IT Security Analyst II
Regal Rexnord
- Location
- Grafton, Wisconsin, United States
- Work model
- On-Site
- Level
- Mid
- Posted
- Sep 10, 2026
Skills
About this role
Work Model: Work Model: You’ll work in a hybrid model, onsite at your designated Regal Rexnord location at least 3 days per week (Monday–Thursday), with flexibility to work remotely up to 2 days, including Friday. ____________________ Position: IT Security Analyst II Location: Grafton, Wisconsin Remote Type: Hybrid Reports To: Senior Manager, Cybersecurity Compliance, Data Privacy & AI Governance We are seeking a motivated and detail-oriented IT Security Analyst II to support the organization’s AI governance, IT compliance and security, and third-party risk management programs. This mid-level role will help translate security, privacy, regulatory, contractual, and AI governance requirements into practical controls including risk assessments, evidence collection and remediation plans. The analyst will partner with IT infrastructure, PMO , Legal, Privacy, Procurement, business stakeholders, and third-party vendors to strengthen the organization’s security posture, improve audit readiness, and support responsible and secure adoption of AI-enabled technologies.
Key Responsibilities
IT Security Compliance and Governance Support day-to-day operation of the IT security compliance program, including control documentation, evidence collection, audit readiness, and remediation tracking. Assist with control mappings and compliance activities across applicable frameworks, standards, laws, and contractual requirements such as NIST, CMMC , SOC 2, data protection requirements, and internal policies. Partner with security, IT, privacy, legal, and business stakeholders to interpret compliance requirements and translate them into actionable control activities. Maintain compliance records, control narratives, risk registers, policies, procedures, and supporting documentation. Track compliance gaps, audit findings, exceptions, risks, and remediation plans to ensure timely closure and appropriate escalation . AI Security and Responsible AI Governance Research and keep apprised for latest updates in AI trends and AI Security. Support security and governance reviews for AI-enabled tools, platforms, models, and use cases to help ensure responsible, compliant, and secure adoption. Assist in maintaining AI security documentation, including inventories, risk assessments, control evidence, usage guidelines, data handling requirements, and approval records. Evaluate AI-related risks such as sensitive data exposure, unauthorized use, third-party AI dependencies, model access controls, prompt and output handling, and operational misuse. Collaborate with security, privacy, legal, data, product, and technology teams to assess AI use cases against internal policies and emerging AI governance expectations. Monitor AI security and governance findings and coordinate remediation activities with accountable owners. Third-Party Risk Management Support the third-party risk management lifecycle, including vendor intake, inherent risk reviews, due diligence questionnaires, security assessments, reassessments, and offboarding activities. Review supplier security documentation, certifications, audit reports, data protection materials, and responses to security questionnaires to identify risks and control gaps. Assist with vendor risk scoring, issue tracking, exception documentation, and remediation follow-up to ensure third-party risks are appropriately managed. Partner with Procurement, Legal, Privacy, Security, IT, and business owners to support contract reviews, data protection requirements, and security obligations. Pay special attention to third-party AI tools and services, including reviewing AI-related data handling, access controls, sub processors , model usage, and compliance requirements. Risk Reporting, Process Improvement, and Stakeholder Support Prepare clear, accurate reports,