Demo

Information Security Analyst

Sylvan, Inc.
Southfield, MI Full Time
POSTED ON 7/12/2026
AVAILABLE BEFORE 8/10/2026
Back to Careers

Information Security Analyst

We are seeking a detail-oriented and experienced Information Security Analyst to join our security and compliance team. The successful candidate will play a key role in designing, assessing, and documenting information security controls, with a strong focus on IT General Controls (ITGC), SOX compliance, internal and external audit support, and process improvement. This role requires the ability to bridge technical security requirements with regulatory compliance obligations and communicate effectively with cross-functional stakeholders.

Essential Duties & Responsibilities

  • ITGC & SOX Compliance
    • Design, implement, and monitor IT General Controls (ITGC) across logical access, change management, computer operations, and SDLC domains
    • Support annual SOX compliance programs, including scoping, risk assesment, control mapping, and testing coordination.
    • Identify and remediate control deficiencies; track findings, through to resolution and validate management remediation actions.
    • Collaborate with business process owners to ensure SOX IT controls are embedded in day-to-day operations.
    • Maintain control matrices, SOX documentation, and supporting evidence in accordance with PCAOB and SEC requirements.
  • Internal & External Audit Support
    • Serve as the primary point of contact for internal and external auditors during IT audit engagements.
    • Coordinate the gathering, review, and submission of audit evidence packages to ensure completeness and accuracy.
    • Assist in preparing management responses to audit findings and tracking corrective action plans (CAPs).
    • Support SOC 1 / SOC 2 Type II audit engagements and other third-party assessments.
    • Analyze audit observations to identify systemic issues and drive long-term process improvements.

  • Process Design & Documentation
    • Develop and maintain information security policies, procedures, standards, and guidelines aligned with frameworks such as NIST CSF, ISO 27001, and CIS Controls
    • Design and document end-to-end security and compliance processes, including control narratives, process flow diagrams, and risk and control matrices (RCMs).
    • Facilitate control walkthroughs with process owners and document evidence of operating effectiveness.
    • Maintain and up-to-date library of security process documentation and ensure version control and periodic review cycles.
  • Risk & Control Assessment
    • Conduct risk assessments to identify gaps between current security posture and industry standards or regulatory requirements.
    • Evaluate the design and operating effectiveness of controls through self-assessment and testing activities.
    • Prepare management-level risk reports and dashboards, communicating findings clearly to technical and non-technical audiences.
Required Skills & Experience

  • Bachelor’s degree in information security, Computer Science, Information Systems, Accounting/Finance (MIS), or related field.
  • 3-6 years of experience in information security, IT audit, or compliance roles.
  • Demonstrated hands-on experience with ITGC design, testing, and remediation in a SOX environment.
  • Experience coordinating and supporting external audit engagements (Big 4 or equivalent).
  • Proficiency in developing process documentation, control narratives, and risk and control matrices.
  • Strong analytical and problem-solving skills with keen attention to detail.
  • Excellent written and verbal communication skills; ability to convey complex technical concepts to non-technical stakeholders.
  • Technical Skills & Tools
    • Frameworks: NIST, CSF, ISO 27001, COBIT, CIS Controls, SOX (PCAOB), COSO
    • Audit & GRC Tools: AuditBoard, Workiva, ServiceNow GRC, or equivalent
    • Security Tools: SIEM, IAM/PAM platforms, vulnerability management tools
    • Documentation: Microsoft Visio, Lucidchart, Confluence, SharePoint
    • Productivity: Microsoft Office Suite (Excel, Word, Powerpoint — advanced)
Preferred Qualifications

  • Professional certifications such as CISA, CISSP, CRISC, CIA, or CISM.
  • Experience with GRC platforms (e.g., ServiceNow GRC, AuditBoard, Workiva, MetricStream.
  • Familiarity with cloud security controls (AWS, Azure, GCP) and how they relate to ITGC.
  • Knowledge of SOC 1 / SOC 2 attestation standards and Trust Service Criteria.
  • Experience working in a Big 4 accounting firm or publicly traded company
  • Understanding of data privacy regulation (GDPR, CCPA) and their intersection with security controls.
  • Continuous Improvement — Proactively identifies opportunities to strengthen controls and processes.
  • Integrity & Accountability — Handles sensitive financial and security data with discretion
  • Analytical Thinking — Evaluates complex control environments and identifies root causes
  • Collaboration — Works effectively across security, IT, finance, legal, and operations teams
  • Communication — Translates technical risks into business language for executive audiences
  • Adaptability — Thrives in fast-paced environments with evolving regulatory requirements.

Apply Today

Send your resume to abloom@sylvan-inc.com

Back to Careers

Salary.com Estimation for Information Security Analyst in Southfield, MI
$87,040 to $105,252
If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a Information Security Analyst?

Sign up to receive alerts about other jobs on the Information Security Analyst career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Sylvan, Inc.

  • Sylvan, Inc. Dearborn, MI
  • Back to Careers ASM Field Supervisor — Conveyor Division Sylvan, Inc. is a market-leading, trusted automotive service contractor to Fortune 500 companies. ... more
  • 9 Days Ago

  • Sylvan, Inc. Southfield, MI
  • Back to About Payroll Specialist — Union Reporting The Payroll Specialist will be responsible for processing payroll and ensuring compliance with union agr... more
  • 9 Days Ago

  • Sylvan, Inc. Southfield, MI
  • Back to Careers IT Support Manager We are seeking a hands-on IT Support Manager to lead our end-user support operations. This role owns the day-to-day perf... more
  • 9 Days Ago

  • Sylvan, Inc. Fort Worth, TX
  • Back to Careers Office Manager & Operations Coordinator The Office Manager serves as the primary administrative and operational support resource for Sylvan... more
  • 9 Days Ago


Not the job you're looking for? Here are some other Information Security Analyst jobs in the Southfield, MI area that may be a better fit.

  • Global Information Technology Southfield, MI
  • Job Title: EDI Claims Analyst Job Location: Remote Job Type: Contract Job Description: The EDI Claims Analyst is responsible for analyzing and processing e... more
  • 2 Months Ago

  • Information Resource Group, Inc. Detroit, MI
  • Below are the job details for your reference: Title: Applications Analyst – Integrations (OCI) Location: Detroit, MI,48226-Onsite Duration: Long-Term Contr... more
  • 11 Days Ago

AI Assistant is available now!

Feel free to start your new journey!