Associate, Analyst, IT Cyber
Listed on 2026-02-16
-
IT/Tech
Cybersecurity, IT Consultant, Information Security, IT Business Analyst
Overview
Job Description - Associate, Analyst, IT Cyber (2600000M)
Associate, Analyst, IT Cyber - (2600000M)
Job Title :
Associate, Analyst, IT Cyber
Location: Farmington, CT
Reporting Structure:
Reports to:
VP, IT Security & Governance
Partnership:
Collaborates closely with Cyber, Infrastructure, AMS and external Third Parties
Take the next step in your career with us.
Allied World is an ideal place for talented professionals who are driven by a belief in the value of collaboration and the power of knowledge. We believe that when our great people work together and support one another, our clients receive the best solutions. We embrace unique perspectives and empower each person to grow through professional development, career training, and mentoring programs.
Our people are our most important asset, and we are very proud of the quality of our team members.
Position Summary :
The Governance Analyst is responsible for supporting ongoing compliance and governance initiatives throughout the organization, ensuring monitoring and adherence to policies that align with both internal frameworks and external regulatory requirements. This role requires strong knowledge of cybersecurity and enterprise frameworks (such as NIST, COBIT, CIS, ISO 27001, and SOC 2 Type
2) and the ability to translate complex regulatory requirements into clear, actionable policies. The Governance Analyst will collaborate with various departments and cross-functional teams to develop effective strategies that drive compliance, governance maturity, and operational resilience, while maintaining evidence in Vanta from a cybersecurity perspective. Key duties include overseeing governance activities, proactively identifying and improving underperforming processes before audits, managing third-party risk, and ensuring a strong understanding of organizational processes and compliance requirements—enabling leadership to focus on business growth while maintaining robust oversight of vendor compliance and risk exposure.
Job Duties:
- Conduct regular control assessments to identify and evaluate potential non-compliance to applicable frameworks.
- Utilize frameworks like NIST 2.0, CIS Version 8, etc. as the basis for control reporting.
- Proactively identify policy and program improvement areas from the control assessments for the improvement of organizational maturity levels.
- Ensure periodic testing and reporting of the operational and design effectiveness of IT controls.
- Ensure reports are clear, concise, and actionable, providing insights into potential impact and recommended mitigation strategies.
- Collaborate with relevant stakeholders to monitor compliance (through automated and manual tests) to IT governance policies and procedures.
- Ensure implemented processes and controls align with industry best practices and regulatory requirements.
- Ensure the organization’s IT governance practices and control implementations comply with relevant frameworks, including:
- NIST CSF 2.0 (National Institute of Standards and Technology Cyber Security Framework):
Focus on identifying, protecting, detecting, responding, and recovering from cybersecurity threats. - CIS Version 8 (Center for Internet Security):
Implement critical security controls to defend against prevalent cyber threats. - Other control frameworks as applicable.
- Demonstrate strong inclination to automate control validation processes to minimize manual efforts.
- Ensure constant efforts to adopt automation mechanisms for control validation and process improvement.
- Develop and conduct training programs to raise awareness of IT governance and cyber risk management across the organization.
- Ensure that all employees understand their roles in maintaining security and compliance.
- Regularly review and update IT governance practices to reflect changes in the threat landscape and business environment.
- Foster a culture of continuous improvement and proactive risk management.
Qualifications
Professional Experience / Qualifications
• Bachelor s degree in Cybersecurity,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).