Security & Compliance Analyst jobs in United States
cer-icon
Apply on Employer Site
company-logo

NV5 · 10 hours ago

Security & Compliance Analyst

NV5 is a global technology solutions and consulting services company, and they are seeking a Security & Compliance Analyst. The role involves implementing, monitoring, and enforcing security policies and compliance controls across cloud-based and on-premises environments.

ConsultingIndustrial Engineering
badNo H1BnoteSecurity Clearance RequirednoteU.S. Citizen Onlynote

Responsibilities

Monitor and validate Kubernetes and data lake deployments for compliance with RMF, NIST 800-53, and DoD IL4/IL5 requirements, in collaboration with agency cybersecurity teams
Maintain continuous monitoring dashboards and conduct vulnerability scans of deployed infrastructure and workloads, supporting the agency’s ATO process and risk posture
Prepare and update system security documentation including SSPs, SARs, and POA&Ms to reflect changes to architecture, controls, or risk conditions
Enforce encryption, logging, and identity access policies (IAM, RBAC, audit logging) to maintain traceability and accountability across the Kubernetes-based data layers

Qualification

NIST 800-53IAMSecurity AuditsCISSPCISMAWS Certified SecuritySecurity Monitoring ToolsSecurity AutomationIncident ResponseSpanishPortuguese

Required

US citizenship, along with the ability to successfully pass a basic background check for access to US military bases
Active TS/SCI clearance
Bachelor's degree in Cybersecurity, Information Assurance, Computer Science or a related field, or five (5) years of equivalent experience in security and compliance roles
Demonstrated experience in conducting security audits, assessing system compliance with DoD cybersecurity policies, and implementing security controls in cloud and hybrid environments
Demonstrated proficiency with NIST 800-53, FedRAMP, DoD IL4/IL5 security policies and risk assessment methodologies
Strong understanding of IAM, security monitoring tools (Splunk, SIEM solutions), ZTA, and vulnerability assessment frameworks
Experience with security automation, endpoint protection, and incident response processes
Ability to manage and prioritize complex project tasks

Preferred

Certified Information Systems Security Professional (CISSP)
Certified Information Security Manager (CISM)
AWS Certified Security – Specialty
Portuguese or Spanish language skills
Experience with government IT programs and environments

Benefits

Medical
Dental
Life insurance
FTO
401(k)
Professional development/advancement opportunities

Company

NV5 is a provider of technology, conformity assessment, and consulting solutions for public and private sector clients supporting infrastructure, utility, and building assets and systems.

Funding

Current Stage
Public Company
Total Funding
unknown
2025-05-15Acquired
2013-03-26IPO

Leadership Team

leader-logo
Noreen Clindinning
Chief Operating Officer Environmental Health Services
linkedin
leader-logo
Carl Henderson, PhD, PE, GE
Chief Diversity Officer / SoCal Construction Quality Assurance Group Director
linkedin
Company data provided by crunchbase