The Senior Technical Compliance Analyst is an integral team member of the QTS Security Risk & Compliance Team and reports to the Manager, Information Security Compliance & Risk.
QTS has adopted a risk-based approach to security risk and compliance, and this role is responsible for implementing, monitoring, and continuously improving QTS’s security risk and compliance programs through the enterprise GRC program.
This role may be based in Overland Park, KS; Suwanee, GA; or Ashburn, VA and requires up to 15% travel to QTS data center locations. The ideal candidate possesses a growth mindset, strong analytical skills, and a natural ability to collaborate across diverse teams. They will play a key role in transforming compliance requirements into actionable controls, meaningful documentation, and scalable processes that strengthen QTS's risk and compliance posture while enabling business objectives.
RESPONSIBILITIES
Leverage the GRC platform to align frameworks, regulatory requirements, risks, controls and documentation into a cohesive governance structure that supports operational execution, continuous monitoring, and data driven reporting on the effectiveness of QTS security and compliance programs.
Provide visibility into the program maturity, risk posture, and control effectiveness through reporting and dashboards.
Provide internal support for internal audits of the program as well as the external audits of the SOC1 & SOC2, ISO 27001 & ISO 22301, PCI DSS, FISMA / NIST 800-53, DOD CMMC, and HITRUST audit cycles, by facilitating evidence collection, stakeholder engagement, and issue remediation
Key Activities include:
Compliance Program Execution – Partner with control owners to monitor reviews, scope coverage, and assessment on control effectiveness and completeness of internal documentation.
Compliance Implementations – Facilitate the implementation, adoption, and continuous improvement of new and existing compliance frameworks, standards, and regulatory requirements, ensuring controls and documentation are effectively integrated into data center and corporate operations.
Customer Compliance Support – Assist in responding to customer security, compliance, and risk inquiries by coordinating evidence requests, completing questionnaires, and audit requests.
Security Risk Program – Coordinate with the risk team as issues are reported that require documentation or control updates to reduce risk through continual improvements.
Bachelor’s degree or equivalent professional experience.
Minimum of 2 years of experience supporting compliance, risk management, governance, or a related operational function.
Hands-on experience administering, implementing, or utilizing Governance, Risk, and Compliance (GRC) or Integrated Risk Management (IRM) platforms.
Written skills to demonstrate ability to translate complex requirements in a clear, concise manner in communications and documentation.
Strong analytical, organizational, and problem-solving skills, with the ability to manage multiple priorities and deadlines in a fast-paced environment.
Proven ability to build and maintain collaborative relationships across a diverse group of stakeholders, including technology teams, operational teams, auditors, and corporate support functions.
Preferred Knowledge & Experience
Working knowledge of one or more of the following frameworks, standards, and regulatory requirements:
HITRUST
SOC 1
SOC 2
PCI DSS
ISO 27001
ISO 22301
FISMA / NIST 800-53
NIST Cybersecurity Framework (CSF)
DoD Cybersecurity Maturity Model Certification (CMMC)
ADDITIONAL QUALIFICATIONS
The ideal candidate may hold, or be actively pursuing, one or more of the following certifications:
Certified Information Systems Security Professional (CISSP)
GIAC Security Essentials Certification (GSEC)
Certified Information Systems Auditor (CISA)
Certified in Risk and Information Systems Control (CRISC)
GIAC Critical Controls Certification (GCCC)
KNOWLEDGE, SKILLS, AND ABILITIES
In addition to QTS Core Values, the successful candidate will demonstrate:
Quality Decision Making – Strong analytical skills to evaluate risks, assess control solutions, and synthesize diverse inputs from cross-functional stakeholders.
Consultative Communication – Builds trusted relationships and effectively communicates with technical and non-technical stakeholders to achieve compliance and risk management objectives
Team Collaboration – – Establishes and maintains positive working relationships across business functions, management teams, and risk/compliance stakeholders. Adapts to diverse perspectives and works collaboratively to drive continuous improvement and program success.
Technical Aptitude – Demonstrates curiosity and a commitment to professional growth by continuously expanding knowledge of compliance, risk, regulatory requirements, and enabling technologies. Quickly adapts to evolving tools, processes, and business needs.
We conform to all the laws, statutes, and regulations concerning equal employment opportunities and affirmative action. We strongly encourage women, minorities, individuals with disabilities and veterans to apply to all of our job openings. We are an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, gender identity, or national origin, age, disability status, Genetic Information & Testing, Family & Medical Leave, protected veteran status, or any other characteristic protected by law. We prohibit retaliation against individuals who bring forth any complaint, orally or in writing, to the employer or the government, or against any individuals who assist or participate in the investigation of any complaint or discrimination claim.
The "Know Your Rights" Poster is included here:
Know Your Rights (English)
Know Your Rights (Spanish)
The pay transparency policy is available here:
Pay Transparency Nondiscrimination Poster-Formatted
QTS is committed to working with and providing reasonable accommodations to individuals with disabilities. If you need a reasonable accommodation because of a disability for any part of the employment process, please send an e-mail to [email protected] and let us know the nature of your request and your contact information.
Skills Required
- Bachelor's degree or equivalent professional experience.
- Minimum of 2 years of experience supporting compliance, risk management, governance, or a related operational function.
- Hands-on experience administering, implementing, or utilizing Governance, Risk, and Compliance (GRC) or Integrated Risk Management (IRM) platforms.
- Written communication skills to translate complex requirements clearly and concisely.
- Strong analytical, organizational, and problem-solving skills with ability to manage multiple priorities and deadlines.
- Proven ability to build and maintain collaborative relationships across technical and operational stakeholders.
- Ability to travel up to 15% to data center locations.
- Working knowledge of HITRUST.
- Working knowledge of SOC 1.
- Working knowledge of SOC 2.
- Working knowledge of PCI DSS.
- Working knowledge of ISO 27001.
- Working knowledge of ISO 22301.
- Working knowledge of FISMA / NIST 800-53.
- Working knowledge of NIST Cybersecurity Framework (CSF).
- Working knowledge of DoD Cybersecurity Maturity Model Certification (CMMC).
- Certifications such as CISSP, GSEC, CISA, CRISC, or GCCC (held or actively pursuing).
QTS Data Centers Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about QTS Data Centers and has not been reviewed or approved by QTS Data Centers.
-
Healthcare Strength — Health coverage is described as robust, with options reportedly including fully paid medical, dental, and vision premiums in some plans alongside company‑paid disability and life insurance. Feedback suggests these offerings help offset concerns about base pay in certain roles.
-
Leave & Time Off Breadth — Time off programs are expansive, combining tiered PTO, 11 paid holidays with additional floating days, four paid volunteer days, and a formal sabbatical program. Parental leave and occasional work‑from‑home allowances further broaden time‑away flexibility for eligible roles.
-
Retirement Support — Retirement benefits include immediate vesting on 401(k) with company matching. Feedback suggests this is a dependable pillar of the total rewards package.
QTS Data Centers Insights
What We Do
QTS Realty Trust, LLC. is a leading provider of data center solutions across a diverse footprint spanning more than 9 million square feet of owned mega scale data center space throughout North America. Through its software-defined technology platform, QTS is able to deliver secure, compliant infrastructure solutions, robust connectivity and premium customer service to more than 1,100 leading hyperscale technology companies, enterprises, and government entities
.png)








