logo inner

ISO Analyst

LocationRichmond, Virginia, United States
TypeOnsite

Information Security AnalystHybrid (3 Days On Site, 2 Days Remote) - Richmond VADuration: 24 months renewable contractJob Summary:We is seeking an Information Security Analyst for a two-year contract, offering a hybrid work environment (three days onsite, two days remote). The Information Security Analyst will play a key role in advancing cybersecurity and privacy awareness across the organization. This role will participate in the creation and maintenance of Information Security and privacy policies and standards and contribute to the efforts of the Information Security Office (ISO) and related security projects.Key Responsibilities:


  • Participate in Information Security and Privacy initiatives across all business units and vendor engagements to ensure proper security controls are implemented and maintained.
  • Enter and update information security records, documentation, and data within the Governance Risk and Compliance (GRC) system.
  • Collaborate with business stakeholders to develop and maintain information System Security Plans (SSP).
  • Represent the Information Security Office in project management-led initiatives to ensure information security requirements are considered in key projects.
  • Work cross-functionally with teams and end-users to understand business needs, facilitate compliance, and communicate clearly.
  • Assist in developing, maintaining, and updating information security standards and processes, occasionally performing research from reputable industry sources.
  • Contribute to controls documentation, including drafting narratives, creating system diagrams, and populating risk assessment templates for business approval.
  • Assist in the review of contracts and vendor documentation to verify adequate information security protection measures are in place.Qualifications:

  • Minimum three (3) years of demonstrated experience in Information Security, specifically in governance, risk, and compliance.
  • In-depth understanding of information security principles, technologies, and practices.
  • Strong knowledge of IT infrastructure planning, implementation, and management.
  • Ability to organize work, set priorities, meet deadlines, and operate independently.
  • Experience with security frameworks such as NIST, ISO 27001, COBIT, or similar.
  • Exceptional organizational skills and attention to detail.
  • Ability to adapt to changing priorities and ambiguous environments.
  • Experience drafting and maintaining Information Security and Privacy policies, standards, and procedures.
  • Proficient in interpreting security documentation, flow diagrams, and process maps.
  • Understanding of general contract terms and the ability to review security clauses.
  • Ability to create diagrams, flowcharts, and spreadsheets with standard desktop software.
  • Strong written and verbal communication skills for various audiences.Preferred Qualifications:

  • Bachelor's degree in Computer Science, Information Systems, or related field; CISA, CISSP, or similar certifications.
  • Experience in the financial services sector.
  • Familiarity with cloud and application security controls.
  • Working knowledge of information security regulatory compliance (e.g., GLBA, GDPR, PCI).
  • Awareness of privacy regulations (e.g., GDPR, CCPA, VCDPA).

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.

Your tracker settings

We use cookies and similar methods to recognize visitors and remember their preferences. We also use them to measure ad campaign effectiveness, target ads and analyze site traffic. To learn more about these methods, including how to disable them, view our Cookie Policy or Privacy Policy.

By tapping `Accept`, you consent to the use of these methods by us and third parties. You can always change your tracker preferences by visiting our Cookie Policy.

logo innerThatStartupJob
Discover the best startup and their job positions, all in one place.
Copyright © 2025