IT Compliance Analyst Jobs
IT Compliance Analyst jobs are open across financial services, healthcare, technology, and government contracting, from entry-level to senior and managerial roles, with specializations in risk management, regulatory compliance, and cybersecurity frameworks. Find a role that fits from the openings below and apply directly.
Find IT Compliance Analyst JobsOverview
Showing 5 of 17+ IT Compliance Analyst jobs











Location
Hybrid - Denver
Employment Type
Full time
Location Type
Hybrid
Department
Business - Non Sales
Ibotta is seeking an IT Compliance & Automation Analyst to join our innovative team and contribute to our mission to Make Every Purchase Rewarding. You will help strengthen and modernize Ibotta's IT compliance program and contribute to our mission to Make Every Purchase Rewarding. This role will support compliance across SOX ITGC/ITAC, SOC 1, SOC 2, and ISO 27001, while identifying opportunities to automate manual processes and build more efficient, scalable compliance workflows. The ideal candidate brings demonstrated IT compliance experience in a public company environment along with a passion for using automation and emerging AI technologies to improve how compliance work gets done.
This position is located in Denver, Colorado as a hybrid position requiring 3 days in office (Tuesday, Wednesday, and Thursday). Candidates must live in the United States.
Not based in Denver? We will offer a relocation bonus to help make your move to the Mile High City a smooth one.
What you will be doing:
Partner with IT and business teams to develop, maintain, and continuously improve controls across SOX ITGC/ITAC, SOC 1, SOC 2, and ISO 27001, providing guidance on compliance requirements and best practices
Lead IT control testing and audit coordination across compliance frameworks, partnering with internal audit, external auditors, and third-party assessors
Conduct risk assessments, identify control gaps and compliance issues, and partner with process and control owners to drive remediation
Identify manual, time-intensive compliance processes — including access reviews, evidence collection, and control monitoring — and redesign them using scripting, workflow tools, and AI-assisted technologies
Build and maintain a roadmap of compliance automation initiatives, measuring efficiency gains and reporting progress to management
Continuously improve audit evidence collection and PBC processes to reduce administrative burden while maintaining audit quality
Develop a solid understanding of Ibotta's IT infrastructure, applications, and systems to proactively identify risks and opportunities for improvement
Stay current on evolving regulatory requirements and emerging automation/AI technologies, and provide guidance and training to relevant stakeholders
Embrace and uphold Ibotta's Core Values: Integrity, Boldness, Ownership, Teamwork, Transparency, & A good idea can come from anywhere
What we are looking for:
4+ years of IT regulatory compliance experience, including at least 2 years working directly with SOX ITGC and ITAC
Bachelor's degree in IT, Information Systems, or a related field, or equivalent practical experience required
Working knowledge of SOC 1, SOC 2, and ISO 27001, including how these frameworks overlap with and differ from SOX requirements
Proficient in technical auditing and experience translating controls and compliance requirements for technical stakeholders
Demonstrated experience identifying process inefficiencies and implementing automation through scripting, workflow/RPA tools, GRC platforms, AI-based tools, or similar technologies
Curiosity and sound judgment around applying AI to compliance workflows while maintaining appropriate standards for audit-quality work
Experience documenting internal control processes through narratives, flowcharts, or similar documentation
Effective analytical, problem-solving, communication, and collaboration skills, with the ability to work independently and manage competing priorities
Knowledge of IT systems and cloud environments such as AWS
CISA or similar professional certification preferred; SOC 2 or ISO 27001 certifications/coursework are a plus
About Ibotta ("I bought a...")
Ibotta (NYSE: IBTA) is a leading performance marketing platform allowing brands to deliver digital promotions to over 200 million consumers through a network of publishers called the Ibotta Performance Network (IPN). The IPN allows marketers to influence what people buy, and where and how often they shop – all while paying only when their campaigns directly result in a sale. American shoppers have earned over $2.6 billion through the IPN since 2012. The largest tech IPO in history to come out of Colorado, Ibotta is headquartered in Denver, and is continually listed as a top place to work by The Denver Post and Inc. Magazine.
To learn more about what our Tech teams are doing day to day, visit Building Ibotta on Medium.com
Additional Details:
This position is located in Denver, CO and includes competitive pay, flexible time off, benefits package (including medical, dental, vision), Employee Stock Purchase Program, and 401k match. Denver office perks include paid parking, snacks, and occasional meals.
Base compensation range: $110,000 - $125,000. Equity is included in overall compensation package. This compensation range is specific to the United States labor market and may be adjusted based on actual experience.
Ibotta is an Equal Opportunity Employer. Ibotta’s employment decisions are made without regard of race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, sexual orientation, or any other legally protected status.
Applicants must be currently authorized to work in the United States on a full-time basis.
Applicants are accepted until the position is filled.
For the security of our employees and the business, all employees are responsible for the secure handling of data in accordance with our security policies, identifying and reporting phishing attempts, as well as reporting security incidents to the proper channels.
Recruiting Agency Notice
Ibotta does not accept agency resumes and is not responsible for any fees related to unsolicited resumes. Please do not forward resumes to any Ibotta employees.
IT Compliance Analyst Jobs by Experience Level
See All 17 IT Compliance Analyst Jobs
Find roles that match your experience and apply in just a few clicks.
Find IT Compliance Analyst JobsIT Compliance Analyst Job Market
Who's Hiring



Top Industries Hiring
- Manufacturing
- Technology & Software
- Mining & Natural Resources
What Employers Look For
The qualifications that appear most often in IT compliance analyst jobs.
- Bachelor's degree in information technology, cybersecurity, or a related field
- Hands-on experience with compliance frameworks such as NIST CSF, ISO 27001, or SOC 2
- Certifications including CISA, CRISC, or CompTIA Security+ preferred or required
- Experience conducting internal audits, risk assessments, and control gap analyses
- Proficiency with GRC platforms such as ServiceNow GRC, RSA Archer, or similar tools
- Strong written communication skills for policy documentation and audit report preparation
Tips for Your IT Compliance Analyst Job Search
Frame your resume around control frameworks
Listing certifications alone won't land interviews. Show which frameworks you've implemented or audited, whether NIST CSF, ISO 27001, or SOC 2, and describe the scope of each engagement so hiring managers can gauge your hands-on experience immediately.
Highlight audit findings you actually remediated
Employers want analysts who close gaps, not just document them. Describe a specific control deficiency you identified and walked through remediation, including how you coordinated with IT or engineering teams to resolve it before the next assessment cycle.
Apply early to roles that fit
Migrate Mate lists it compliance analyst openings from across the United States in one place, so you can find roles that match and apply directly to each listing.
Filter by compliance domain before applying
Job titles overlap heavily, but the underlying work differs sharply between PCI DSS, HIPAA, and FedRAMP roles. Read the requirements section carefully and prioritize openings where your domain experience is a direct match rather than applying broadly to every compliance posting.
Prepare to walk through a mock audit scenario
Technical interviews for this role frequently involve a hypothetical: an auditor asks what you'd do if a critical control failed two weeks before a certification deadline. Rehearse a structured answer that covers immediate escalation, compensating controls, and documentation steps.
Negotiate using scope, not just title
When discussing an offer, ask which regulatory frameworks the team owns and how many audits run per year. Roles carrying PCI Level 1 or FedRAMP High obligations carry more responsibility than the title suggests and give you a grounded basis to discuss compensation expectations.
IT Compliance Analyst Jobs: Frequently Asked Questions
Which companies are hiring the most it compliance analysts?
The companies hiring the most it compliance analysts right now include Komatsu, creo, and Ibotta, with the largest share of openings in Virginia, California, and Georgia, based on current listings on Migrate Mate as of September 2026. Financial services firms, federal contractors, and large healthcare systems consistently post the highest volume of it compliance analyst roles.
How many it compliance analyst jobs are remote?
About 78% of it compliance analyst openings are fully remote or hybrid as of September 2026, making it one of the more flexible roles in the IT field. Positions focused on policy writing, GRC platform administration, and third-party vendor assessments tend to be the most remote-friendly, while roles requiring on-site system access or in-person audit walkthroughs are more likely to be on-site or hybrid.
How do you become an it compliance analyst?
Start by earning a bachelor's degree in information technology, cybersecurity, or a related field, then pursue an entry-level IT or security role to build hands-on exposure to systems and controls. Obtain a recognized certification such as CISA or CompTIA Security+ to demonstrate compliance-specific knowledge. From there, apply to junior analyst or GRC associate roles where you can develop audit and risk assessment experience under senior practitioners.
Can you get an it compliance analyst job with little experience?
Yes, entry-level it compliance analyst roles exist, and many employers fill them with candidates who have a relevant degree, a foundational certification like CompTIA Security+, and demonstrated familiarity with at least one compliance framework through coursework or a lab environment. Internships in IT audit, experience with GRC tools in academic projects, and any direct exposure to policy documentation all strengthen an application when professional experience is limited.
What does the it compliance analyst interview process look like?
Most it compliance analyst interview processes include an initial screening call with a recruiter or HR contact, followed by a technical interview where you'll discuss your knowledge of specific frameworks, audit methodologies, and risk assessment approaches. A second or third round often involves a scenario-based exercise or a case study where you're asked to evaluate a control gap and recommend remediation steps, sometimes with a panel that includes the compliance manager and a member of the IT or security team.
Where can I find and apply to it compliance analyst jobs?
You can find and apply to it compliance analyst jobs on Migrate Mate, which lists current openings from across the United States. Search the available roles, find the ones that match your experience and target domain, and apply directly to each listing that fits.
See All 17 IT Compliance Analyst Jobs
Find roles that match your experience and apply in just a few clicks.
Find IT Compliance Analyst Jobs