ISO Analyst Job at ASCENDING, Richmond, VA

QWExckdYV0dhWmdlNkxWN25BZFgvNExlZlE9PQ==
  • ASCENDING
  • Richmond, VA

Job Description

Information Security Analyst
Hybrid (3 Days On Site, 2 Days Remote) - Richmond VA
Duration: 24 months renewable contract

Job Summary:
We is seeking an Information Security Analyst for a two-year contract, offering a hybrid work environment (three days onsite, two days remote). The Information Security Analyst will play a key role in advancing cybersecurity and privacy awareness across the organization. This role will participate in the creation and maintenance of Information Security and privacy policies and standards and contribute to the efforts of the Information Security Office (ISO) and related security projects.

Key Responsibilities:

  • Participate in Information Security and Privacy initiatives across all business units and vendor engagements to ensure proper security controls are implemented and maintained.
  • Enter and update information security records, documentation, and data within the Governance Risk and Compliance (GRC) system.
  • Collaborate with business stakeholders to develop and maintain information System Security Plans (SSP).
  • Represent the Information Security Office in project management-led initiatives to ensure information security requirements are considered in key projects.
  • Work cross-functionally with teams and end-users to understand business needs, facilitate compliance, and communicate clearly.
  • Assist in developing, maintaining, and updating information security standards and processes, occasionally performing research from reputable industry sources.
  • Contribute to controls documentation, including drafting narratives, creating system diagrams, and populating risk assessment templates for business approval.
  • Assist in the review of contracts and vendor documentation to verify adequate information security protection measures are in place.
Qualifications:
  • Minimum three (3) years of demonstrated experience in Information Security, specifically in governance, risk, and compliance.
  • In-depth understanding of information security principles, technologies, and practices.
  • Strong knowledge of IT infrastructure planning, implementation, and management.
  • Ability to organize work, set priorities, meet deadlines, and operate independently.
  • Experience with security frameworks such as NIST, ISO 27001, COBIT, or similar.
  • Exceptional organizational skills and attention to detail.
  • Ability to adapt to changing priorities and ambiguous environments.
  • Experience drafting and maintaining Information Security and Privacy policies, standards, and procedures.
  • Proficient in interpreting security documentation, flow diagrams, and process maps.
  • Understanding of general contract terms and the ability to review security clauses.
  • Ability to create diagrams, flowcharts, and spreadsheets with standard desktop software.
  • Strong written and verbal communication skills for various audiences.
Preferred Qualifications:
  • Bachelor's degree in Computer Science, Information Systems, or related field; CISA, CISSP, or similar certifications.
  • Experience in the financial services sector.
  • Familiarity with cloud and application security controls.
  • Working knowledge of information security regulatory compliance (e.g., GLBA, GDPR, PCI).
  • Awareness of privacy regulations (e.g., GDPR, CCPA, VCDPA).

All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability or protected veteran status.

Job Tags

Contract work, Work at office, Remote work,

Similar Jobs

American Traveler

Travel NICU Registered Nurse Job at American Traveler

 ...including approximately 8 hours of EPIC training First-time travelers will be considered...  ..., vasopressors, neonatal abstinence, phlebotomy, bubble CPAP, HFNC, and ventilators EPIC...  ...(k) Plan ~ Weekly Payroll Deposit ~ Free Online CEUs ~ Generous Housing... 

IBM Computing

Senior Software Engineer, Product Engineering (Boundary) - HashiCorp Job at IBM Computing

 ...client experiences, with a focus on delivery, excellence, and obsession over customer outcomes. This position involves contributing to HashiCorp's offerings, now part of IBM, which empower organizations to automate and secure multi-cloud and hybrid environments. You will... 

Bergeys Truck Parts Inc

Delivery Driver Job at Bergeys Truck Parts Inc

 ...Discount Summary: Delivers and picks up parts and equipment. Location: Nottingham,...  ...coordinate any last-minute pick-ups or deliveries. Checks with the body shop each day to...  ...old Non CDL driving role Valid Driver's License Successful completion of background... 

West Virginia Staffing

Janitor Job at West Virginia Staffing

 ...duties, such as cleaning floors, shampooing rugs, washing walls and glass, and removing rubbish. Duties may include tending furnace and boiler, performing routine maintenance activities, notifying management of need for repairs, and cleaning snow or debris from sidewalk.... 

Ameri-Force

Pipe Welder Job at Ameri-Force

 ...take-outs and piping measurements. Job Type: Full-time Pay: $25.00 +Per hour BASED OFF OF EXP ~ Competitive salary based on experience ~4 day work week ~ Varied insurance offerings with company match ~ Professional development opportunities ~ Positive and...