Information Security Analyst

FedTec
Richmond, VA, United States
Full-time

FedTec Overview :

FedTec is a Woman-Owned Small Business with headquarters in Reston, VA. However, FedTec is more than just a company we are a dedicated team of visionary individuals who understand the power of transformation.

With our unwavering commitment to innovative technology and forward-focused methods, we empower government agencies to fulfill their missions successfully with our capabilities in Digital Transformation, and Cyber Security.

Our strategy is rooted in in-depth advising and a unique shoulder-to-shoulder mission experience, all geared towards enabling our clients, their agencies, and every American to thrive.

We use the same approach as our employees, building meaningful and lasting relationships to meet their evolving needs and help them grow.

We are excited to welcome you to our family.

Position : Information Security Analyst

Location : Richmond, VA, 23220

About the Opportunity :

Fedtec is looking for Information Security Analyst who will support information security across all Virginia Housing programs, projects, IT systems and application and is assigned to projects / initiatives with security and privacy components.

The Information Security Analyst will assist in conducting cyber security & privacy awareness and education throughout Virginia Housing.

The Information Security Specialist is also responsible for assisting with creating and maintaining all of Virginia Housing's Information Security and privacy policies and standards.

The Information Security Specialist will be part of ISO efforts and assist with other security related projects.

Responsibilities will include :

  • Participating in Information Security and Privacy efforts across all business areas and vendor engagements to ensure the most appropriate security controls are in place and adhered to by all parties.
  • Working within a Governance Risk and Compliance (GRC) system to add and update information security information, records, and documentation.
  • Partnering with business stakeholders to develop and maintain information System Security Plans (SSP).
  • Representing the Information Security Office in PMO lead projects to ensure significant projects have appropriate ISO representation.
  • Partnering across teams, collaborating with users to understand business challenges, developing options tailored to providing value, facilitating compliance, and providing timely and clear communications.
  • Assisting with development and maintenance of information security standards and processes, including conducting occasional research from various reputable sources.
  • Assisting with controls documentation, including information system diagraming, populating risk assessment templates and drafting control narrative documentation for business approval.
  • Assisting in reviewing contracts, agreements, and other vendor documentation to assure adequate information security protections are in-place.

Qualified candidates must possess :

  • At least (3) years of demonstrated experience in Information Security concepts related to governance, risk and compliance.
  • Extensive knowledge of the principles and practices of information security.
  • Extensive knowledge of the principles and methods applied to information technology infrastructure planning, implementation, and management.
  • Ability to organize work, set priorities, meet established deadlines, and follow up on assignments with a minimum of direction.
  • Familiarity or experience working with a security framework (NIST, ISO 27001, COBIT, etc.).
  • Superior organizational skills and attention to detail.
  • Ability to continually prioritize and change or adapt to ambiguous situations.
  • Experience drafting Information Security and Privacy policies, standards, and procedures.
  • Ability to interpret and understand security documentation including flow diagrams and process maps.
  • Ability to understand general contract terms and conditions.
  • Ability to create diagrams, flowcharts, and spreadsheets using desktop software.
  • Ability to write clear and concisely to various audiences.

Preferred experience includes :

  • Bachelor's degree in Computer Science or Information Systems or equivalent.
  • Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP), or equivalent information security certification is preferred.
  • Previous experience working in the financial services industry is preferred.
  • Knowledge of controls related to cloud security and application security.
  • Knowledge of Information Security regulatory compliance (e.g., GLBA, GDPR, PCI, etc.).
  • Knowledge of various privacy regulations (e.g., GRPR, CCPA, VCDPA, etc.).

When You Join FedTec, You Are Joining a Family! We take pride in our work and the true and transparent relationships we build with our employees and partners.

We believe that positive energy attracts like-minded individuals, which is why we have such exceptional people on our team.

Just as you'd do for your own family, we prioritize your safety, health, and happiness. That's why we've created the FedTec Total Well-Being program, offering benefits like :

  • Comprehensive medical, dental, and vision plans. These plans encompass a range of beneficial features, such as Telehealth virtual care programs, and access to resources to support your physical and mental well-being.
  • Generous paid time off for relaxation and rejuvenation.
  • Financial security through 401k, company-paid short and long-term disability, life insurance, and additional voluntary coverage.
  • Support for your life and family with access to an Employee Assistance Program, Pet Insurance, and Prepaid Legal services.
  • Recognition and growth opportunities through our Rewards & Recognition and Learning & Development programs.
  • Our newest addition, the FedTec Fit Program, features an on-staff Fitness Coach who provides personal and group sessions, company fitness challenges, and ongoing support for your fitness goals.

At FedTec we embrace the power of diversity, fostering a culture where varied thoughts, ideas, and perspectives empower our employees and partners to thrive.

We are an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, disability, or status as a protected veteran and we maintain a drug-free workplace to ensure a safe and healthy environment for all.

  • If you feel that your qualifications, talents, and values align with our culture, we welcome you to apply by submitting your resume today!
  • 6 days ago
Related jobs
Promoted
James River Management Company
Richmond, Virginia

Information Security Operations Analyst II (Information Technology). The Information Security Operations Analyst II plays a crucial role in tactical efforts to ensure the security of company systems and data. The Security Operations Analyst II will often partner with IT and business teams to drive c...

Promoted
FedTec
Richmond, Virginia

Fedtec is looking for Information Security Analyst who will support information security across all Virginia Housing programs, projects, IT systems and application and is assigned to projects/initiatives with security and privacy components. Certified Information Systems Auditor (CISA), Certified In...

Thomson Reuters
Richmond, Virginia

IS Policy & Governance Analyst. Promote awareness of IT security and best practices across the organization. IS Policy & Governance Analyst,. Together, with the professionals and institutions we serve, we help uphold the rule of law, turn the wheels of commerce, catch bad actors, report the facts, a...

Shentel
Richmond, Virginia

They do so by leading our advanced security monitoring, incident / event investigation and analysis, leading roleplay tabletop events and helping to run "purple team" exercises, contributing to documentation and playbooks to ensure repeatable security-focused processes, taking the lead on security a...

ASCENDING
Richmond, Virginia

The Information Security Analyst will assist in conducting cybersecurity and privacy awareness throughout Virginia Housing and help create and maintain the organization’s Information Security and privacy policies. Additionally, the Information Security Analyst will collaborate with the Informa...

Procession Systems
Northern Virginia, VA, US

The Authorization and Accreditation Officer will work with others on program security team to provide for all aspects of security . Security documentation to include, but not limited to, system Security Plans (SSPs), Plan of Actions and Milestones (POA&Ms), and any other artifacts to support the Bod...

McGuireWoods
Richmond, Virginia

The person in this role will be responsible for identifying and mitigating potential security incidents and alerts, day-to-day administration of information security tools, assessing the firm’s security practices and configurations, and promoting security awareness across the firm. The Senior Inform...

Promoted
Enterprize Software
Northern, Virginia

Security Clearance: TS/SCI with an appropriate agency Polygraph is required. ...

Promoted
Hispanic Technology Executive Council
Richmond, Virginia

Provides subject matter expertise and consulting services on a range of technologies and assists Technical Analysts and Infrastructure Engineers to ensure that technology solutions comply with enterprise system design and engineering standards. In depth engineering experience in Threat solutions, in...

Promoted
Innova Solutions
Richmond, Virginia

Innova Solutions has a client that is immediately hiring for an .Position Type: Full-time Contract .Location: Richmond, VA (Hybrid)....