Senior IT Security Analyst
Listed on 2026-06-15
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Data Security
U.S. Citizenship Requirement
U.S. citizenship is required for this position due to Department of Defense restrictions.
Job OverviewOur Senior Security Policy Analyst is responsible for developing, implementing, and maintaining security policies, standards, and procedures while leveraging Service Now to streamline policy management, compliance tracking, and reporting. This Senior Analyst combines deep knowledge of cybersecurity frameworks with hands‑on experience in governance, risk, and compliance (GRC) operations, and excels at clear communication and high‑quality documentation. The role actively supports security awareness and responsible AI initiatives.
SalarySalary Range: $90,000 ~ $115,000. The base pay offered for this position may vary within the posted range based on your job‑related knowledge, skills, experience, and may fall outside of this range.
Work LocationHybrid work is preferred. Employees should live within the state of Wisconsin and, if within 45 miles of WPS Headquarters (1717 W. Broadway, Madison, WI, 53713), are expected to work in office three days a week on a regular basis.
Responsibilities- Enjoy developing, reviewing, and maintaining corporate security policies, standards, procedures, and guidelines in alignment with NIST CSF, regulatory requirements, and industry best practices.
- Be accountable for integration and management of security policies, controls, and risk assessments within Service Now IRM and Managed Documents.
- Conduct risk assessments, control evaluations, and gap analyses mapped to NIST CSF to support audit readiness and compliance initiatives.
- Collaborate with IT, Risk, Compliance, and Business teams to ensure policy adoption and awareness across the organization.
- Create clear, concise, and actionable security documentation, including policies, procedures, guidance, and reports.
- Monitor compliance with internal policies and external regulatory requirements, identifying gaps and driving remediation efforts.
- Provide reports and analytics on policy adherence, exceptions, and trends using Service Now dashboards and workflows.
- Serve as a subject matter expert on security governance, NIST CSF implementation, and risk management best practices.
- Mentor junior analysts and provide guidance on policy development, implementation, and Service Now utilization.
- Develop security awareness training programs to educate employees on corporate security policies, procedures, and best practices.
- Support AI governance awareness programs to inform employees about responsible AI use, ethical considerations, and regulatory requirements.
- Maintain and update training materials to reflect changes in policies, regulations, or emerging AI and cybersecurity threats.
- Assess and monitor third‑party vendors to ensure compliance with company security policies and industry regulations.
- U.S. citizenship is required for this position due to Department of Defense restrictions.
- Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Network Security or related field, or equivalent combination of education and experience.
- 5 or more years of experience in security policy, governance, risk, and compliance roles.
- Strong working knowledge of NIST CSF and AI governance principles, as well as other cybersecurity frameworks such as ISO 27001, CIS, or SOC 2.
- Strong knowledge and understanding of cloud security policies, configuration standards, and best practices for AWS, Azure, GCP, or SaaS applications to apply governance.
- Demonstrated experience with Service Now IRM modules, including policy, risk, audit, and compliance workflows.
- Ability to create clear, professional, and actionable security and risk governance documentation.
- Experience developing and delivering security awareness training programs.
- Excellent communication skills, capable of engaging both technical and non‑technical stakeholders.
- Demonstrated experience in developing and implementing security policies and standards in a highly regulated environment.
- Strong analytical, organizational, and project management skills, with the ability to drive initiatives independently.
- Familiarity with KnowBe4 or…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).