IT Compliance Analyst
CSA Global • Pensacola, Florida • Full Time
Posted on Sat, Aug 29, 2026
Client Solution Architects (CSA) is seeking an IT Compliance Analyst to join our growing company in support of our Navy client onsite at our Pensacola, FL location. We are looking for someone to Provide Support utilizing the RMF Process Guide (Security Plan Approval, Security Assessment Plan (SAP) Approval, System Assessment Report (SAR) Approval, Security Assessment Package Approval, and Continuous Monitoring) for several ATO packages.
For nearly 50 years, CSA has delivered integrated technology and operational support services to meet the defense and federal sector's most complex enterprise needs. Working from operations centers and shipyards to training sites and program offices, CSA deploys experienced teams, innovative tools and proven processes to advance federal missions.
How Role will make an impact:
- This person will provide package support per Naval Education and Training Commands continuous monitoring guidance.
- Establish periodic meetings/Meet with NETC Cyber RMF Team to discuss RMF timelines, tasks, and deliverables
- Maintain eMASS Record
- Maintain Key artifacts (Package hardware/software lists, diagrams, etc).
- Maintain other artifacts required by RMF/eMASS( Categorization Form, Contingency Plan (CP), Disaster Recovery Plan (DRP),Incident Response Plan (IRP), Vulnerability and Patch Management Plan, Privacy Impact Assessment (PIA), System Level Continuous Monitoring (SLCM) Strategy)
- Ensure MONTHLY Scans are conducted per SCA Testing Guidance
- Ensure all assets in Hardware are scanned, and credentialed
- Process scans utilizing the eMASSter tool
- Ensure all applicable STIGS are conducted for all assets in the Hardware List
- Ensure all QUARTERLY updated applicable STIGs from DISA website are implemented
- Review findings and associate each with applicable affected security control;
- Update POAM items (See POAM Section) Web Risk Assessment (WRA) Scan (if applicable) ATO Modifications (Use Case)
What you’ll need to have to join our award-winning team:
- Clearance: Must possess and maintain an active Secret Clearance. Must be able to meet security investigation and meet eligibility requirements for access to classified information.
- Minimum Education: High School Diploma or equivalent.
- Three (3) or more years of experience executing the NIST Risk Management Framework (RMF) and/or the DoD Information
- Navy Cyber Security Workforce (CSWF) baseline certification at IAM Level I or a higher-level certification is required. Acceptable certifications include Security+ CE, CAP, CND, GSLC, Cloud+, and HCISPP.
- IA Contractor Training and Certification and Computing Environment (CE) certification may be required at the task order level.
- Assurance Certification and Accreditation Program (DIACAP).
- Supporting the security Assessment and Authorization/ATO process.
- Experience with reviewing, comprehending and documenting findings from ACAS (Assured Compliance Assessment Solution) Reports.
- Experience with SCAP (Security Content Automation Protocol).
- Experience with DoD Architecture Framework (DoDAF) standards and assessments of enterprise information security architecture, processes, procedures, activities, and operations.
- Experience with performing cyber security risk assessments and identifying, verifying, and consolidating specific vulnerabilities, causes, analysis of alternatives and identification of appropriate corrective actions from each risk assessment conducted.
- Experience with evaluation of Security Technical Implementation Guides (STIGs) to determine applicability to systems and assets.
- Functional expertise with Microsoft Office suite of products, including Word, Excel, PowerPoint, Visio, and Project.
What Sets you apart:
- BA or BS degree from an accredited institution in related field (e.g., Management Information Systems, Information Technology, Computer Science, Math, Business, Engineering, or Physical Science, etc.)
- Prior experience with DoD Information Assurance Certification and Accreditation Program (DIACAP).
- IT project management experience supporting Navy or DoD network systems.
- Excellent oral and written communication skills, including drafting, reviewing, and editing technical graphs, briefs, or documents.
- Evidence of being detail oriented with strong critical thinking in areas of IT process analysis / process improvement.
- Possesses Good Team Skills having the ability to coordinate and work well with others.
- Working knowledge of Microsoft Visio, including the ability to create and maintain detailed diagrams and workflow visualizations in support of operational and technical requirements.
Physical Requirements:
While performing the duties of this job, the employee is regularly required to:
- Sit for extended periods of time and work at a computer workstation
- Use hands and fingers to operate keyboards, mice, and other input devices
- Communicate effectively, both verbally and in writing
- Specific vision abilities required may include close vision, distance vision, depth perception, and the ability to adjust
- Stand, walk, bend, or reach; Access equipment located in data centers, offices, or under desks
- Lift and/or move equipment weighing up to 25 pounds
Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions, in accordance with the Americans with Disabilities Act (ADA).
AuditFriendly salary estimate
The employer did not post a salary for this role. Based on AuditFriendly's salary intelligence model (comparable live postings, role, seniority, and location), we estimate base pay of $73,000–$108,000 per year (median ~$87,000). This is an AuditFriendly estimate, not an employer-provided figure.
More live compliance_analyst roles
- Audit and Compliance Analyst at City of New York — New York, New York, US
- Security Compliance Analyst at H4 Enterprises — Washington, District of Columbia, United States
- BSA Compliance Analyst at Poppy Bank — Santa Rosa, California, United States
- IT Compliance Analyst at CSA Global — Pensacola, Florida, US
- Records Compliance Analyst at UMass Global (Remote)
- QC Compliance Analyst at Simtra BioPharma Solutions — Bloomington, IN, United States
- Sr. HR Compliance Analyst at Inspire Brands — Atlanta, Georgia, United States
- Senior Compliance Analyst at Centene Management Company (Remote)
- Import & Export Compliance Analyst at STERIS — Indianapolis, Indiana, United States
- Senior Technical Compliance Analyst at DraftKings — Boston, Massachusetts, United States
- Governance, Risk & Compliance Analyst I at Geographic Solutions — Palm Harbor, Florida, United States
- Senior Associate Inbound Compliance Analyst (KYC) at Carta — Hamilton, New Jersey, United States
- Senior Trade Compliance Analyst at JBT Marel (Remote)
- Compliance Analyst at Pala Interactive — Toronto, Ontario, Canada
- IT Compliance Analyst at Canopy Growth (Remote)
- Audit & Compliance Analyst at Candescent — Atlanta, Georgia, United States
- Senior Technical Compliance Analyst at DK Crown Holdings — Boston, MA, United States
- Compliance Analyst 401K at Insperity — Kingwood, Texas, United States
- Compliance Analyst at Oppenheimer & Co. — New York, New York, United States
- Senior Compliance Analyst at New York State Housing Finance Agency — New York, New York, US
- Senior Compliance Analyst at AdventHealth — Not Specified
- Security Compliance Analyst at Fortra — Washington DC, District of Columbia, United States
- Electric System Compliance Analyst at JEA — Jacksonville, Florida, United States
- Loan Operations – Funding & Flood Compliance Analyst at Texas Capital Bank — Richardson, Texas, United States
- Senior Internal Controls & Compliance Analyst at Aliaxis (Remote)
- Commodity Tax and Compliance Analyst at Royal Bank of Canada — Burlington, ON, Canada
- Compliance Analyst at Continental Casualty Company — Chicago, US
- Senior Internal Controls & Compliance Analyst at IPEX — Canada
- Compliance Analyst - Branch Exams at Cetera Financial Group (Remote)
- Trade Compliance Analyst at Caterpillar — Irving, Texas, United States
- Senior Financial Compliance Analyst at Stanford Health Care (Remote)
- Sr. Financial Compliance Analyst (Remote) at Stanford Health Care (Remote)
- Sr. Financial Compliance Analyst at Stanford Health Care (Remote)
- Pci Compliance Analyst at Global Payment Holding Company — QUEZON CITY, , PHILIPPINES
- Senior Investment Compliance Analyst, Associate 2 at State Street Corporation — Krakow, Poland
- Senior Technical Compliance Analyst at Gus III — Boston, MA
- Senior Trade Compliance Analyst at Marel Holding — 10 Locations
- Trade Compliance Analyst Ii - Mexico at Regal Rexnord — Piedras Negras, Coahuila, Mexico
- Compliance Analyst at Sezzle (Remote)