NextRaiseNextRaiseFind jobs
Sign inSign up free
Jobs / Security Analyst in United States of America
13 days ago
Apply with autofill
Apply with autofill
Ascendingdc·13 days ago
13 days ago

Information Security Analyst (Hybrid)

Richmond, United States of AmericaHybridMid · 2-5 yearsSecurity Analyst

Sign up free to see how well your resume matches this role.

Boost your chances at ascendingdc

How you compare FREE

?
Your scoreYour score: not yet known
→
48
Top 10%Top 10%: 48 out of 100

Top 10% of NextRaise users matched against Security Analyst roles in United States.

Must-have skills for this role

  • information security
  • governance, risk, and compliance (grc)
  • nist
  • iso 27001

PDF or DOCX · no account needed

Apply faster with autofill FREEThe NextRaise extension autofills your application in one click.careers.example.com/applyAutofillingFull namePriya SharmaEmailpriya.sharma@example.comPhone+49 30 1234567LocationBerlGet the extension

What you'll do

  • Participate in Information Security and Privacy efforts across all business areas and vendor engagements to ensure that appropriate security controls are in place and adhered to by all parties.
  • Work within a Governance, Risk, and Compliance (GRC) system to add and update information security records and documentation.
  • Partner with business stakeholders to develop and maintain Information System Security Plans (SSP).
  • Represent the Information Security Office in PMO-led projects to ensure significant projects have appropriate ISO representation.
  • Collaborate across teams to understand business challenges, develop tailored solutions that provide value, facilitate compliance, and ensure clear communication.
  • Assist in the development and maintenance of information security standards and processes, including conducting research as needed.
  • Assist with controls documentation, including information system diagramming, populating risk assessment templates, and drafting control narrative documentation for business approval.
  • Review contracts, agreements, and vendor documentation to ensure adequate information security protections are in place.

What they're looking for

  • At least 3 years of demonstrated experience in Information Security concepts related to governance, risk, and compliance.
  • Extensive knowledge of information security principles and practices.
  • Deep understanding of methods applied to information technology infrastructure planning, implementation, and management.
  • Strong organizational skills with the ability to set priorities, meet established deadlines, and follow up on assignments with minimal supervision.
  • Familiarity or experience with security frameworks such as NIST, ISO 27001, or COBIT.
  • Excellent attention to detail and organizational skills.
  • Ability to adapt to changing situations and prioritize tasks as needed.
  • Experience drafting Information Security and Privacy policies, standards, and procedures.
  • Ability to interpret security documentation, including flow diagrams and process maps.
  • Knowledge of contract terms and conditions.
  • Proficiency in creating diagrams, flowcharts, and spreadsheets using desktop software.
  • Strong written communication skills with the ability to convey complex security concepts to various audiences.

Nice to have

  • Bachelor's degree in Computer Science, Information Systems, or equivalent.
  • Relevant security certifications such as CISA, CISSP, or an equivalent certification.
  • Previous experience in the financial services industry is preferred.
  • Knowledge of controls related to cloud security and application security.
  • Knowledge of Information Security regulatory compliance (e.g., GLBA, GDPR, PCI, etc.).
  • Familiarity with various privacy regulations (e.g., GDPR, CCPA, VCDPA).

Summarised by NextRaise from the employer’s description, which follows in full below.

Full description from employer

Title: Information Security Analyst
Location: Hybrid in Richmond, VA (2~3 days onsite)
Term: 2 Years Contract

Available for W2 or 1099, No C2C

Job Description:

This important role will support information security across all Virginia Housing programs, projects, IT systems, and applications. The position is assigned to projects and initiatives with security and privacy components. The Information Security Analyst will assist in conducting cybersecurity and privacy awareness throughout Virginia Housing and help create and maintain the organization’s Information Security and privacy policies. Additionally, the Information Security Analyst will collaborate with the Information Security Office (ISO) on various security-related projects.

Key Responsibilities:

  • Participate in Information Security and Privacy efforts across all business areas and vendor engagements to ensure that appropriate security controls are in place and adhered to by all parties.
  • Work within a Governance, Risk, and Compliance (GRC) system to add and update information security records and documentation.
  • Partner with business stakeholders to develop and maintain Information System Security Plans (SSP).
  • Represent the Information Security Office in PMO-led projects to ensure significant projects have appropriate ISO representation.
  • Collaborate across teams to understand business challenges, develop tailored solutions that provide value, facilitate compliance, and ensure clear communication.
  • Assist in the development and maintenance of information security standards and processes, including conducting research as needed.
  • Assist with controls documentation, including information system diagramming, populating risk assessment templates, and drafting control narrative documentation for business approval.
  • Review contracts, agreements, and vendor documentation to ensure adequate information security protections are in place.
Required Qualifications:
  • At least 3 years of demonstrated experience in Information Security concepts related to governance, risk, and compliance.
  • Extensive knowledge of information security principles and practices.
  • Deep understanding of methods applied to information technology infrastructure planning, implementation, and management.
  • Strong organizational skills with the ability to set priorities, meet established deadlines, and follow up on assignments with minimal supervision.
  • Familiarity or experience with security frameworks such as NIST, ISO 27001, or COBIT.
  • Excellent attention to detail and organizational skills.
  • Ability to adapt to changing situations and prioritize tasks as needed.
  • Experience drafting Information Security and Privacy policies, standards, and procedures.
  • Ability to interpret security documentation, including flow diagrams and process maps.
  • Knowledge of contract terms and conditions.
  • Proficiency in creating diagrams, flowcharts, and spreadsheets using desktop software.
  • Strong written communication skills with the ability to convey complex security concepts to various audiences.

Preferred Qualifications:

  • Bachelor's degree in Computer Science, Information Systems, or equivalent.
  • Relevant security certifications such as CISA, CISSP, or an equivalent certification.
  • Previous experience in the financial services industry is preferred.
  • Knowledge of controls related to cloud security and application security.
  • Knowledge of Information Security regulatory compliance (e.g., GLBA, GDPR, PCI, etc.).
  • Familiarity with various privacy regulations (e.g., GDPR, CCPA, VCDPA).

Thanks for applying!

Company

Ascendingdc
Richmond, United States of America

Company facts come from this company's own listings. We only show what the postings themselves carry.

Sourced from Ascendingdc's careers site·first seen 9 Sept 2026·last verified 9 Sept 2026·How we source jobs

Similar jobs

  • Detection Design Cyber Security Analyst - Assistant Vice President at Deutsche BankJacksonville, United States of America–match not yet calculated
  • Sr. Principal Classified Cybersecurity Analyst - Polygraph at ngcAurora, United States of America–match not yet calculated
  • Cyber Security Operations Analyst at aristocratLas Vegas, United States of America–match not yet calculated
  • Senior Detection Engineering & Threat Hunting Analyst at huntressUnited States of America–match not yet calculated
  • Security Analyst III (Afternoons) at deepwatchincTampa Hybrid, United States of America–match not yet calculated

Browse more jobs

  • Security Analyst jobs in United States
  • Security Engineer jobs in United States
  • Cloud Security Engineer jobs in United States
  • Penetration Tester jobs in United States
  • Security Analyst jobs in India
  • Security Analyst jobs in United Kingdom