Governance Risk and Compliance Analyst

Madison, Wisconsin

State of Wisconsin
Apply for this Job
Introduction

The Security Audit and Compliance Section is hiring. The DET is open to hiring at the Senior level or Specialist level. The Senior level plays a key role in documenting and assessing the adequacy of security controls for information systems. The Specialist level provides technical guidance on IT audit, security, and compliance requirements to internal and external customers. Regardless of level, this position requires strong communication skills, excellent customer service, and the ability to work with cross-functional teams.

All employees are expected to live and work in Wisconsin. This position will have the option of working remotely upon agreement of the supervisor but may be asked to come into the office periodically. This schedule may change based on operational needs and organizational requirements.

The DET (Division of Enterprise Technology) is a great place to work. We offer amazing benefits such as a casual office atmosphere, flexible work schedules, ample vacation time, excellent health benefits, and an exceptional employee assistance program that offers a variety of programs and tools to help promote an employee's wellness and health.

Our competitive benefits package features:
  • State Employee & Retiree Health Plan including health, dental and wellness benefits, and supplemental Vision Insurance, Accidental Death & Dismemberment, Long-Term Care Insurance and Pre-Tax Savings Accounts (for health, dental, vision, day care and commuter expenses).
  • WRS Retirement Benefit pension plan that is intended to provide you with a lifetime retirement payment. It offers an employer match and lifetime retirement payment, plus an optional tax advantaged 457 retirement savings plan .
  • Substantial leave time including at least 3.5 weeks of vacation to start, 9 paid holidays and ample accrued sick time that rolls over each year.
  • Accumulated Sick Leave which allows retirees to convert unused sick leave into credits to help pay for health insurance premiums.
  • Disability Benefits to cover the possibility of becoming disabled while working for a WRS employer making you eligible to receive disability benefits that will give you income for the time you are unable to return to work.
  • An Income Continuation Insurance that replaces a portion of your income if you are unable to work because of sickness or injury (both short and long term).
  • Group Life Insurance providing life insurance coverage up to five times your annual earnings and covers death and dismemberment.
  • Well Wisconsin Wellness Program with tools and resources to help set health and well-being goals, track progress, stay motivated, and earn incentives.
  • A free and confidential employee assistance program that offers employees and their immediate family dependents a variety of tools, resources, and professional consultation services to support their health, goals, and overall well-being.
Join an organization that strives to exceed customer expectations by delivering efficient, high-quality state government services. The Department of Administration (DOA) provides direct services to state agency customers and designs and leads initiatives to make government more innovative and cost-effective. Working at DOA offers you the opportunity to make an impact on the quality of life in Wisconsin.

Diversity, Equity, Inclusion, and Belonging are core values at DOA that guide how we build our teams, develop our leaders, and create a culture that empowers everyone to be their authentic selves. We believe that when employees are respected and valued for who they are and are accountable for demonstrating that respect to others; it drives greater engagement and collaboration, ignites creativity and innovation, and fosters connection between teams and those we serve.

Position Summary

Governance, Risk and Compliance Analyst

Under the general direction of the Deputy Chief Information Security Officer (CISO)/Security Audit and Compliance Section Chief, this position provides assistance in the assessment of operations and adequacy of security controls and compliance with federal and state regulations (e.g. Criminal Justice Information Services (CJIS), Family Educational Rights and Privacy Act (FERPA), Federal Information Security Management Act (FISMA), Federal Tax Information (FTI), Health Insurance Portability and Accountability Act (HIPAA), Payment Card Industry (PCI), Social Security Administration (SSA), etc.) This position is responsible for:
  • Determining whether electronic information systems operated and used by the DET are effectively managed and controlled
  • Assisting in determining whether the application and general computer controls are adequate and functioning as intended, especially in the area of privacy and security
  • Assisting in documenting improvements to existing or design-stage information systems to increase efficiency or adequacy of controls
  • Maintaining policies and procedures related to the effective operation and control of the information systems
  • Reviewing responses to external audit findings, and resolution of IT policy and procedural issues
  • Performing self-assessments for compliance with regulatory and other industry standards for infrastructure services provided by DET
For more information, please view the full position description

Senior Governance Risk & Compliance Analyst

Under the general direction of the Security Audit and Compliance Section Chief / Deputy CISO, this position provides technical guidance, special analyses and consulting services on the operations and adequacy of security controls and compliance with federal and state regulations (e.g. Criminal Justice Information Services (CJIS), Family Educational Rights and Privacy Act (FERPA), Federal Tax Information (FTI), Health Insurance Portability and Accountability Act (HIPAA), Payment Card Industry (PCI), Social Security Administration (SSA), etc.) This position is responsible for:
  • Reporting on whether electronic information systems operated and used by the DET are effectively managed and controlled
  • Assessing whether the application and general computer controls are adequate and functioning as intended, especially in the area of privacy and security
  • Recommending and, as appropriate, documenting improvements to existing or design- stage information systems to increase efficiency or adequacy of controls
  • Evaluating the adequacy of policies and procedures related to the effective operation and control of the information systems
  • Facilitating development of responses to external audit findings and the resolution of IT policy and procedural issues
  • Ensuring compliance with regulatory and other industry standards for infrastructure services provided by DET
For more information, please view the full position description

Level will be determined based off qualifications and experience.

Salary Information

Starting salary for the IS Enterprise Technical Services Senior (07-34) be between $29.27- $45.41 hourly. Starting salary for the IS Enterprise Technical Services Specialist (07-33) be between $34.16- $52.40 hourly. A twelve-month probationary period may be required. Level and salary will be determined based off qualifications and experience. Current State employees will be compensated in accordance with the current State Compensation Plan.

Job Details

Due to the nature of the position, DOA will conduct fingerprinting and/or background checks on applicants prior to selection. DOA does not sponsor work visas. In compliance with federal law, all persons hired will be required to verify identity and eligibility to work in the United States, and to complete the required employment eligibility form upon hire.

All employees are expected to live and work in Wisconsin. Certain positions within this Department may allow remote/work from home flexibility for a portion of their work schedule, depending on the needs of the position and the work unit. This topic and any remote work flexibility that may be available will be discussed in more detail in the interview process.

Qualifications

Minimally qualified candidates will have education, training, or experience with ALL the following:
  • Standard IT audit procedures, including preparing an audit guide and identifying the steps taken in conducting the audit.
  • IT Security compliance functions such as the development and implementation of security controls; development of policies, standards and procedures; establishing benchmarks to measure the effectiveness of security controls or functions, or similar.
  • Communicating IT security audit and compliance information to people with varying IT and or security knowledge.
How To Apply

Apply online. To apply, click "Apply for Job" to start the application process. Then, you will access your existing account or to create a new account if you don't have an account. Once you are logged in, click "Apply for Job." Follow the steps outlined in the application process and submit your application. Please visit the Frequently Asked Questions section for general wisc.jobs user information and technical assistance.

Your letter of qualifications and resume are very important parts of your application and are used during our evaluation process to determine your qualifications as they relate to the job. Please review instructions on developing your resume and letter of qualifications . click apply for full job details
Date Posted: 13 April 2025
Apply for this Job