Job Title: IT Security Analyst
Location: Richmond, VA (Hybrid)
Employment Type: Contract
Interview Type: Virtual / In-Person
Position Overview
We are seeking a highly experienced
IT Security Analyst IV to lead enterprise-level information security initiatives and ensure effective protection of sensitive data and IT systems. This senior-level role is responsible for overseeing security controls, managing complex security projects, driving incident response activities, and developing security policies and standards. The ideal candidate will bring extensive experience in cybersecurity leadership, risk management, compliance, and security governance.
Key Responsibilities
- Lead and oversee enterprise information security operations, ensuring security controls are effective and aligned with organizational and regulatory requirements.
- Monitor IT systems and workflows to identify risks, vulnerabilities, or security gaps and recommend corrective actions.
- Lead and coordinate security incidents response efforts, ensuring timely containment, investigation, and resolution.
- Develop, implement, and maintain information security policies, standards, procedures, and guidelines, aligning with industry best practices.
- Plan and execute security audits, data classification assessments, and remediation strategies across the organization.
- Collaborate with internal audit teams, security stakeholders, and technology leadership to manage cybersecurity risks and mitigation plans.
- Conduct research and stay current on emerging threats, security technologies, and regulatory changes.
- Manage security awareness programs and educate users on cybersecurity best practices.
- Prepare and maintain security documentation, including reports, compliance materials, and communications.
- Provide guidance and leadership to technical teams and junior security staff.
Required Qualifications
- 12+ years of experience managing complex IT security initiatives and working independently in a senior-level capacity.
- 7+ years of professional experience in cybersecurity, information security, or related technical fields.
- Demonstrated experience in security governance, compliance, risk assessment, and vulnerability management.
- Strong knowledge of security frameworks and standards (e.g., NIST, ISO, SOC, CIS, or similar).
- Proven experience leading incident response, audit processes, and remediation efforts.
- Excellent communication, documentation, and leadership skills.
Preferred Qualifications
- Advanced degree or specialized certifications (e.g., CISSP, CISM, CISA, CRISC, CEH, or similar).
- Experience working in the public sector or highly regulated environments.
- Hands-on experience supporting large-scale, enterprise IT security programs.
Required/Desired Skills
Skill
Required /Desired
Amount
Actual Years Of Experience
The individual must have experience working independently, providing leadership to others, and managing highly complex work efforts.
Required
12
The individual must have experience in IT Security or a related field.
Required
7