Senior IT Compliance and Risk Analyst

NextEra EnergyJuno Beach, FL

About The Position

The Senior IT Compliance and Risk Analyst is responsible for supporting and advancing the cybersecurity Governance, Risk and Compliance program through the development, maintenance, communication, and oversight of cybersecurity policies, standards, programs, and procedures. This role serves as a key contributor to the organization's cybersecurity governance framework, ensuring alignment with business objectives, regulatory requirements, industry frameworks, and enterprise risk management practices. The position focuses primarily on governance activities, including policy and standards management, framework development, document lifecycle management, stakeholder engagement, and governance reporting. The role also supports cybersecurity risk management and compliance activities through assessments, issue remediation tracking, control validation, and audit support.

Requirements

  • Support and advance the cybersecurity Governance, Risk and Compliance program.
  • Develop, maintain, communicate, and oversee cybersecurity policies, standards, programs, and procedures.
  • Contribute to the organization's cybersecurity governance framework.
  • Ensure alignment with business objectives, regulatory requirements, industry frameworks, and enterprise risk management practices.
  • Manage policies and standards.
  • Develop frameworks.
  • Manage document lifecycles.
  • Engage stakeholders.
  • Generate governance reports.
  • Support cybersecurity risk management and compliance activities.
  • Conduct assessments.
  • Track issue remediation.
  • Validate controls.
  • Provide audit support.

Responsibilities

  • Development, maintenance, communication, and oversight of cybersecurity policies, standards, programs, and procedures.
  • Serving as a key contributor to the organization's cybersecurity governance framework.
  • Ensuring alignment with business objectives, regulatory requirements, industry frameworks, and enterprise risk management practices.
  • Focusing primarily on governance activities, including policy and standards management, framework development, document lifecycle management, stakeholder engagement, and governance reporting.
  • Supporting cybersecurity risk management and compliance activities through assessments, issue remediation tracking, control validation, and audit support.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service