Information Security Compliance Specialist

Securiport

Reston (VA)

On-site

USD 75,000 - 95,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading security compliance firm in Virginia is looking for an Information Security Compliance Specialist. This role is crucial for maintaining compliance with standards like ISO 27001 and NIST 800-171. The successful candidate will conduct risk assessments, manage audits, and develop policies to ensure data security. Candidates should have a degree in a relevant field and at least 3 years of experience in compliance or a similar role. Strong analytical and communication skills are essential for success in this position.

Qualifications

  • Bachelor’s degree in Information Security, Cybersecurity, Compliance, or a related field.
  • 3+ years of experience in information security compliance or related role.
  • Strong working knowledge of ISO 27001 and NIST 800-171.

Responsibilities

  • Maintain compliance with ISO 27001 and NIST 800-171.
  • Prepare for audits and support evidence collection.
  • Conduct risk assessments and identify compliance gaps.

Skills

Knowledge of ISO 27001
Knowledge of NIST 800-171
Risk assessments
Strong analytical skills
Excellent communication skills
Project management

Education

Bachelor’s degree in Information Security or related field
3+ years of experience in compliance

Tools

Security compliance tools

Job description

Job Summary: The Information Security Compliance Specialist is responsible for identifying risks and ensuring the organization remains compliant with industry standards, relevant laws, and regulations. This role is instrumental in maintaining ISO 27001 and ISO 27701 certifications, as well as achieving and sustaining compliance with NIST 800-171. The Compliance Specialist will streamline audits, maintain certifications, and develop policies to uphold data security commitments. This position requires strong attention to detail, knowledge of compliance frameworks, and the ability to work collaboratively across departments.

Essential Functions
  • Own and maintain ongoing compliance with ISO 27001, ISO 27701, GDPR, and NIST 800-171 requirements
  • Prepare for, coordinate, and support internal and external security audits, including evidence collection and remediation tracking
  • Conduct risk assessments, identify compliance gaps, and recommend corrective actions
  • Develop, implement, and continuously improve information security policies, procedures, and controls
  • Monitor regulatory and framework changes to ensure continued compliance
  • Partner closely with IT, Security, and cross‑functional teams to align compliance initiatives with security operations
  • Maintain audit artifacts, compliance documentation, and records to support certifications and assessments
  • Act as the primary liaison with auditors, regulators, and third‑party assessors
  • Support incident response activities by ensuring proper compliance documentation and reporting
  • Deliver training and guidance to employees on security policies and best practices
Required Knowledge, Skills, Abilities
  • Strong working knowledge of ISO 27001, ISO 27701, and NIST 800-171 compliance frameworks
  • Hands‑on experience conducting risk assessments and implementing security controls
  • Solid understanding of cybersecurity frameworks, regulatory standards, and industry best practices
  • Proven ability to author and maintain security policies, procedures, and documentation
  • Strong analytical skills with the ability to translate compliance requirements into actionable remediation plans
  • Excellent organizational and project management skills to track multiple compliance initiatives
  • Clear, effective communication skills for training and cross‑functional collaboration
  • Familiarity with security tools and technologies that support compliance efforts
Required Education, Certifications/ Licenses, Related Experience
  • Bachelor’s degree in Information Security, Cybersecurity, Compliance, or a related field (or equivalent experience)
  • 3+ years of experience in information security compliance, risk management, audit, or a related role
  • Hands‑on experience with ISO 27001, ISO 27701, NIST 800-171, and GDPR
  • Relevant certifications preferred: CISA, CISM, CISSP, ISO 27001
  • In lieu of a degree, 8+ years of relevant experience will be considered
Physical Job Requirements
  • Ability to work in an office environment with extended periods of desk work
  • Occasional lifting of equipment or documentation materials
  • Availability to respond to compliance‑related matters outside normal business hours when needed
Travel Requirements
  • Occasional travel for training, conferences, or collaboration with remote teams
  • Travel may include car, air, or train

Securiport is proud to be an Equal Employment Opportunity and Affimative Action employer. We do not discriminate based upon race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics. Securiport is committed to working with and providing reasonable accommodations to applicants with physical and mental disabilities. Please see the United States Department of Labor's EEO poster and EEO poster supplement for additional information.

Disclaimer: Nothing in this job description restricts management's right to assign or reassign duties and responsibilities to this job at any time. The above statements are intended to describe the general nature and level of work being performed by people assigned to this position at the time this job description was written. They are not intended to be an exhaustive list of all duties, responsibilities and skills required of personnel so classified. This document does not create an employment contract, implied or otherwise, and all employees in this position are employed “at‑will.”

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Compliance Specialist
Information Security Compliance Specialist

Securiport LLC • Reston (VA)

On-site
USD 70,000 - 95,000
Manager of Information Security and Compliance
Manager of Information Security and Compliance

iboss • United States

On-site
USD 100,000 - 130,000
Health, Vision, Dental
401(k) with company match
Unlimited Paid Time Off
+1
ISMS Compliance Manager
ISMS Compliance Manager

Hexagon Mining, Inc. • Tucson (AZ)

On-site
USD 80,000 - 100,000
ISMS Compliance Manager
ISMS Compliance Manager

Hexagon Mining • Tucson (AZ)

On-site
USD 90,000 - 120,000
Information Security Program Lead
Information Security Program Lead

MSA, The Safety Company • Cranberry Township

On-site
USD 120,000 - 180,000
IT - Security Compliance Analyst II
IT - Security Compliance Analyst II

Georgia Farm Bureau • Macon (GA)

On-site
USD 70,000 - 110,000
Security Compliance Lead — ISO 27001/NIST Expert
Security Compliance Lead — ISO 27001/NIST Expert

Securiport • Reston (VA)

On-site
USD 75,000 - 95,000
IT - Security Compliance Analyst II
IT - Security Compliance Analyst II

Georgia Farm Bureau • Alabama

On-site
USD 60,000 - 80,000
Security Engineer (Compliance)
Security Engineer (Compliance)

LE038 Second Sight Solutions, LLC • United States

Remote
USD 125,000 - 170,000
Information Security Program Lead
Information Security Program Lead

MSA - The Safety Company • Cranberry Township

On-site
USD 120,000 - 180,000