Overview
Skills
Job Details
Hi,
Position: IT Security & Compliance Coordinator
Location: Madison, Wisconsin (Hybrid)
Duration: 12 Months
Interview Mode: Video
- LinkedIn is must. No H1B
JD
- 5+ years in roles involving 2+ of the following: Cybersecurity, Network Operations, Audit/Compliance coordination, or IT Risk Management.
- Reports from Security Tools (e.g., Splunk, IronPort, Tenable, Cloudflare)
- Ownership of security reviews, exception workflows, and vulnerability processes
- Risk Assessments
- Frameworks like: NIST, PCI DSS, CIS, ISO 27001
- MSFT 365 Entra ID security controls
REQUIRED SKILLS: (Need Majority; 5+ Years)
- 5+ years of experience in cybersecurity or network operations, audit and compliance coordination, or related IT risk management.
- Experience running search queries, generating, and automating reports from security tools (e.g., Splunk, IronPort, Tenable, Cloudflare).
- Experience managing security reviews, exception workflows, vulnerability processes, and security policy development.
- Proven ability to coordinate risk assessments and compliance efforts including evaluation of AI tools or emerging technologies.
- Strong understanding of frameworks like NIST, PCI DSS, CIS, ISO 27001, and privacy protection practices.
- Working knowledge of AWS and Microsoft 365 Entra ID security controls.
- Experience with IT Security Incident Response and coordination with MSPs/third parties.
- Strong communication and analytical skills, with ability to explain complex security topics to non-technical audiences.
- Experience collaborating across IT, programs, auditors, and regulatory agencies.
NICE TO HAVE SKILLS:
- Public-sector compliance or multi-agency/single-tenant environment experience.
- Experience with PCI DSS SAQ preparation and attestation.
- Experience coordinating vendor-performed penetration testing.
DESCRIPTION OF ROLE:
The Bureau of Information Technology Services (BITS) at the Wisconsin Historical Society (WHS) manages the technology and computer infrastructure that drives the Agency's business systems. The IT department supports WHS Headquarters, the State Archives Preservation Facility (SAPF), and twelve Historic Sites across Wisconsin.
This position reports to the Deputy IT Director. It works closely with IT team members, key internal stakeholders across all WHS divisions, and external partners such as the Department of Administration's (DOA) Division of Enterprise Technology (DET), providing expertise and support for a variety of complex cybersecurity technologies, IT risks, and compliance requirements.
The IT Security & Compliance Coordinator oversees and facilitates agency IT security compliance, technology intake processes, IT audit readiness, and overall IT risk management.
Key Responsibilities:
- Technology Intake & Vendor Security Review:
- Capture business use cases, data classification, and required security controls for software and cloud services.
- Collect and review vendor agreements and security artifacts.
- Coordinate intake workflows to closure ensuring compliance.
- Monitoring, Reporting, and Vulnerability Coordination:
- Use tools like SIEM, email security, and vulnerability scanners to monitor security posture.
- Build recurring and ad hoc reports for executives and stakeholders.
- Track remediation efforts and escalating risks where needed.
- AI & Emerging Technology Governance:
- Maintain inventories of AI apps, risks, and use cases.
- Evaluate emerging technologies for security, privacy, and ethical risks.
- Guide policy development supporting secure and compliant innovation.
- IT Compliance, Audit Response, & Risk Management:
- Develop and monitor IT security policies aligned to frameworks (NIST, PCI DSS, CIS, ISO 27001).
- Manage application security governance and risk mitigation.
- Prepare audit responses, lead PCI DSS SAQ processes, and support vendor contract reviews.
- Incident Response Planning and Execution:
- Maintain/test response plans, assist in investigations and post-incident reviews.
- Cybersecurity Awareness and Training:
- Lead training and awareness programs across the agency.
Promote security, data governance, and responsible technology use.
Thanks & Regards
Niranjan Kumar | Technical Recruiter
Email:
Stellent IT | office :