Demo

IT Security Risk and Compliance Analyst

Commonwealth of VA Careers
Virginia, VA Full Time
POSTED ON 8/5/2025
AVAILABLE BEFORE 11/3/2025

Job Description

Under the guidance of the Associate Director of Risk and Compliance, the IT Risk and Compliance Analyst will carry out IT security assessment activities including IT risk assessments and security reviews for university departments, as well as evaluations of third-party technology solutions, to ensure alignment with university policies, standards, and external compliance regulations wherever applicable. Assessment activities may include a wide variety of tasks depending on the scope of the review and the IT capabilities within university departments (e.g. developing asset inventory, assessing endpoint and application security controls and configurations, examining procedures, etc.)

The analyst will be expected to make contributions to the creation and maintenance of documentation/procedures in support of the IT Risk and Compliance program, and should identify opportunities for leveraging automation to support data consistency and process efficiencies within the program and as it relates to other university IT services. The analyst may provide training and outreach to the university community as needed and may also be called upon to coordinate updates for the IT Continuity of Operations plan and to assist units within the Division of Information Technology as they conduct disaster recovery planning or on other security-related initiatives as requested.

Please note: Sponsorship is not available for this position. 

Required Qualifications

• Master's degree in business, information technology, accounting, or a related field; or equivalent combination of education, training, and experience
• Demonstrated experience performing IT security reviews, risk assessments, or audits
• Strong understanding of key information security concepts and fundamentals
• Experience in creating awareness of security practices across multiple technical teams
• Knowledge of security frameworks and standards including NIST, PCI-DSS, ISO 27001, CIS Critical Security Controls, NIST Cybersecurity Framework (NIST CSF), etc.
• Ability to effectively communicate across a broad range of campus audiences
• Exceptional organizational and time-management skills

Preferred Qualifications

• Professional certification such as CISA, CISM, CRISC, or CISSP
• Experience performing security assessment of SaaS services
• Knowledgeable of relevant compliance regulations (e.g. FERPA, GLBA)
• Experience with GRC and Information security tools/technologies to collect and maintain security and risk information
• Experience with automation using common scripting tools (e.g. Python, PowerShell, Bash, etc.)
• Experience with data analysis and manipulation
• Experience managing IT security risk or compliance in a higher education setting

Overtime Status

Exempt: Not eligible for overtime

Appointment Type

Regular

Salary Information

$78,000 – $95,000

Hours per week

40

Review Date

7/7/2025

Additional Information

The successful candidate will be required to have a criminal conviction check.

 

About Virginia Tech

Dedicated to its motto, Ut Prosim (That I May Serve), Virginia Tech pushes the boundaries of knowledge by taking a hands-on, transdisciplinary approach to preparing scholars to be leaders and problem-solvers. A comprehensive land-grant institution that enhances the quality of life in Virginia and throughout the world, Virginia Tech is an inclusive community dedicated to knowledge, discovery, and creativity. The university offers more than 280 majors to a diverse enrollment of more than 36,000 undergraduate, graduate, and professional students in eight undergraduate colleges, a school of medicine, a veterinary medicine college, Graduate School, and Honors College. The university has a significant presence across Virginia, including the Innovation Campus in Northern Virginia; the Health Sciences and Technology Campus in Roanoke; sites in Newport News and Richmond; and numerous Extension offices and research centers. A leading global research institution, Virginia Tech conducts more than $500 million in research annually.

Virginia Tech endorses and encourages participation in professional development opportunities and university shared governance.  These valuable contributions to university shared governance provide important representation and perspective, along with opportunities for unique and impactful professional development.

Virginia Tech does not discriminate against employees, students, or applicants on the basis of age, color, disability, sex (including pregnancy), gender, gender identity, gender expression, genetic information, ethnicity or national origin, political affiliation, race, religion, sexual orientation, or military status, or otherwise discriminate against employees or applicants who inquire about, discuss, or disclose their compensation or the compensation of other employees or applicants, or on any other basis protected by law.

If you are an individual with a disability and desire an accommodation, please contact IT Human Resources at ithr@vt.edu during regular business hours at least 10 business days prior to the event.

Salary : $78,000 - $95,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a IT Security Risk and Compliance Analyst?

Sign up to receive alerts about other jobs on the IT Security Risk and Compliance Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$96,228 - $129,772
Income Estimation: 
$131,676 - $196,560
Income Estimation: 
$121,926 - $164,179
Income Estimation: 
$124,413 - $154,875
Income Estimation: 
$87,128 - $112,557
Income Estimation: 
$91,142 - $116,690
Income Estimation: 
$116,347 - $154,557
Income Estimation: 
$150,417 - $183,047
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553

Sign up to receive alerts about other jobs with skills like those required for the IT Security Risk and Compliance Analyst.

Click the checkbox next to the jobs that you are interested in.

  • Community Management Skill

    • Income Estimation: $72,488 - $110,981
    • Income Estimation: $73,522 - $95,253
  • Community Outreach/Activism Skill

    • Income Estimation: $71,416 - $96,663
    • Income Estimation: $72,488 - $110,981
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Commonwealth of VA Careers

Commonwealth of VA Careers
Hired Organization Address Staunton, VA Full Time
Title: P-14 PRN Primary Care Physician State Role Title: 49152 Hiring Range: $140/HR Pay Band: 8 Agency: Dept Behavioral...
Commonwealth of VA Careers
Hired Organization Address Danville, VA Part Time
Title: Part-Time (Wage) Family Nurse Practitioner State Role Title: 49114 Hiring Range: $68.94/hour Pay Band: 6 Agency: ...
Commonwealth of VA Careers
Hired Organization Address Roanoke, VA Full Time
Title: Public Safety Officer State Role Title: Security Officer III Hiring Range: $41,687 - $57,528 Pay Band: 3 Agency: ...
Commonwealth of VA Careers
Hired Organization Address Richmond, VA Full Time
Title: Registered Nurse: Haynesville Correctional Center State Role Title: Registered Nurse I Hiring Range: $38.78-$49.7...

Not the job you're looking for? Here are some other IT Security Risk and Compliance Analyst jobs in the Virginia, VA area that may be a better fit.

IT Security Risk and Compliance Analyst

Virginia Tech, Blacksburg, VA

AI Assistant is available now!

Feel free to start your new journey!