What are the responsibilities and job description for the Policy and Cybersecurity Compliance Analyst position at Software Guidance & Assistance?
Software Guidance & Assistance, Inc., (SGA), is searching for an CYBER SECURITY COMPLIANCE ANALYST for a FULL TIME assignment with one of our premier UTILITY clients in NEW BRAUNFELS OR HOUSTON, TX .
a { text-decoration: none; color: #464feb; } tr th, tr td { border: 1px solid #e6e6e6; } tr th { background-color: #f5f5f5; } Responsibilities:
SGA is a technology and resource solutions provider driven to stand out. We are a women-owned business. Our mission: to solve big IT problems with a more personal, boutique approach. Each year, we match consultants like you to more than 1,000 engagements. When we say let's work better together, we mean it. You'll join a diverse team built on these core values: customer service, employee development, and quality and integrity in everything we do. Be yourself, love what you do and find your passion at work. Please find us at .
SGA is an Equal Opportunity Employer and does not discriminate on the basis of Race, Color, Sex, Sexual Orientation, Gender Identity, Religion, National Origin, Disability, Veteran Status, Age, Marital Status, Pregnancy, Genetic Information, or Other Legally Protected Status. We are committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, and our services, programs, and activities. Please visit our company to request an accommodation or assistance regarding our policy.
a { text-decoration: none; color: #464feb; } tr th, tr td { border: 1px solid #e6e6e6; } tr th { background-color: #f5f5f5; } Responsibilities:
- Own the lifecycle management of cybersecurity and regulatory policies, including creation, updates, and ongoing governance across the enterprise
- Evaluate existing policy frameworks to identify gaps, misalignment, or emerging risk areas, and propose practical corrective actions
- Ensure security and compliance documentation remains aligned with evolving regulatory, legal, and operational expectations
- Track and assess organizational adherence to internal policies and applicable compliance obligations
- Execute targeted reviews, control assessments, and policy effectiveness evaluations to surface compliance risks
- Coordinate closely with audit, legal, and risk stakeholders to support internal reviews and external examinations
- Serve as a strategic advisor to business, technology, and people teams on policy considerations tied to system changes, vendor engagements, and process updates
- Translate risk and compliance findings into clear insights that support leadership decision-making
- Develop and deliver employee education initiatives focused on cybersecurity responsibilities and compliance awareness
- Act as a trusted point of contact for policy interpretation and guidance across the organization
- Maintain a structured, centralized repository for security and compliance documentation, ensuring proper versioning and historical retention
- Produce reporting and metrics that communicate compliance posture, trends, and audit outcomes
- Demonstrated experience developing and managing cybersecurity, risk, or compliance policies in a regulated environment
- Strong working knowledge of common security and privacy frameworks and standards (e.g., NIST-based controls, ISO-aligned programs, data protection regulations)
- Experience conducting policy reviews, compliance assessments, or internal audits
- Ability to partner cross-functionally with technical and non-technical stakeholders
- Excellent written and verbal communication skills, with the ability to translate complex requirements into actionable guidance
- Strong analytical and documentation skills with attention to detail
- Experience maintaining structured documentation and compliance evidence
- Background supporting external audits or regulatory reviews
- Experience aligning policy programs with enterprise risk management strategies
- Familiarity with privacy regulations such as CCPA, HIPAA, or similar frameworks
- Prior involvement in technology implementations, third-party risk reviews, or governance initiatives
- Experience delivering training or awareness programs related to security or compliance
- Industry certifications in cybersecurity, risk, or compliance (e.g., CISSP, CISA, CRISC, ISO lead roles)
SGA is a technology and resource solutions provider driven to stand out. We are a women-owned business. Our mission: to solve big IT problems with a more personal, boutique approach. Each year, we match consultants like you to more than 1,000 engagements. When we say let's work better together, we mean it. You'll join a diverse team built on these core values: customer service, employee development, and quality and integrity in everything we do. Be yourself, love what you do and find your passion at work. Please find us at .
SGA is an Equal Opportunity Employer and does not discriminate on the basis of Race, Color, Sex, Sexual Orientation, Gender Identity, Religion, National Origin, Disability, Veteran Status, Age, Marital Status, Pregnancy, Genetic Information, or Other Legally Protected Status. We are committed to providing access, equal opportunity, and reasonable accommodation for individuals with disabilities in employment, and our services, programs, and activities. Please visit our company to request an accommodation or assistance regarding our policy.
Salary : $90,000 - $120,000