Job Description Job Title: IT Governance & Compliance Analyst (Independent Review) Work Arrangement: Remote with approximately 2 to 3 days onsite Location: Montpelier, Vermont (onsite visits); candidate may be based anywhere in the United States Employment Type: W2 Hourly Contract Engagement Type: Short-term project, approximately 7 to 8 weeks Final Interview: Position Summary Dhaka Technologies Limited Company is hiring an IT Governance & Compliance Analyst on behalf of the client, a state government agency, to perform a statutorily required Independent Review of a major health data infrastructure modernization project. The review will independently assess acquisition costs, technology architecture, implementation planning, lifecycle costs and benefits, alternatives, net operating cost impact, and security before the project is authorized to begin. The engagement is expected to start in September 2026 and requires approximately 30 to 35 working days of effort, concluding with a formal written report and an in-person presentation to the state Chief Information Officer. Work is performed remotely, with approximately 2 to 3 days onsite in Montpelier, Vermont for stakeholder interviews, risk workshops, and the final executive presentation. Key Responsibilities Review the project solicitation, vendor proposal, contracts, statements of work, project plans, budgets, and related documentation to establish a complete understanding of the proposed initiative. Plan and conduct interviews with agency leadership, project sponsors, program and technical staff, and the selected implementation vendor. Perform an acquisition cost assessment and validate the reasonableness and completeness of one-time and lifecycle costs. Evaluate the proposed technology architecture against state enterprise architecture principles, accessibility (Section 508), disaster recovery, data retention, service level, and system integration requirements. Critically assess the implementation plan, including schedule realism, project management capacity, staffing, testing, training, and change management readiness. Develop an independent lifecycle cost benefit analysis model in Microsoft Excel, including tangible and intangible costs and benefits and funding source breakdowns. Perform an impact analysis on net operating costs and determine the break-even point for the investment. Conduct an analysis of alternatives, including options rejected for financial, sustainability, or operations and maintenance reasons. Perform a security assessment aligned with NIST SP 800-53 and state cybersecurity standards, with guidance from the state security division. Identify, validate, and document project risks in a risk register; facilitate risk response discussions with stakeholders and assess the adequacy of planned responses. Author the complete Independent Review report in the state's required format and incorporate stakeholder and project management office feedback through final acceptance. Present findings and recommendations to the state Chief Information Officer, agency sponsors, and the enterprise project management office. Provide weekly progress reports to the state portfolio manager and DTLC leadership. Required Qualifications Bachelor's degree in information technology, computer science, business, or a related field, or equivalent professional experience. Ten or more years of experience in IT consulting, IT audit, IV&V, IT governance, or independent project oversight. Demonstrated experience conducting independent reviews, IV&V engagements, IT audits, readiness assessments, or comparable evaluations for government or other regulated clients. Strong financial analysis skills, including lifecycle cost modeling and cost benefit analysis in Microsoft Excel. Working knowledge of cloud data platforms, data warehouse or data lake environments, data integration and ingestion, and data governance concepts. Familiarity with information security frameworks and requirements, including NIST SP 800-53, FISMA, and HIPAA. Exceptional analytical writing skills, with experience authoring formal assessment reports or similar deliverables for executive audiences. Strong interviewing, facilitation, and executive presentation skills. Ability to travel to Montpelier, Vermont at least twice during the engagement. Authorization to work in the United States and ability to successfully complete a criminal background check prior to the start of work. Willingness to be engaged as a W2 employee of Dhaka Technologies Limited Company for the duration of the engagement; independent contractor (1099) arrangements are not permitted under this contract. Preferred Qualifications CISA, CGEIT, CRISC, CISSP, or PMP certification. Experience with healthcare data systems, all-payer claims databases, public health data, or health information exchange environments. Prior experience supporting state government IT oversight, enterprise project management office, or CIO organizations. Experience assessing projects funded by federal grants. How to Apply To apply, please submit your resume to [email protected] with the subject line "IT Governance & Compliance Analyst - Independent Review". Applications are reviewed on a rolling basis, and qualified candidates will be contacted promptly given the immediate start timeline.
Senior Analyst, Compliance
Thomsonreuters
Senior Compliance Analyst
SimplePractice
Compliance Reporting Data Analyst II
GM Financial Canada
Analyst-Compliance
American Express
Analyst-Compliance - Instructional Designer – GFCC Training, Policies, and Standards
American Express
Senior Tax and Compliance Analyst (Payroll)
Twilio