Senior Cybersecurity Compliance Analyst
Aptnexus • Washington, DC • Full Time • $115,000–$140,000 / year
Posted on Thu, Oct 8, 2026
Clearance:
Ability to obtain and maintain a Minimum Background Investigation (MBI) for our Department of Treasury customer. Candidates must reside in, and perform all work from, the continental United States or its outlying territories.
Location:
Remote (United States)
Work Schedule:
Full-time, remote. Must be available during core business hours (Eastern Time) to support stakeholder calls and submission deadlines. Occasional travel may be required.
Salary Range:
$115,000 to $140,000 annually, commensurate with experience
Position Overview:
AptNexus is seeking a Senior Cybersecurity Compliance Analyst to support a cybersecurity compliance program for our Department of Treasury customer. The program oversees the protection of sensitive federal data held by federal, state, and local government organizations, which submit corrective action plans, system security plans, technical inquiries, and change notifications for review. In this role, you will evaluate these submissions against security requirements tailored from NIST SP 800-53 and deliver clear, well-supported compliance determinations and guidance. The ideal candidate is a detail-oriented self-starter who can manage a steady volume of reviews with consistency and precision.
Duties/Responsibilities:
- Evaluate corrective action plans and POA&Ms submitted by partner organizations, including supporting evidence such as screenshots, audit logs, and policy documents, and determine whether each finding is open or closed.
- Recommend specific follow-on actions required to close open findings, and address questions and statements raised in partner organization responses.
- Review system security plans and related compliance submissions against applicable NIST controls, clearly identify compliance status, and articulate applicable requirements.
- Prepare written responses to technical inquiries on topics such as multifactor authentication, cloud configuration, and control implementation methodologies, and conduct follow-up calls as needed.
- Evaluate advance notifications of planned changes, such as cloud adoption, contractor access, and test environments, and provide written cybersecurity guidance.
- Perform quality reviews of audit reports and remediation tracking documentation before delivery to the customer.
- Manage the submission review queue, tracking volumes, due dates, and turnaround to meet customer deadlines.
- Develop and maintain automated tools, such as Excel VBA macros and standardized templates, to improve the consistency and efficiency of reviews.
- Review the work of other analysts for accuracy and consistency, and provide technical guidance on complex determinations.
- Maintain complete and accurate records of all correspondence and documentation in the customer’s case management system.
- Contribute recommendations to improve review procedures, templates, and guidance.
- Comply with all customer security, privacy, and records management requirements, using only Government-furnished equipment and approved systems.
Required Skills
- Minimum of seven (7) years of cybersecurity experience, including at least five (5) years in federal cybersecurity compliance, audit, or assessment, with direct experience evaluating POA&Ms or system security plans.
- Expert working knowledge of NIST SP 800-53 (moderate and high baselines), the NIST Risk Management Framework, NIST SP 800-30, and FIPS, including the ability to evaluate compliance against control sets tailored from NIST.
- Demonstrated ability to evaluate technical evidence, such as configuration screenshots, audit logs, scan results, and policy documents, and determine whether a control requirement has been satisfied.
- Working knowledge of the technologies that commonly generate compliance questions, including cloud services (SaaS, IaaS, PaaS), multifactor authentication, encryption standards, operating systems, and network devices.
- Exceptional technical writing skills, with the ability to produce clear, consistent, and well-supported determinations and guidance.
- Advanced Microsoft Excel and Word skills; experience developing or maintaining VBA macros and templates is strongly preferred.
- Proven ability to manage a high volume of concurrent reviews and meet firm deadlines without sacrificing accuracy.
- Detail-oriented self-starter who takes ownership of assignments, manages competing priorities, and drives work to completion with minimal supervision.
- Certification:
- Must have at least one of the following certifications:
- Certified Information Systems Auditor (CISA) (preferred)
- CompTIA Cybersecurity Analyst (CySA+)
- GIAC Systems and Network Auditor (GSNA)
- Polished written and verbal communication skills, with a professional and courteous approach to partner organizations and customer personnel.
- Sound professional judgment, objectivity, and integrity in handling sensitive information.
- Must meet federal eligibility requirements for a position of public trust, including U.S. citizenship or lawful permanent residency, federal tax compliance, Selective Service registration (if applicable), a credit check, and fingerprinting.
- Must complete customer-required security awareness training upon onboarding and annually thereafter.
Education Requirement:
High school diploma required. Bachelor’s degree in information technology, cybersecurity, information systems, accounting, or a related field preferred.
AptNexus is an Equal Opportunity Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, sexual orientation, gender identity, disability or protected veteran status.
More live compliance_analyst roles
- Mutual Fund/Investment Compliance Analyst II at Pacific Life — Newport Beach, California, United States
- Senior Compliance Analyst, Snowgov Compliance at Snowflake — Menlo Park, CA, United States
- Senior Compliance Analyst, Customer Trust at Snowflake — Menlo Park, California, United States
- Cybersecurity Compliance Analyst II at Aptnexus — Washington, DC, United States
- Cybersecurity Compliance Analyst I at Aptnexus — Washington, DC, United States
- Compliance Analyst at Auto-Owners Insurance Company — Lansing, Michigan, United States
- Senior Compliance Analyst, Governance Programs at Snowflake — Menlo Park, California, United States
- Corporate Compliance Analyst at SUMITOMO MITSUI TRUST BANK — New York, NY
- Senior Travel & Expense Compliance Analyst at CesiumAstro — Austin, TX
- Senior NERC Compliance Analyst at M W Resource — Austin, Texas, United States
- Senior Investment Compliance Analyst at City of New York — New York City, NY, United States
- Cybersecurity Compliance Analyst at Booz Allen Hamilton — Arlington, VA, United States
- Payroll Compliance Analyst - Advanced at Independence Pet Group (Remote)
- Operations Compliance Analyst at Military Spouse Corporate Career Network — Secaucus, New Jersey, United States
- Operations Compliance Analyst - Secaucus, NJ at Military Spouse Corporate Career Network — Secaucus, New Jersey, US
- Sr Product Compliance Analyst at HealthEquity (Remote)
- Global Trade & Compliance Analyst at Arclin Career — Richmond, Virginia, United States
- Compliance Analyst (Property & Casualty) at Markel — Bedford, TX, United States
- Customs & Trade Compliance Analyst at Array Marketing — Scarborough, Ontario, Canada
- Contract Compliance Analyst III at Abbott — Madison, Wisconsin, US
- Senior Payroll Tax and Compliance Analyst — Buffalo, NY, United States
- Senior Cyber Governance, Risk, Compliance Analyst at FINRA — Rockville, Maryland, US
- Compliance Analyst at Thatch (Remote)
- Senior SOX Compliance Analyst at S&T Bank — Pittsburgh, PA, United States
- International Trade Compliance Analyst - Level 2 at Northrop Grumman — 9 Locations
- Experienced Compliance Analyst at Samsung — 1530 FM 973 Taylor, TX, USA
- 340B Program Compliance Analyst Certified — Morrisville, North Carolina, US
- Compliance Analyst III - Compliance and Privacy — Morrisville, NC, US
- Compliance Analyst at AmeriLife (Remote)
- Senior Compliance Analyst at TekWissen — Taylor, TX, United States
- Compliance Analyst at Recrute Action — Toronto, Ontario, Canada
- Compliance Analyst (Archer / GRC) at Recrute Action — Toronto, Ontario, Canada
- Regulatory Compliance Analyst at DHRM — Richmond, Virginia, United States
- Tax & Compliance Analyst at Informa Group — Mexico City, MX
- Compliance Analyst at Integra Partners (Remote)
- Logistics & Compliance Analyst (Rail) at KMM — Lincoln, Nebraska, United States
- Compliance Analyst at Iconma Portal — Cupertino, California, United States
What the data says about this job
- Advertised pay for Compliance Analyst: a median of $83,000 across 1,361 priced postings. This posting advertises $115,000 to $140,000, 54% above that median. Explore the market
Measured from employers' own postings and public filings. How we measure