Information Security Application and Compliance Analyst - Austin, Dallas, Houston
Listed on 2026-08-22
-
IT/Tech
Cybersecurity, Information Security & Data Protection
The Information Security Application and Compliance Analyst is responsible for designing, evaluating, and establishing AI security framework, standards, tool sets and governance controls to support secure AI application development and use. This role anchors the firm’s AI security and governance capability, including independent evaluation of AI-generated code and AI/ML systems, and helps mature organizational capability in this emerging space. Under general supervision, the individual in this role also provides supporting security and compliance activities across the firm- including administering and monitoring information security applications, performing initial triage and remediation tracking for application-related security events, assisting technology teams in reducing risk throughout the application development lifecycle and supporting.
security governance activities such as third-party/vendor risk support, secure development life cycle (SDLC) and use of AI, cloud, and other development tools, client and internal assessments, evidence collection, control documentation, and continuous improvement of security policies, standards, and procedures. For the full job description, please click on the More Info icon.
- Independently identifies and evaluates AI-generated code, AI/ML systems, and model behavior to assess security risks and governance implications. Works with development teams and security management to identify and recommend AI security and compliance tools plus mitigation strategies for AI-related security vulnerabilities and design flaws.
- Designs and recommends AI security frameworks, standards, tool sets and governance controls for the firm's adoption of AI-assisted software development and AI enabled vendor tools. Establishes best practices for secure AI application development and use.
- Partners with security management, compliance, and technology teams to develop and implement AI governance policies, procedures, and control documentation. Assists in policy and standard updates related to AI security and compliance.
- Provides backup support to the security team on routine information security operations, including administration and monitoring of security tools, incident triage, and remediation coordination.
- Administers, monitors, and tunes information security applications and integrations (e.g., vulnerability management, endpoint protection, DLP, phishing defense, SIEM/SOAR, and application security scanning tools) to detect and reduce risk.
- Handles technical 2nd level user support escalations on security issues from the help desk. Acts as liaison between Information Security and the help desk, as well as national and international IT support managers. Performs initial triage of security events impacting applications and supporting platforms; coordinates containment, remediation tracking, and documentation in accordance with incident response procedures.
- Monitors and manages security tools such as EPM, antivirus, SIEM, phishing, vulnerability management, and DLP solutions to help detect and protect from security vulnerabilities, incidents, and data loss.
- Partners with infrastructure, application, AI and cloud teams to implement secure configuration baselines, least-privilege access, and compensating controls; assists with troubleshooting technical issues with information security applications.
- Coordinates and communicates with TDS resources on implementation and remediation of identified security vulnerabilities and deficiencies, including verification of fixes and reporting of status/metrics.
- Assists with access governance activities (e.g., privileged access reviews, application account administration support, and evidence for user/system access controls) in alignment with policy and audit requirements.
- Supports security compliance initiatives including certification programs, internal/client assessments, policy/standard updates, control testing, and audit evidence collection and retention.
- Assists with third-party/vendor risk activities, including security questionnaires, documentation review, tracking of remediation items, and ongoing monitoring support.
- Contributes…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).