Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Data Recognition Corporation

Information Security Compliance Analyst

Data Recognition Corporation

. Obtain and maintain GovRAMP compliance .

Posted 10/9/2026full-timeRemote • Minnesota • United StatesMid-LevelSeniorWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in Information Security and Governance, Risk Management, and Compliance (GRC) with a strong focus on NIST Risk Management Framework and SOC 2 Type II compliance audits. Capable of developing security policies, managing audits, and driving business continuity and disaster recovery processes.

Highest-signal resume keywords
GovRAMP ComplianceNIST 800-53 Rev 5 ImplementationSOC 2 Type II Compliance AuditsSystem Security Plan (SSP) ManagementRisk Management Framework (RMF) Knowledge

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Information SecurityGRCAuditComplianceSecurity Policy DevelopmentContinuous MonitoringSecurity Control AssessmentBusiness Continuity ManagementDisaster Recovery ProcessesPlan of Action and Milestones (POAM) Documentation
Soft Skills
Excellent Communication SkillsTeam CollaborationInitiative DrivingPersonal IntegrityDiscretion in Handling Sensitive Information
Industry Keywords
NIST Risk Management FrameworkSecurity Technical Implementation Guides (STIGs)Security AwarenessCompliance MetricsInternal and External Audits

About the role

Key responsibilities & impact
  • Obtain and maintain GovRAMP compliance
  • Support Authority to Operate (ATO) approvals for government contracts by adhering to the NIST Risk Management Framework (RMF)
  • Develop and manage System Security Plan (SSP) documentation and Plans of Action and Milestones (POAMs)
  • Assess and audit system security controls and perform continuous monitoring activities
  • Manage internal and external annual audits, including third-party and customer audits
  • Maintain and drive remediation of POAM items
  • Develop and review security policies and standards
  • Mature security risk management practices
  • Manage and enhance Business Continuity/Disaster Recovery processes
  • Update and maintain security and compliance metrics
  • Assist with security awareness and other aspects of the security practice
  • Promote business continuity and resiliency efforts
  • Work with no direct reports; other duties may be assigned by the employer

Requirements

What you’ll need
  • 3+ years of Information Security, GRC, audit, or compliance experience
  • Working knowledge of NIST 800-53 Rev 5 framework and how to implement and audit against the framework
  • General knowledge of the Risk Management Framework (RMF), compliance with security technical implementation guides (STIGs), and documenting Plan of Action and Milestones (POA&M)
  • Experience managing SOC 2 Type II compliance audits
  • High level of personal integrity and ability to discreetly handle sensitive, personal, and classified information
  • Excellent communication skills and ability to work well in a team and across the organization, as well as independently driving initiatives
  • Company cannot provide sponsorship for this position