status, risks, exceptions, and remediation activities, ensuring appropriate documentation and evidence is maintained.
  • Assist in internal and external risk assessments, including identifying, analyzing, and documenting security and compliance risks.
  • Maintain working knowledge of relevant security and privacy frameworks and regulations (e.g., NIST, CIS, ISO, NAIC, PCI, SOX, HIPAA, or similar, as applicable).
  • Assist in delivering guidance and awareness materials to internal teams based on established policies and direction.
  • Monitor changes in regulatory requirements, industry standards, and emerging risks, and provide updates to management for review and direction.
  • Prepare compliance metrics, status reports, and risk summaries for management review.
  • Document activities, assessments, issues, and remediation tracking within designated systems or tools.
  • Complete task and project work as assigned.
  • Escalate issues, risks, and exceptions to management for review and decision-making.
  • Develop and maintain positive working relationships with internal and third-party vendors as needed.
  • Provide management and team members with clear, accurate, and timely information regarding compliance posture, risks, and issues.
  • Continually improve the security program by identifying gaps in documentation, processes, or controls, and recommending enhancements.
  • Support team members by sharing knowledge of security and compliance practices.
  • Follow sound business ethics when executing job responsibilities.
  • Demonstrate a commitment to continuous learning and professional development.
  • Be a self-motivated individual with the ability to complete assigned tasks and priorities within established timelines, escalating issues or competing demands to management as needed.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service