Job Opportunities API

The Public Ledger of Openings

← Back to the ledger

Senior Data Security Governance Analyst - U.S. Based Remote Opportunity

Common App
CompanyCommon App
CategoryData & Analytics
LocationArlington
RemoteRemote (inferred)
EmploymentFull-time
LevelSenior
SalaryNot stated by the employer
Posted28 Jul 2026
Last verified9 Aug 2026
SourceEmployer ATS (workable)
Applications are handled by the employer, not by us.Apply on the employer's site →
Description
ABOUT US Do you have a passion for higher education? Do you want to make a positive impact on the college admissions process? Our staff help to remove barriers and encourage students to forge their path to a better future. Common App is a national not-for-profit organization dedicated to the pursuit of access, equity, and integrity in the college admission process. Each year we support more than 1 million students, one-third of whom are first-generation, as they apply to our more than 1100 diverse member colleges & universities using the Common App's free online application.  If you are an experienced data security professional and want to be part of a mission-driven non-profit that uses innovative technology to advance the college admission process, Common App may be a great match for you. Common App is currently searching for a Senior Data Security Governance Analyst.   RESPONSIBILITIES The Senior Data Security Governance Analyst plays a critical role in advancing the organization’s Enterprise Information Management (EIM) strategy, with a focus on data security, protection, and responsible data use. The role leads the implementation of EIM Data Security initiatives and supports SOC 2 readiness by defining and operationalizing enterprise data security governance policies, standards, and controls, ensuring they are consistently applied across systems, workflows, and teams. Working in close partnership with Technical Operations, Cybersecurity, Legal, and business units, the analyst establishes and governs data classification, secure PII handling, and access control frameworks, while collaborating with technology teams responsible for technical implementation.  The role also advances governance capabilities to support AI and advanced analytics workflows, ensuring appropriate data use, auditability, and alignment with privacy and regulatory requirements. By embedding governance into day-to-day operations and enabling scalable approaches to control implementation, documentation, and monitoring, this role ensures that data is secure, compliant, and trusted, while supporting its effective and responsible use to drive organizational value. Requirements QUALIFICATIONS This role requires: Candidates must live in the United States. Willing to travel to attend twice annual Common App Retreat. Bachelor’s degree in Information Management, Data Science, Statistics, or a related field. 5-8 years of experience in data security governance, data risk management and compliance, and analytics. Experience developing, implementing, and maintaining data security governance framework and programs, including creating standards, policies, data classification framework, and access controls in alignment with the broader data governance strategy and data stewardship practices. Strong knowledge of data security governance principles, including data classification, data lifecycle management, and PII protection. Familiarity with SOC 2 framework and controls, including experience supporting audit readiness, control documentation, and evidence collection. Familiarity with security implementation metrics, security adoption metrics, data protection metrics, and security incident metrics. Understanding of data governance considerations for AI and advanced analytics, including data usage controls, model input governance, and risks related to sensitive data exposure. Understanding of regulatory and compliance requirements related to data privacy and security (e.g., GDPR, CCPA, or similar frameworks. Experience operationalizing governance within data platforms (e.g., data warehouses, ETL pipelines, semantic layers). Ability to translate policies and standards into practical, scalable processes and implementation requirements. Knowledge of access control models (e.g., role-based access, least privilege) and data security best practices. Strong analytical and problem-solving skills, with the ability to as