Hiring - Policy & Governance Analyst

Remote • Posted 1 hour ago • Updated 1 hour ago
Contract W2
Contract Independent
Remote
$70 - $80/hr
Company Branding Image
Fitment

Dice Job Match Score™

📊 Calculating match score...

Job Details

Skills

  • Information Security Governance
  • Cybersecurity Governance
  • GRC
  • Governance Risk and Compliance
  • Information Security Policy Review
  • Policy Gap Assessment
  • NIST SP 800-53
  • NIST 800-53 Rev 5
  • Security Compliance
  • Data Governance
  • Data Privacy
  • FERPA Compliance
  • CIPA Compliance
  • Virginia Student Privacy Act
  • Risk Assessment
  • IT Governance
  • Cybersecurity Compliance
  • Security Controls Assessment
  • Security Policies and Procedures
  • Information Assurance
  • Data Classification
  • Data Retention
  • Data Disposal
  • PII Protection
  • Sensitive Data Handling
  • Compliance Auditing
  • Security Frameworks
  • Executive Reporting
  • Policy Development
  • Regulatory Compliance
  • Security Governance Framework
  • Risk Management Framework
  • IT Audit
  • Cybersecurity Risk Management
  • Incident Response Planning
  • Security Awareness Training
  • Public Sector Compliance
  • K-12 Education Security
  • Educational Data Privacy
  • Governance Framework Development
  • Security Standards Review
  • Compliance Documentation
  • Internal Controls
  • Data Protection Strategy
  • Access Control Policies
  • Vendor Risk Management
  • Enterprise Risk Management
  • Security Program Management
  • Technical Writing
  • Executive Communication
  • Compliance Reporting
  • Cybersecurity Strategy
  • Security Maturity Assessment
  • Audit Readiness
  • SSAE 16
  • SOC 2
  • Control Mapping
  • Security Recommendations
  • Governance Documentation
  • Stakeholder Management
  • Cross Functional Coordination
  • GRC Management
  • NIST SP 800-53 Gap Analysis
  • Compliance Assessment
  • Data Governance Framework Development
  • FERPA Compliance Management
  • Security Policy Development
  • Technical Documentation
  • Data Privacy Management
  • PII Data Protection
  • Security Control Mapping
  • Governance Framework Design
  • Audit Management
  • Policy Gap Identification
  • Risk Mitigation
  • Stakeholder Communication
  • Executive Presentation Skills
  • Security Standards Alignment
  • Security Awareness Program Development
  • Public Sector Cybersecurity
  • K-12 Security Compliance
  • Data Classification and Handling
  • Vendor Risk Assessment
  • Security Program Governance
  • Control Assessment
  • Business Communication
  • Security Risk Analysis
  • Governance Reporting
  • Internal Audit Coordination
  • Security Framework Implementation
  • Cross Functional Team Collaboration
  • RSA Archer
  • ServiceNow GRC
  • OneTrust
  • MetricStream
  • Archer GRC Platform
  • Microsoft Purview
  • Microsoft Compliance Manager
  • Splunk
  • Power BI
  • Excel
  • SharePoint
  • Jira
  • Confluence
  • Qualys
  • Tenable
  • Rapid7
  • ServiceNow
  • Tableau
  • Governance Risk and Compliance Tools
  • SOC 2 Frameworks
  • SSAE 16 Standards
  • Risk Registers
  • Compliance Tracking Tools
  • Audit Management Tools
  • Data Governance Platforms
  • Policy Management Tools
  • Identity and Access Management Tools
  • Microsoft Office Suite
  • Information Security Governance Analyst
  • Cybersecurity Governance Analyst
  • GRC Analyst
  • Information Security Compliance Analyst
  • IT Governance Analyst
  • Cybersecurity Compliance Consultant
  • Information Assurance Analyst
  • Security Policy Analyst
  • Data Governance Analyst
  • Cybersecurity Risk Analyst
  • Governance Risk and Compliance Consultant
  • IT Risk and Compliance Analyst
  • Security Governance Consultant
  • Information Security Risk Consultant
  • Cybersecurity Policy Consultant
  • Compliance and Governance Specialist
  • Security Compliance Manager
  • Information Governance Specialist
  • Data Privacy Analyst
  • Risk and Compliance Consultant
  • Security Risk and Governance Analyst
  • IT Audit and Compliance Analyst
  • Cybersecurity Program Analyst
  • Enterprise Risk Analyst
  • Security Controls Analyst
  • Information Security Advisor
  • Security Governance Lead
  • Data Protection Analyst
  • Information Risk Analyst
  • Cybersecurity Regulatory Compliance Analyst
  • Security Standards Analyst
  • Governance Framework Consultant
  • IT Compliance Specialist
  • Information Security Program Consultant
  • Cybersecurity Audit Consultant
  • GRC Consultant
  • Security Policy Consultant
  • Governance and Risk Specialist
  • IT Security Governance Consultant
  • Cybersecurity Governance Lead

Summary

Hi

Greetings from BizTech Fusion!

BizTech Fusion requires a full information security policy review, data governance framework development, and compliance assessment. NNPS alignment to NIST SP 800-53 Rev 5.2.0 is required at the high-level. The school district handles PII for approximately 27,000 students and 4,300 staff FERPA compliance and data governance are central concerns. This role is the primary deliverable owner for the policy and governance report track.

Title: Policy & Governance Analyst
Location: Remote (US Region, Eastern Time)
Duration: 12 Month Contract with possible renewal
Tax: W2, 1099

Note: US-based personnel mandatory
Job Description

Responsibilities

  • Review all existing NNPS information security policies, procedures, and standards
  • Identify policy gaps against NIST SP 800-53 Rev 5.2.0 controls
  • Assess data governance framework for student and staff PII identify classification, handling, retention, and disposal gaps
  • Evaluate compliance posture against applicable requirements: FERPA, CIPA, Virginia Student Privacy Act, and applicable NNPS board policies
  • Develop or recommend an updated data governance framework appropriate for a K-12 school district of NNPS's size
  • Produce the Information Security Policy Review and Data Governance Framework deliverable reports
  • Coordinate with technical team to ensure technical findings are mapped to corresponding policy gaps in the consolidated report
  • Participate in executive debrief; present policy/governance findings to NNPS leadership in accessible, non-technical terms

Required Qualifications

  • Minimum 5 years of experience in information security policy, governance, risk, or compliance roles
  • CISM, CISA, or CGEIT certification (at least one required)
  • Demonstrated experience conducting policy gap assessments against NIST SP 800-53 (Rev 4 or Rev 5)
  • Experience developing or revising data governance frameworks for organizations handling sensitive PII
  • Familiarity with FERPA requirements and their practical implications for K-12 IT environments
  • Experience writing executive-level policy reports for non-technical audiences
  • US-based

Preferred Qualifications

  • Prior experience with K-12 school district or public sector (state/local government) clients
  • Familiarity with Virginia education law and Virginia Department of Education (VDOE) technology and data standards
  • CGRC (formerly CAP), CRISC, or CDPSE certification
  • Experience developing incident response plans or security awareness training programs
  • SSAE 16 / SOC 2 audit experience (relevant to the contract's SSAE16 annual reporting obligation)
Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 90833632
  • Position Id: 8963618
  • Posted 1 hour ago

Company Info

About BizTech Fusion

Founded in 2006, BizTech Fusion is a progressive provider of high-end, IT professional services that specializes in—

  • Leading-Edge, Next-Generation Technology Solutions
  • On-premises, Cloud & Hybrid Solutions
  • Unified Communications & Collaboration
  • Messaging & Productivity
  • Infrastructure Modernization, Integration, Design, Optimization, Monitoring, and Support/Management
  • System Architecture and Deployment
  • Program and Project Management
  • Web-based/Mobile Application Design and Development

A minority-owned and privately held Limited Liability Corporation business based in the Washington, D.C. Metropolitan area, BizTech Fusion is dedicated to providing the most result-oriented, client-focused solutions for our public- and private-sector clients worldwide through our offices in Washington, D.C. and Maryland.

  • CBE certified by the DC Department of Small and Local Business Development (LSD45543082018)
  • GSA Schedule 70 Contract Holder (GS-35F-0459Y)
  • Prime Contractor, U.S. Department of Navy Seaport Enhanced IDIQ (Contract #: N00178-11-D-6468)
  • DC Supply Schedule (DCSS) contract for Mission Oriented Business Integrated Services (MOBIS) Temporary Support Services Contract No.: CW40692
  • DC Supply Schedule (DCSS) contract for Mission Oriented Business Integrated Services (MOBIS) Information Technology Equipment and Software Contract No.: CW39742

BizTech Fusion’s team is organized in the following structure:

Strategic Leadership

  • Board of Directors
  • Board of Advisors
  • President & Chief Executive Officer

Tactical

  • Chief Financial Officer
  • Chief Operating Officer
  • Chief Information Officer
  • General Counsel (Legal)

Operational

  • Vice President of Sales & Marketing
  • Vice President of Strategic Markets
  • Vice President of Client Relationship Management
  • Vice President of Human Resources

Line of Business

  • Service Delivery
  • Solution Development
  • Technical Support
  • Talent Acquisition & Staff Augmentation
  • Program & Project Management
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote

Today

Easy Apply

Contract

$70 - $80

Remote

Today

Easy Apply

Contract

$70 - $80

Remote

Today

Easy Apply

Contract

$70 - $80

Search all similar jobs