IT Security Analyst
Carlsbad, CA
Posted: 07/30/26
Employment Type: Direct, Full-Time
IT Security Analyst
Carlsbad, CA
Hybrid model
Position Summary
The IT Security Analyst, reporting to the Director, IT, plays a key role in ensuring that the organization’s IT
environment operates in alignment with internal security policies, regulatory requirements, and industry best
practices. This position provides oversight of IT administrative activities, monitors compliance with established
controls, and collaborates closely with IT management and auditors to maintain a strong security and compliance
posture.
The primary goal of this position is to evaluate, define, implement, monitor, and maintain audit processes and
documentation; ensure compliance with regulations; maintain supporting evidence; and facilitate communication
and coordination between the IT Department and internal/external auditors.
Key Responsibilities
• Prepare NIST/CIS evaluations in coordination with IT Security and/or IT Management personnel.
• Monitor compliance with internal controls, security standards, and frameworks such as SOX, PCI, NIST/CIS,
ISO, and/or C-TPAT.
• Act as a liaison between Audit functions and the IT department to clarify processes, findings, and ensure
effective communication throughout audit processes.
• Coordinate cybersecurity tests, including penetration tests and related evaluations, with external
organizations to ensure IT practices and standards remain secure and current.
• Review IT administrative activities, including account creation, access modifications, privileged access
assignments, and deprovisioning, to ensure adherence to security policies and regulatory requirements.
• Conduct and administer formal audits and reviews of IT systems and processes in accordance with IT policies
and procedures, including monthly, quarterly, and semi-annual reviews.
• Maintain audit evidence, compliance documentation, control records, and related reporting materials to
support internal, external, and regulatory audit requirements.
• Partner with IT management to identify compliance gaps, document findings, and support remediation
planning and follow-through.
Required Qualifications
• 4+ years of experience in IT security, compliance, and audit.
• Experience with regulatory frameworks such as SOX, PCI, and NIST regulations.
• Understanding of IT General Controls (ITGCs), access management, and security best practices.
• Experience supporting audits, including internal, external, or regulatory audits.
• Ability to interpret and apply regulatory requirements and internal policies.
• Meticulous approach to data analysis and the presentation of findings in a clear and actionable manner.
Preferred Qualifications
• CISA and/or CISSP certifications are desirable.
• Experience working with control frameworks such as NIST/CIS, ISO, SOX, PCI, and/or C-TPAT.
• Prior experience coordinating cybersecurity assessments, penetration tests, or third-party security
evaluations.
Meet Your Recruiter
Lance Klem
Lance Klem
Managing Director
The ProSource Group, Inc.
(949) 278-0337
lklem@theprosourcegroup.com
Email: lklem@theprosourcegroup.com
Phone: (949) 278-0337