Senior Technical Compliance Analyst
Listed on 2026-10-05
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Business Analyst
Who we are:
As a global leader in digital infrastructure, QTS designs, builds and operates advanced data centers that support strategic AI, cloud and digital transformation initiatives. We are driven by a mission to connect the world for good and our people make it possible. Every single day, the creativity, dedication and genuine care for our communities are what push us forward and make this a truly special place to be.
The Senior Technical Compliance Analyst is an integral team member of the QTS Security Risk & Compliance Team and reports to the Manager, Information Security Compliance & Risk. QTS has adopted a risk-based approach to security risk and compliance, and this role is responsible for implementing, monitoring, and continuously improving QTS’s security risk and compliance programs through the enterprise GRC program.
This role may be based in Overland Park, KS;
Suwanee, GA; or Ashburn, VA and requires up to 15% travel to QTS data center locations. The ideal candidate possesses a growth mindset, strong analytical skills, and a natural ability to collaborate across diverse teams. They will play a key role in transforming compliance requirements into actionable controls, meaningful documentation, and scalable processes that strengthen QTS's risk and compliance posture while enabling business objectives.
Leverage the GRC platform to align frameworks, regulatory requirements, risks, controls and documentation into a cohesive governance structure that supports operational execution, continuous monitoring, and data driven reporting on the effectiveness of QTS security and compliance programs.
Provide visibility into the program maturity, risk posture, and control effectiveness through reporting and dashboards.
Provide internal support for internal audits of the program as well as the external audits of the SOC1 & SOC2, ISO 27001 & ISO 22301, PCI DSS, FISMA / NIST 800-53, DOD CMMC, and HITRUST audit cycles, by facilitating evidence collection, stakeholder engagement, and issue remediation.
Key Activities include:- Compliance Program Execution – Partner with control owners to monitor reviews, scope coverage, and assessment on control effectiveness and completeness of internal documentation.
- Compliance Implementations – Facilitate the implementation, adoption, and continuous improvement of new and existing compliance frameworks, standards, and regulatory requirements, ensuring controls and documentation are effectively integrated into data center and corporate operations.
- Customer Compliance Support – Assist in responding to customer security, compliance, and risk inquiries by coordinating evidence requests, completing questionnaires, and audit requests.
- Security Risk Program – Coordinate with the risk team as issues are reported that require documentation or control updates to reduce risk through continual improvements.
Bachelor’s degree or equivalent professional experience. Minimum of 2 years of experience supporting compliance, risk management, governance, or a related operational function. Hands‑on experience administering, implementing, or utilizing Governance, Risk, and Compliance (GRC) or Integrated Risk Management (IRM) platforms. Written skills to demonstrate ability to translate complex requirements in a clear, concise manner in communications and documentation. Strong analytical, organizational, and problem‑solving skills, with the ability to manage multiple priorities and deadlines in a fast‑paced environment.
Proven ability to build and maintain collaborative relationships across a diverse group of stakeholders, including technology teams, operational teams, auditors, and corporate support functions.
- HITRUST SOC 1
- SOC 2
- P…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).