Cybersecurity/GRC Compliance Analyst
Description
Cybersecurity Compliance Analyst – Orlando, FL Salary: $80,000–$100,000 base + 25% bonus Location: Onsite in Orlando, FL 32810 This role does not offer relocation assistance. Candidates must already reside within commuting distance of the Orlando area. Summary Our client is a rapidly growing cybersecurity company seeking a Cybersecurity Compliance Analyst to support governance, risk, compliance, and audit readiness initiatives across the organization. What You’ll Do Work heavily within frameworks like NIST CSF, NIST 800-53, NIST 800-171, RMF, FedRAMP, ISO 27001, SOC 2, and STIG Support audits by gathering evidence, validating controls, tracking remediation items, and working directly with auditors Complete customer security questionnaires and support security reviews tied to sales opportunities Review access controls, PAM processes, vulnerability scans, and continuous monitoring activities Help assess vendor risk and third-party security posture Work with infrastructure, development, MDR/SOC, IT, leadership, and business teams to validate controls and resolve compliance gaps Help manage policies, documentation, ownership, retention standards, and version control Track compliance and audit-related tasks through resolution across multiple teams Support FedRAMP and other compliance readiness initiatives in a fast-moving environment Help balance security requirements with business needs instead of acting as a blocker What You Bring 6+ years of experience in cybersecurity, GRC, IT compliance, cyber risk, audit, or related environments Strong understanding of governance, risk, and compliance concepts, including control frameworks, audit lifecycle activities, risk management, and access governance Ability to explain and differentiate frameworks such as NIST CSF, NIST 800-53, NIST 800-171, RMF, ISO 27001, SOC 2, FedRAMP, and STIG Experience supporting or participating in audits, evidence review, remediation tracking, policy governance, or compliance programs Familiarity with PAM, identity/access governance, vulnerability management, access reviews, and continuous monitoring processes Strong communication skills with the ability to work across technical and non-technical teams Ability to stay composed and think critically in high-pressure audit and compliance environments Collaborative, solutions-oriented mindset with the ability to balance security requirements and business objectives Comfortable operating in fast-paced, high-growth environments with shifting priorities Preferred Backgrounds Cybersecurity consulting GRC or IT compliance Security compliance analyst Internal IT audit MSSP/MDR environments SaaS, healthcare tech, fintech, cloud, or regulated industries FedRAMP, healthcare, financial services, or regulated enterprise environments Who This Is For Someone with a cybersecurity compliance or GRC background who wants to stay close to real-world security operations and enterprise risk Someone technical enough to understand security controls, but who also enjoys governance, audits, frameworks, and cross-functional collaboration Someone who can communicate clearly, operate calmly under pressure, and work effectively in a fast-moving audit environment Someone who is coachable, grounded, solutions-oriented, and comfortable taking ownership in a high-accountability environment , Show more Show less