Job OverviewWe are seeking an experienced
Security Process Analyst / Technical Documentation Specialist for an urgent engagement supporting a cybersecurity organization. This role will focus on analyzing, documenting, and improving security operations, governance processes, and supporting artifacts. Candidates most likely to secure an interview will bring
5-8 years of IT or cybersecurity experience, strong process analysis and documentation skills, and familiarity with recognized security frameworks such as
NIST CSF, CIS Controls, and ISO/IEC 27001.
Must Haves - 5-8 years of professional experience in information technology, cybersecurity, or a closely related field.
- At least 3 years of experience as a Business Analyst, Process Analyst, Technical Writer, Security Analyst, or similar role.
- Demonstrated ability to create clear, structured, and auditable policies, procedures, SOPs, process guides, playbooks, runbooks, and workflow documentation.
- Experience analyzing current-state processes through stakeholder interviews, observation, and detailed process analysis.
- Strong understanding of information security principles, governance practices, risk management, and compliance requirements.
- Working knowledge of the NIST Cybersecurity Framework, CIS Controls, and ISO/IEC 27001.
- Experience identifying process gaps, inefficiencies, operational risks, and opportunities for improvement.
- Excellent communication and stakeholder management skills, with the ability to translate complex security practices into practical, repeatable processes.
What the Client Needs You to Do The successful candidate will help strengthen the maturity, consistency, and auditability of security operations. You will partner with cybersecurity leaders, technical teams, business stakeholders, and external partners to capture undocumented practices, clarify requirements, and transform them into standardized operational processes.
You will be expected to identify opportunities for improvement, support governance and compliance activities, document risks and decisions, and develop future-state workflows and roadmaps. Success in this role requires balancing strong analytical skills with the ability to communicate clearly across both technical and non-technical audiences.
Key Responsibilities - Analyze and document existing security processes, workflows, procedures, and operational practices.
- Conduct stakeholder interviews and working sessions to gather requirements and understand current-state activities.
- Create and maintain policies, standards, procedures, SOPs, playbooks, runbooks, process maps, swim lane diagrams, and other operational documentation.
- Identify process gaps, inefficiencies, control weaknesses, risks, and opportunities to improve security operations.
- Develop future-state process designs and operational roadmaps that support increased consistency, maturity, and effectiveness.
- Support security governance, compliance, assessment, and audit readiness activities by maintaining accurate and traceable documentation.
- Facilitate collaboration among cybersecurity teams, IT organizations, business stakeholders, and external partners to establish clear ownership and consistent execution.
- Prepare reports, presentations, dashboards, and documentation artifacts that communicate initiative status, findings, risks, and progress to leadership.
- Document findings and recommended remediation actions resulting from security reviews, assessments, and process evaluations.
- Track and maintain records of risks, issues, decisions, dependencies, and action items associated with security initiatives and process improvements.
- Assist with planning, monitoring, and coordinating security projects to support timely delivery and alignment with strategic priorities.
- Develop supporting communications and training materials that encourage adoption of security policies, processes, and best practices.
- Gather, analyze, and document business and technical requirements for security initiatives, operational processes, tools, and supporting documentation.
- Translate informal or inconsistent practices into repeatable, measurable, and well-governed processes.
- Perform additional related responsibilities as needed to support ongoing improvement of cybersecurity operations.
Additional Information Work Arrangement: To be determined based on project requirements.
Schedule: Full-time engagement expected; specific hours and duration will be discussed during the interview process.
Key Skills: Process analysis, business analysis, technical writing, cybersecurity operations, security governance, risk management, compliance, audit readiness, stakeholder engagement, workflow mapping, process improvement, and requirements gathering.
Preferred Background: Experience supporting large, complex, or highly regulated environments is strongly preferred. Candidates should be comfortable working across multiple stakeholder groups and navigating evolving priorities while maintaining organized, high-quality documentation.
This is an excellent opportunity for a security-focused analyst who enjoys bringing structure to complex environments, improving operational consistency, and creating documentation that enables better decision-making, stronger governance, and more effective security outcomes.
W2 employees of Overture Partners who work 30 or more hours per week are eligible for the following benefits: medical (choice of 3 plans), 401(k) starting on day one, a variety of voluntary benefits including life and disability insurance, and sick time if required by law in the worked-in state/locality.
#25600