Senior Security & Compliance Analyst Staff Augmentation
Mega Cloud LabWe are seeking an experienced Senior Security & Compliance Analyst for a 1-year staff augmentation contract in Tallahassee, FL. This role bridges security governance, risk, and compliance (GRC) with hands-on security operations to ensure robust security posture and compliance across enterprise systems.
Minimum Qualification Requirements
(All candidates MUST meet the following minimum qualifications to be considered)
-
Combined IT & Security Experience: Minimum of four (4) years of combined IT and security work experience with a broad range of exposure to systems analysis, applications development, and database design and administration—including 1 to 2 years of experience focused on information security and knowledge of security issues, techniques, and implications across all computer platforms.
-
Security & GRC Domain Experience: Minimum of seven (7) years across information security disciplines, with demonstrated experience in both security governance/compliance (GRC) and hands-on security operations.
-
Frameworks & Policy: Demonstrated experience drafting information security policies and standards, as well as implementing NIST SP 800-53 and/or NIST CSF controls.
-
Audits & Risk Management: Demonstrated experience performing security risk assessments and supporting internal or external audits.
-
Education: Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or a related field (or equivalent work experience).
-
Certifications: Candidate must hold at least one (1) active industry certification from the following:
-
CISA — Certified Information Systems Auditor
-
CRISC — Certified in Risk and Information Systems Control
-
CGRC — Certified in Governance, Risk and Compliance (formerly CAP)
-
CISM — Certified Information Security Manager
-
CISSP — Certified Information Systems Security Professional
-
-
On-Site Requirement: Full on-site availability in Tallahassee, Florida. (Remote work may only be considered on an occasional, ad-hoc basis with prior written approval from the Contract Manager; this is NOT a hybrid or permanent remote arrangement. Travel costs are not reimbursed.)
Preferred Qualifications
(Strongly preferred and will enhance evaluation)
-
Florida state government or public-sector information security experience.
-
Working knowledge of Rule 60GG-2, F.A.C., and Section 282.318, Florida Statutes.
-
CJIS Security Policy implementation or audit experience.
-
HIPAA Security Rule and PHI-handling experience.
-
Hands-on experience with Microsoft 365 G5, Microsoft Defender (Endpoint, Vulnerability Management), and Microsoft Purview.
-
Vulnerability management tooling and remediation-coordination experience.
-
Experience developing IAM / access-control standards and provisioning-integrity controls.
-
Scripting experience (PowerShell or comparable) for security automation and reporting.
#CybersecurityJobs #GRC #InformationSecurity #CISA #CISSP #CISM #TalentAcquisition #ITJobs #FloridaJobs #TallahasseeJobs #SecurityAnalyst