Information Security Analyst (Risk Management and Compliance)

Jobs via Dice • United State
Remote
Apply
AI Summary

Conduct risk assessments, monitor controls, and ensure compliance with NIST and related frameworks. Develop and maintain security policies, standards, and procedures. Lead incident response and remediation activities.

Key Highlights
Risk assessment and incident response
Compliance with NIST and related frameworks
Security policy development and maintenance
Technical Skills Required
SIEM IDS/IPS Firewalls Endpoint protection Vulnerability management NIST Cybersecurity Framework 2.0 ISO 27001 CIS Controls
Benefits & Perks
$35-$36/hr pay rate

Job Description


Dice is the leading career destination for tech experts at every stage of their careers. Our client, Apetan Consulting, is seeking the following. Apply via Dice today!

Information Security Analyst 100% Remote

Notes from call:

  • Analyst-level resource (not engineer) with risk assessment, incident response, and compliance exposure; someone operationally focused who can support audits, monitoring, and reporting.
  • Government/municipal experience or veteran background preferred (they specifically like military profiles, but not mandatory).
  • Strong written communication and ability to liaise across IT, Legal, and business units, someone who can "bridge the gap" between security and operations.

Information Security Analyst

  • Client: Presidio
  • End Client: The City of Stamford (Government)
  • Location: Stamford, CT (5 days onsite)-Need locals only
  • Duration: 6 months to start, potential extension or FTE conversion
  • Hours: 35-hour work week
  • Interview Process: Two virtual interviews, possible onsite final
  • C2C Pay Rate: $35-$36/hr

Role Overview:

Our client is seeking an Information Security Analyst to strengthen their end client's security posture. Reporting to the CIO, this role will conduct risk assessments, monitor controls, ensure compliance with NIST and related frameworks, and advise on cybersecurity threats.

Key Responsibilities:

  • Develop and maintain security policies, standards, and procedures.
  • Conduct risk assessments, vulnerability scans, and SOC audits.
  • Maintain the City's risk taxonomy, register, and control inventory.
  • Lead incident response and remediation activities.
  • Monitor and analyze security events across enterprise systems.
  • Support SIEM, IDS/IPS, DLP, and endpoint protection tools.
  • Provide employee security awareness training.
  • Ensure compliance with federal regulations (e.g., NIST, FISMA).

Experience & Skills:

  • 3-5 years in information security, risk management, or IT security operations.
  • Experience with SIEM, IDS/IPS, firewalls, endpoint protection, and vulnerability management.
  • Knowledge of frameworks such as NIST Cybersecurity Framework 2.0, ISO 27001, CIS Controls.
  • Strong analytical, communication, and problem-solving skills.
  • Veteran/military background preferred, not required.

Subscribe our newsletter

New Things Will Always Update Regularly