Information Security & Compliance Analyst – Entry Level
Listed on 2026-07-24
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Project Manager, IT Business Analyst
This position provides training and mentorship in information security governance, compliance, project coordination, vendor management, and technology operations. This early-career Information Security / IT Governance Coordinator role is responsible for coordinating, maintaining, monitoring, and continually improving the organization’s Information Security Management System (ISMS) while supporting technology operations, vendor management, project coordination, and software delivery initiatives.
This role serves as the primary coordinator for information security, compliance, technology vendors, and cross‑functional projects. Working closely with leadership, software development teams, cloud providers, and third‑party vendors, this position ensures security, operational efficiency, regulatory compliance, and successful project execution remain aligned with business objectives.
KEY RESPONSIBILITIES Information Security & ISMS Governance- Maintain and continually improve the Information Security Management System (ISMS)
- Maintain ISMS policies, procedures, standards, and supporting documentation
- Coordinate implementation of ISO/IEC 27001 controls
- Ensure documentation remains current, accurate, and audit‑ready
- Support continual improvement initiatives across the organization
- Coordinate information security risk assessments
- Maintain the organizational Risk Register
- Monitor implementation of corrective and preventive actions
- Support compliance with ISO/IEC 27001, HIPAA, SOC 2, customer requirements, and applicable regulations
- Monitor compliance obligations and contractual security requirements
- Manage relationships with technology vendors, service providers, and strategic partners
- Coordinate vendor onboarding and offboarding activities
- Perform vendor security and compliance reviews
- Track vendor contracts, renewals, service levels, and performance metrics
- Coordinate third‑party risk assessments
- Ensure vendors meet organizational security requirements
- Develop and maintain project schedules and milestones
- Track project risks, dependencies, and deliverables
- Facilitate project meetings and status reporting
- Coordinate communication between technical and business stakeholders
- Support successful delivery of software releases and infrastructure initiatives
- Collaborate with software developers and external vendors
- Maintain familiarity with modern web application technologies, including Angular
- Assist in coordinating application deployments and release activities
- Coordinate technology upgrades, infrastructure improvements, and cloud initiatives
- Help ensure technical projects align with security and compliance requirements
- Monitor ISMS objectives, KPIs, and performance metrics
- Prepare reports for management review meetings
- Track corrective actions and continual improvement initiatives
- Report significant security issues and operational risks to leadership
- Maintain compliance dashboards and documentation repositories
- Coordinate internal audits
- Support external audits and customer assessments
- Facilitate Management Review meetings
- Track audit findings and corrective actions through completion
- Maintain audit evidence and compliance documentation
- Promote information security awareness throughout the organization
- Coordinate security awareness training
- Communicate security policies and requirements to personnel
- Support onboarding security training for new employees
- Encourage a culture of security and continuous improvement
- Bachelor’s degree in information technology, Cybersecurity, Information Systems, Business, Project Management, or equivalent professional experience
- Experience coordinating information security or compliance programs
- Working knowledge of ISO/IEC 27001 principles and controls
- Experience managing technology vendors and third‑party relationships
- Experience coordinating business or technology projects
- Working knowledge of cloud‑based environments (Microsoft 365, Azure, or similar)
- Familiarity with Angular applications and modern web technologies
- Excellent written, verbal, organizational, and analytical skills
- ISO/IEC 27001 Lead Implementer or Lead Auditor certification
- Experience supporting HIPAA and/or SOC 2 compliance initiatives
- Experience with SharePoint, Microsoft Teams, Planner, Azure Dev Ops, or Jira
- Experience working within a SaaS or software development environment
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).