EBSCO Information Services (EBSCO) delivers a fully optimized research experience, seamlessly integrated with a powerful discovery platform to support the information needs and maximize the research experience of our end-users. Headquartered in Ipswich, MA, EBSCO employs more than 2,700 people worldwide, with most embracing hybrid or remote work models. As an AI-enabled service leader, we thrive on innovation, forward-thinking strategies, and the dedication of our exceptional team. At EBSCO, we’re driven to inspire, empower and support research. Our mission is to transform lives by providing reliable and relevant information — when, where and how people need it. We’re seeking dynamic, creative individuals whose diverse perspectives will help us achieve this global, inclusive mission. Join us to help make an impact. Your Opportunity The Senior Security Governance Analyst is responsible for developing and maintaining the organization’s information security governance framework with an emphasis on NIST 800-53–aligned control architecture and support for federal and regulated cybersecurity requirements.This role focuses on the structure of the security program — policies, standards, control objectives, ownership models, and governance processes — ensuring the organization can consistently manage risk and demonstrate alignment with federal security expectations, including NIST, FedRAMP/GovRAMP-style control rigor, and public-sector customer requirements.This role oversees the full lifecycle of system certification and authorization (C&A), maintains System Security Plans (SSPs), drives remediation of control gaps, and ensures continuous alignment with NIST SP 800-53, FedRAMP/GovRAMP, and other applicable frameworks. The analyst will serve as the primary liaison between internal teams and federal/state stakeholders -ensuring contractual obligations and that regulatory expectations are met with precision and professionalism. This is a program design and governance role, not a control testing or audit execution position. It is ideal for a seasoned GRC professional with deep expertise in federal / state cybersecurity compliance, strong program management skills, and hands-on experience with security tooling and documentation workflows.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Mid Level