Agero
Cybersecurity Governance Analyst
Job Description
About Agero:
Wherever drivers go, we’re leading the way. Agero’s mission is to rethink the vehicle ownership experience through a powerful combination of passionate people and data-driven technology, strengthening our clients’ relationships with their customers. As the #1 B2B, white-label provider of digital driver assistance services, we’re pushing the industry in a new direction, taking manual processes, and redefining them as digital, transparent, and connected. This includes: an industry-leading dispatch management platform powered by Swoop; comprehensive accident management services; knowledgeable consumer affairs and connected vehicle capabilities; and a growing marketplace of services, discounts and support enabled by a robust partner ecosystem. The company has over 150 million vehicle coverage points in partnership with leading automobile manufacturers, insurance carriers and many others. Managing one of the largest national networks of service providers, Agero responds to approximately 12 million service events annually. Agero, a member company of The Cross Country Group, is headquartered in Medford, Mass., with operations throughout North America. To learn more, visit https://www.agero.com/.
Note: For our technical positions, we love to get you started in person! You may be required to travel to Medford for your initial onboarding. Don't worry about the logistics – once you're hired, we handle all travel arrangements and expenses for you.
Role Description and Mission:
The Cybersecurity Governance Analyst is responsible for developing and maintaining Cybersecurity Security policies and standards across the enterprise. Partners with key IT leaders to ensure the information is updated and accurate. Drives security awareness across the organization. Coordinates security assessments, identifies risks and recommends appropriate corrective action.
Key Outcomes:
- Assist in identifying, developing, and maintaining enterprise cybersecurity policies and standards, aligning processes with established frameworks such as ISO 27001, PCI-DSS, and SOC 2.
- Perform vendor security and privacy risk assessments, evaluate control environments, monitor findings, and track ongoing vendor remediation efforts.
- Respond to client security questionnaires, coordinate evidence collection, and support customer trust reviews and external audits.
- Provide guidance on core security controls—including access management, data encryption, logging, and business continuity—while investigating deficiencies to recommend and track corrective actions.
- Act as a liaison between business units and IT/Engineering teams to support data security implementations and drive enterprise-wide security awareness programs.
- Partner with IT and Engineering leaders to create and refine the enterprise security architecture while supporting security control assessment strategies.
Skills, Education and Experience:
- 3-5 years in information security compliance with hands-on experience to industry compliance frameworks such as PCI-DSS, SOC 2, or ISO 27001. Experience maintaining compliance documentation, ability to map controls to technical implementations and evaluate evidence quality.
- Demonstrates the ability to identify, evaluate, and mitigate security risks across application, network, endpoint, and cloud environments—including DevSecOps practices and emerging technologies like AI—while ensuring strict alignment with enterprise security policies.
- Possesses a comprehensive understanding of industry-standard control frameworks (e.g., ISO 27001, PCI-DSS, SOC 2) to evaluate controls, manage evidence collection, and maintain enterprise-wide compliance.
- Skilled at building productive relationships across all organizational levels, including IT management, technical staff, external vendors, and consultants, to drive security awareness and risk remediation.
- Demonstrates strong written and oral communication skills; adept at authoring technical documentation, delivering security presentations, and accurately completing complex client security questionnaires.
- Rapidly learns and applies advanced technical security concepts, adapting governance strategies seamlessly within a fast-paced, constantly evolving cybersecurity environment.
- Applies strong analytical skills and sound independent judgment to evaluate complex risk scenarios, pay close attention to detail, and execute effective decision-making.
Hiring In:
-
United States: Arizona, California, Florida, Georgia, Illinois, Massachusetts, Michigan, New Hampshire, New York State, New Mexico, North Carolina, Tennessee, Virginia
The anticipated closing date to submit applications for this role is 9/18/2026. Join our Greenhouse Candidate Portal to track your application status and receive instant alerts for future openings.
The base salary range presented represents the anticipated low and high end salary range for new hires in this position. Your final base salary will be determined based on factors such as work location, experience, job related skills, and relevant training and education. The range listed is just one component of the total compensation package provided by Agero to employees.
Life at Agero:
At Agero, you'll find a workplace where your unique perspective is not just welcomed, it's celebrated. We believe that our differences make us stronger, and we're committed to creating an environment where every employee feels a sense of belonging. If you're looking for a company that values your individuality, provides opportunities for growth, and champions open communication, Agero is the place for you. Join our team and help us drive the future of driver assistance, while experiencing a workplace where you can truly thrive.
Benefits Built for Well-being:
Agero’s innovation is driven by a workforce where all associates feel like they can truly thrive. Agero offers a wide range of benefits to promote well-being, encourage personal development, and ensure financial stability. Our benefits include:
- Health and Wellness: Healthcare, dental, vision, disability, life insurance, and mental health benefits for associates and their families.
- Financial Security: 401(k) plan with company match and tuition assistance to support your future goals.
- Work-Life Balance: Flexible time off, paid sick leave, and ten paid holidays annually.
- For Contact Center Roles: Accrual of up to 3 weeks Paid Time Off per year, paid sick leave, and ten paid holidays annually.
- Family Support: Parental planning benefits to assist associates through life’s milestones.
- Bonus/Incentive Programs
Join Agero and experience a workplace that invests in your success both personally and professionally.
*Applicants must be currently authorized to work in the United States on a full‑time basis. This position is not eligible for employer visa sponsorship now or in the future.
*It is unlawful in Massachusetts to required or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.