Senior IT Security Analyst
Madison, Dane County, Wisconsin, 53774, USA
Listed on 2026-06-18
-
IT/Tech
Cybersecurity, Information Security, Data Security, IT Consultant
Senior Security Policy Analyst
U.S. citizenship is required for this position due to Department of Defense restrictions.
Salary Range: $90,000 ~ $115,000. The base pay may vary within this range based on job‑related knowledge, skills, experience, and may fall outside of this range.
Work Location:
At our WPS Headquarters in Madison, WI. Employees located within 45 miles of the headquarters must be able to work in office 3 days a week on a regular basis. Hybrid work and collaboration is encouraged.
- Develop, review, and maintain corporate security policies, standards, procedures, and guidelines in alignment with NIST CSF, regulatory requirements, and industry best practices.
- Accountable for integration and management of security policies, controls, and risk assessments within Service Now IRM and Managed Documents.
- Conduct risk assessments, control evaluations, and gap analyses mapped to NIST CSF to support audit readiness and compliance initiatives.
- Collaborate with IT, Risk, Compliance, and Business teams to ensure policy adoption and awareness across the organization.
- Create clear, concise, and actionable security documentation, including policies, procedures, guidance, and reports.
- Monitor compliance with internal policies and external regulatory requirements, identify gaps and drive remediation efforts.
- Provide reports and analytics on policy adherence, exceptions, and trends using Service Now dashboards and workflows.
- Serve as a subject matter expert on security governance, NIST CSF implementation, and risk management best practices.
- Mentor junior analysts and provide guidance on policy development, implementation, and Service Now utilization.
- Develop security awareness training programs to educate employees on corporate security policies, procedures, and best practices.
- Support AI governance awareness programs to inform employees about responsible AI use, ethical considerations, and regulatory requirements.
- Maintain and update training materials to reflect changes in policies, regulations, or emerging AI and cybersecurity threats.
- Assess and monitor third‑party vendors to ensure compliance with company security policies and industry regulations.
- U.S. citizenship is required for this position due to Department of Defense restrictions.
- Bachelor's degree in Computer Science, Information Systems, Cybersecurity, Network Security, or related field, or equivalent combination of education and experience.
- Five or more years of experience in security policy, governance, risk, and compliance roles.
- Strong working knowledge of NIST CSF and AI governance principles, and other cybersecurity frameworks such as ISO 27001, CIS, or SOC 2.
- Strong knowledge and understanding of cloud security policies, configuration standards, and best practices for AWS, Azure, GCP, or SaaS applications.
- Demonstrated experience with Service Now IRM modules, including policy, risk, audit, and compliance workflows.
- Ability to create clear, professional, and actionable security and risk governance documentation.
- Experience developing and delivering security awareness training programs.
- Excellent communication skills, capable of engaging both technical and non‑technical stakeholders.
- Demonstrated experience in developing and implementing security policies and standards in a highly regulated environment.
- Strong analytical, organizational, and project management skills, with ability to drive initiatives independently.
- Familiarity with KnowBe4 or other security awareness platform tools.
- Experience using AI to facilitate automated workflows.
- High‑speed cable or fiber internet connection.
- Minimum of 10 Mbps downstream and at least 1 Mbps upstream.
- Remote and hybrid work options available.
- Performance bonus and/or merit increase opportunities.
- 401(k) with 100% match for first 3% of salary and 50% match for next 2% of salary (100% vested immediately).
- Competitive paid time off.
- Health insurance, dental insurance, and telehealth services start Day 1.
- Professional and Leadership Development Programs.
Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities.
This employer is required to notify all applicants of their rights pursuant to federal employment laws.
For further information, please review the Know Your Rights notice from the Department of Labor.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).