CybersecurityJobs.io
← Back to all jobs

Job Description

Wis Phys Svc Ins Corp is hiring a Senior IT Security Analyst to strengthen security governance across the organization, including policy management, compliance tracking, and reporting. This hybrid role is based in Madison, WI, and focuses on applying structured frameworks such as NIST CSF while supporting security awareness and responsible AI initiatives.

The Senior Security Policy Analyst will use ServiceNow and related modules to streamline how policies and controls are maintained, assessed, and monitored, helping the business stay prepared for audits and regulatory expectations.

Key Responsibilities

  • Develop, implement, and maintain security policies, standards, and procedures using ServiceNow to streamline policy administration, compliance tracking, and reporting.
  • Create and maintain corporate security policies, standards, procedures, and guidelines aligned to NIST CSF, regulatory requirements, and industry best practices.
  • Own the integration and management of security policies, controls, and risk assessments within ServiceNow IRM and Managed Documents.
  • Perform risk assessments, control evaluations, and gap analyses mapped to NIST CSF to support audit readiness and compliance initiatives.
  • Partner with IT, Risk, Compliance, and Business teams to support organization-wide policy adoption and awareness.
  • Produce clear, concise, and actionable security documentation, including policies, procedures, guidance, and reports.
  • Monitor adherence to internal policies and external regulatory requirements, identify gaps, and drive remediation efforts.
  • Generate reports and analytics on policy adherence, exceptions, and trends using ServiceNow dashboards and workflows.
  • Act as a subject matter expert for security governance, NIST CSF implementation, and security risk management best practices.
  • Mentor junior analysts on policy development, implementation, and effective use of ServiceNow.
  • Develop and maintain security awareness training programs to educate employees on corporate security policies, procedures, and best practices.
  • Support AI governance awareness programs covering responsible AI use, ethical considerations, and applicable regulatory requirements.
  • Update training materials as policies, regulations, and emerging AI or cybersecurity threats evolve.
  • Assess and monitor third-party vendors to ensure compliance with company security policies and applicable industry regulations.

Requirements

  • U.S. citizenship is required due to Department of Defense restrictions.
  • Bachelor’s degree in Computer Science, Information Systems, Cybersecurity, Network Security, or a related field (or equivalent combination of education and experience).
  • 5+ years of experience in security policy, governance, risk, and compliance roles.
  • Strong knowledge of NIST CSF and AI governance principles, plus experience with frameworks such as ISO 27001, CIS, or SOC 2.
  • Knowledge of cloud security policies, configuration standards, and best practices for AWS, Azure, GCP, or SaaS applications to apply governance.
  • Demonstrated experience with ServiceNow IRM modules, including policy, risk, audit, and compliance workflows.
  • Ability to create professional, actionable security and risk governance documentation.
  • Experience developing and delivering security awareness training programs.
  • Excellent communication skills with the ability to engage technical and non-technical stakeholders.
  • Demonstrated experience developing and implementing security policies and standards in a highly regulated environment.
  • Strong analytical, organizational, and project management skills, with the ability to drive initiatives independently.

Technologies

  • ServiceNow, ServiceNow IRM, Managed Documents
  • ServiceNow dashboards and workflows
  • NIST CSF, AI governance principles
  • ISO 27001, CIS, SOC 2
  • AWS, Azure, GCP, SaaS

Location and Work Model

  • Hybrid work based in Wisconsin, with first consideration given to candidates living in the state.
  • Employees within 45 miles of WPS Headquarters (1717 W. Broadway in Madison, WI, 53713) are expected to work in office 3 days per week on a regular basis.
  • Second consideration will be given to remote candidates in Wisconsin, Illinois, Michigan, Minnesota, and Iowa.
  • If not regionally local, frequent monthly travel to WPS Headquarters is likely.

Compensation

USD 90,000 - 115,000 per year.

Benefits

  • Remote and hybrid work options available.
  • Performance bonus and/or merit increase opportunities.
  • 401(k) with a 100% match for the first 3% of salary and a 50% match for the next 2% of salary (100% vested immediately).
  • Competitive paid time off.
  • Health insurance, dental insurance, and telehealth services start DAY 1.
  • Professional and Leadership Development Programs.
  • Review additional benefits: https://www.wpshealthsolutions.com/careers/

Remote Work Requirements

Additional Compliance and Screening Notes

  • From time to time, the role may provide support to federal health care programs and other governmental or regulated industries.
  • In accordance with law and/or contractual requirements, personnel may be subject to applicable federal regulations, agency contract requirements, and WPS internal policies covering data security, privacy, confidentiality, and program integrity.
  • WPS personnel are subject to mandatory enhanced screening and background investigation prior to access to information systems and/or sensitive data.

Preferred Qualifications

  • Familiarity with KnowBe4 or other security awareness platform tools.
  • Familiarity using AI to facilitate automated workflows.

Similar Jobs