Business Analyst - Senior
Listed on 2026-09-04
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Business Analyst
Business Analyst
- Senior
Primary Talent Partners has a new contract opening for a Business Analyst
- Senior to join a gas and electric company in Columbus, OH. This is a 12-month contract to start with the potential for extensions.
Pay: $57.00 - $67.00/hr; W2 contract, no PTO, no Benefits. ACA-compliant supplemental package available for enrollment. Candidates must be legally authorized to work in the United States and must be able to sit on Primary Talent Partners W2 without sponsorship.
DescriptionThis role reports to the Enterprise Security Director and is responsible for supporting enterprise security, controls, risk, and compliance activities across large business and technology initiatives.
The role partners with business, IT, cybersecurity, compliance, audit, and service provider teams to identify, document, and validate security and control requirements throughout the project lifecycle.
This position helps ensure solutions are designed and delivered with appropriate access controls, data protection, regulatory alignment, audit readiness, and sustainable control ownership.
Individuals at this level are expected to work independently, apply risk-based judgment, and provide guidance to project teams and service providers on security and controls expectations.
Principal Duties and Responsibilities- Manage own schedule of work and partner with stakeholders, subject matter experts, cybersecurity teams, compliance teams, and service providers with limited supervision
- Risk and Security Assessment – support early review of business and technology initiatives to identify security, compliance, access, data protection, and control considerations that may affect scope, design, delivery, or operational readiness
- Security and Controls Planning – collaborate with business and IT teams to identify required controls, document control objectives, evaluate current-state processes, and ensure security and compliance requirements are incorporated into project plans and solution designs
- Definition and Design – facilitate or support working sessions to align stakeholders on security requirements, control design, data protection needs, access models, compliance expectations, and evidence requirements
- Requirements and Controls Elicitation – lead or support engagements to define security, compliance, and control requirements, including business process impacts, regulatory obligations, system access needs, and project-level control expectations
- Controls Traceability and Documentation – maintain traceability of security and control requirements through design, build, testing, deployment, and operational transition using appropriate tools, templates, and evidence repositories
- Solution Assessment and Control Validation – engage with key stakeholders to review proposed designs, assess control coverage, identify gaps or risks, support remediation planning, and confirm that security and compliance expectations are addressed before implementation
- Delivery and Deployment – provide consultation on security and control requirements, assess change requests for risk and compliance impacts, support test planning for control validation, and help ensure appropriate evidence is captured for audit and operational handoff
- Provide guidance, leadership, and direction to project team members, service providers, and less experienced analysts on security, controls, compliance, and risk-management expectations
- Use standard templates, tools, and internal processes consistently to document risks, controls, decisions, issues, evidence, and remediation actions; recommend improvements to security and control processes as needed
- Work with vendors and service providers to review proposed products, designs, and deliverables for security, compliance, usability, and control alignment; participate in RFI/RFP activities by defining or reviewing security and controls requirements
- Develop domain knowledge of assigned systems, products, security processes, and control frameworks; prepare clear procedures, guidance, and communications to support secure adoption, operational readiness, and control ownership transition
- Observe and evaluate business and technology…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).