Legal & Compliance
Information Security Compliance Analyst
Data Recognition Corporation
Full-Time
Mid-Level
$95k – $120k/yr
Minnesota
Posted 2d ago
Who can apply
Minnesota
The listing asks for applicants in Minnesota. Confirm on the employer's page before applying.
Imported Oct 8, 2026 and not yet rechecked against the employer page. Roles can close without notice.
Source: indeed.com
Job Description
DRC is one of the largest educational assessment and curriculum/instruction companies in the industry.
Information Security Compliance Analyst
Data Recognition Corporation \- Minnesota
Please No Agencies
Company cannot provide sponsorship for this position
**Summary:**
This position is part of the Data Recognition Corporation (DRC) Information Security Team that has an important role in the defining and enabling the secure operation of the DRC environment. This position has responsibility for managing and leading various risk and compliance activities, including internal and external security reviews that are key to validation of our security program.
This position also assists with other aspects of the security practice, including maintaining DRC’s security policies, standard and procedures; increasing the organizations security awareness; performing risk assessment and risk management activities; and promoting business continuity and resiliency efforts.
**Responsibilities:**
This position will manage/lead a wide range of compliance and risk functions, with the focus being on maintaining and enhancing our compliance maturity. Key responsibilities include:
* Obtain and maintain GovRAMP compliance
* Support Authority to Operate (ATO) approvals for government contracts by adherence to NIST Risk Management Framework (RMF)
* Support cybersecurity efforts to include the development and management of System Security Plan (SSP) documentation, Plans of Action and Milestones (POAMs), assessing and auditing systems security controls, and continuous monitoring activities
* Manage internal and external annual audits (third party and customer)
* GovRAMP
* ISO 27000 series
* SOC II Type 2
* Various customer audits
* Maintain and drive remediation on Plan of Action and Milestones (POAM) items
* Policy and standard development and review
* Mature security risk management practices
* Manage and enhance Business Continuity/Disaster Recovery processes
* Update and maintain security and compliance metrics
Essential Qualifications
* 3\+ years of Information Security, GRC, audit, or compliance experience
* Working knowledge in NIST 800\-53 Rev 5 framework and how to implement and audit against the framework
* General knowledge of the following: Risk Management Framework (RMF), compliance with security technical implementation guides (STIGs), and documenting Plan of Action and Milestones (POA\&M)
* Experience managing SOC 2 Type II compliance audits
* Possesses a high level of personal integrity and the ability to discreetly handle sensitive, personal, and classified information.
* Must have excellent communication skills and the ability to work well in a team and across the organization, in addition to independently driving initiatives.
Preferred Qualifications
* Four\-year college degree in IT, Computer Science, Cybersecurity, or related fields
* Internal or External Audit experience
* Experience with GovRAMP or FedRAMP certifications
* Experience with Federal Information Security Management Act (FISMA) leveraging National Institute of Standards and Technology (NIST) security controls (NIST 800\-53, rev 5\).
* Security certification such as Certified Information Security Auditor (CISA) and/or Certified in Risk and Information Security Controls (CRISC)
* Experience with ISO 27001 certification
* Experience supporting and participating in third party vendor security assessments and audits, reviewing audit findings as well as responses to security findings and remediation plans.
* Ability to manage cross\-functional projects and initiatives as required.
**Reporting to this position:** No direct reports
The Employer retains the right to change or assign other duties to this position
Company cannot provide sponsorship for this position
Please, no agencies
All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
DRC offers a comprehensive benefits program that allows employees to make choices that best meet their current and future needs. We offer many benefits, including medical, wellness, dental, and vision insurance, a 401(k), flexible spending and health savings accounts, short and long\-term disability insurance, and life insurance. DRC also offers a generous paid time off policy and community service leave.
Data Recognition Corporation is an Affirmative Action/Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.
The salary range is a guideline. Compensation will be based on skills, knowledge, and experience.
Get jobs like this by email
New listings that match your roles and regions, weekly or daily. Salary and who-can-apply shown for every job.
Before you apply
Similar Jobs
Senior Paralegal – Corporate Governance and Equity Administration
EXL ServiceEXL Service · New YorkFull-Time · New YorkDirect
$120k – $140k2d ago
Legal Assistant
Tyson & MendesTyson & Mendes · CaliforniaFull-Time · CaliforniaDirect
$79k – $96k2d ago
Litigation Specialist - Workers Compensation
PMA CompaniesPMA Companies · New YorkFull-Time · New YorkDirect
$84k – $100k2d ago
Paralegal Specialist
U.S. Customs and Border ProtectionU.S. Customs and Border Protection · New YorkFull-Time · New YorkDirect
$65k – $102k2d ago
Paralegal, Corporate & Regulatory Compliance
Midi HealthMidi Health · CaliforniaFull-Time · CaliforniaDirect
$120k – $135k3d ago
Litigation Paralegal | Texas Experience Required
Alexander Shunnarah Trial AttorneysAlexander Shunnarah Trial Attorneys · TexasFull-Time · TexasDirect
$55k – $75k3d ago
Associate Legal Counsel
FictivFictiv · IndianaFull-Time · IndianaDirect
$63k – $68k3d ago
Project Coordinator (Cybersecurity Compliance)
APTNEXUSAPTNEXUS · Washington or District of Columbia · EST hoursFull-Time · Washington or District of Columbia · EST hoursDirect
$52k – $70k3d ago
AH
Senior Security and Compliance Specialist
Ad HocAd Hoc · United StatesFull-Time · United StatesDirect
AWSKubernetes
$150k – $170k2d agoView details$150k – $170k2d ago
CH
PARALEGAL
C2Q Health SolutionsC2Q Health Solutions · United StatesFull-Time · United StatesDirect
$80k – $90k3d ago