- Company Name
- Delphi-US, LLC - Peacemakers in the Talent War
- Job Title
- IT Governance Analyst
- Job Description
-
Job title: IT Governance Analyst
Role Summary:
The IT Governance Analyst bridges technical operations and governance/compliance functions, ensuring that IT infrastructure, systems, and administrative practices meet regulatory standards, industry frameworks (COBIT, NIST, ISO/IEC 27001, ITIL), and organizational objectives. The position focuses on assessing, improving, and documenting IT configurations, policies, and controls while supporting audit readiness and risk mitigation.
Expectations:
- Apply technical expertise to evaluate and enhance system configurations (Windows, AD, Linux, virtualization, cloud).
- Align operational practices with governance frameworks and regulatory requirements.
- Provide evidence and documentation for internal and external audits.
- Drive continuous improvement through automation and process redesign.
- Communicate findings clearly to technical and non‑technical stakeholders.
Key Responsibilities:
- Develop, implement, and maintain IT governance frameworks, policies, and standards.
- Conduct assessments of administrative practices, backup strategies, patching, and hardening.
- Collaborate with Systems, Network, Applications, and Cloud teams to ensure secure configurations and control compliance.
- Perform risk analysis through log review, access controls, and control effectiveness testing.
- Support business continuity and disaster recovery testing with a focus on administrative functions.
- Liaise with auditors, collect evidence, and document control evidence and remediation actions.
- Generate dashboards and reports on compliance metrics and administrative control status.
- Recommend process improvements, automation, and scripting to support governance objectives.
- Implement and maintain role‑based access controls, least privilege models, and system monitoring.
Required Skills:
- 3–5 years of hands‑on IT administration experience (Systems/Network Administration).
- Strong knowledge of Active Directory, Windows Server, Linux, firewalls, virtualization (VMware, Hyper‑V), AWS, Azure.
- Proficiency in IT governance frameworks (COBIT, NIST CSF, ISO 27001) and ITIL processes.
- Experience with audit evidence collection and control documentation.
- Analytical, troubleshooting, and documentation skills.
- Excellent communication with technical and business audiences.
- Commitment to continuous improvement and security best practices.
Required Education & Certifications:
- Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, or related field (desired).
- Certified Information Systems Auditor (CISA) – current or obtained within 6 months of hire.
- Additional certifications (CRISC, CISSP, CBRITP, CBCP, CompTIA Security+, ITIL, Microsoft/AWS/Linux admin) are desirable.
- Experience with GRC tools such as Archer, ServiceNow GRC, or MetricStream is a plus.