Information Security Specialist; Cyber security analysis
Listed on 2026-07-22
-
IT/Tech
Cybersecurity, Information Security & Data Protection
Information Security Specialist (Cyber security analysis)
Job Title: “Information Security Specialist” (Cyber security analysis)
Location: Bellevue WA
Duration: 9+ Months (with high possibility of extending into full time)
Job Description:
This position is in Corporate Information Security and under the direction of the Manager, Third-Party Cybersecurity Assessments. The Cybersecurity Assessment Analyst will perform cybersecurity assessments on new and existing third parties, construct detailed and summary reports, and work with Subject Matter Experts to develop and apply risk assessment criteria aligned with policy. The Analyst will collaborate with Third‑Party Risk Management, Privacy and Legal Counsel, Procurement and Contract Managers, Compliance, and Business Owners to develop and maintain an internal service model that informs the business of key risks in a timely manner.
Responsibilities- Coordinate the development of information security policies, standards and procedures; work with key IT offices, data custodians and governance groups, ensuring compliance with external requirements and disseminating knowledge to the user community.
- Develop and deliver an education and training program on information security and privacy matters for employees, authorized users, and vendors.
- Serve as the company compliance officer for state and federal information security policies and regulations; collaborate with internal audit, SOX compliance, legal and HR on compliance issues and prepare required reports for external agencies.
- Develop and implement an Incident Reporting and Response System to address security incidents, respond to alleged policy violations and complaints from external parties.
- Serve as the official company contact point for information security, privacy and copyright infringement incidents, maintaining relationships with law enforcement entities.
- Develop and implement an ongoing risk assessment program targeting information security and privacy matters; recommend methods for vulnerability detection and remediation, and oversee vulnerability testing.
- Talent management, results focus and inspirational leadership.
- Conduct third‑party cybersecurity risk assessments, applying established criteria.
- Support assessment team with quality assurance reviews over work product and reporting.
- Collaborate with internal partners and third parties to mitigate and otherwise resolve third‑party cyber risks.
- Consistently deliver on commitments, deadlines and objectives while remaining in scope and leveraging appropriate tools, methods, frameworks, and professional standards.
- Demonstrate consistent credibility with business partners and leadership while recommending initiatives, identifying gaps and potential issues.
- Show the ability to work independently and represent the services of the department professionally.
- Demonstrate the ability to appropriately influence business decisions and exercise professional judgment in selecting methods and techniques.
- Solid background both educationally and via professional experience; no less than 3 years in business operations, project/program management, finance, risk management, information security, business analytics or similar.
- Experience in large companies and/or complex environments, or providing professional consulting services for them.
- Strong problem‑solving and analytical skills; ability to synthesize and summarize complex data into concise recommendations and reports.
- Excellent business writing and professional oral communication skills.
- Ability to balance multiple priorities and drive projects to completion in a fast‑paced environment with only periodic supervision.
- Collaborative team player with strong cross‑functional relationship skills.
- Proficient with MS Office products (Word, Excel, PowerPoint, Visio) and other business software for preparing reports, memos, summaries and analyses.
- Strong analytical and quality management mindset, designing workflows and procedures, and improving performance through feedback.
- Planning and organizing ability; prioritizes and sets realistic action plans to achieve goals.
- Professionalism; performs well under pressure and keeps commitments.
- Career growth focus on cyber security auditing with potential advancement in engineering or threat analysis roles.
- Self‑directed team player experience in Agile environments.
Equivalent experience is acceptable.
Desired Certifications- CISA (Certified Information Systems Auditor)
- GSEC (GIAC Security Essentials Certification)
- CompTIA – Security+
- ECSA – EC‑Council Certified Security Analyst
- SSCP (Systems Security Certified Practitioner)
- Six Sigma, PMP or Agile certificates.
All your information will be kept confidential according to EEO guidelines.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).