Information Security Officer (ISO) in Richmond, VA

Unisys

Richmond (VA)

Hybrid

USD 140,000 - 195,000

Full time

4 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

Unisys ISO role provides dedicated cybersecurity leadership for a Virginia-based client. You will help implement, govern, and mature information security programs protecting systems, data, and services, coordinating with Unisys account management and delivery teams.

The role leads a security team, drives risk management, audits, incident response, and strategic guidance. Onsite with weekly remote flexibility, requiring strong communication with agency leadership and stakeholders.

Qualifications

  • Bachelor's degree or higher in information security, CS, IT or related field.
  • 10+ years of cybersecurity or information assurance experience.
  • Strong understanding of NIST frameworks, VA security standards, Zero Trust, risk assessments, audits, and incident response.

Responsibilities

  • Security Delivery Lead for cybersecurity services and compliance matters for the client.
  • Develop and maintain agency-aligned security policies, controls, and documentation; assist audits and remediation planning.
  • Conduct enterprise risk assessments, data classification, and control evaluations; support SSPs, BIAs, COOP, and IR planning.
  • Coordinate incident response with client SOC, Fusion Center, and agency staff; produce after-action reports and improvements.
  • Assist client in evaluating IT solutions for security, review designs and procurements for required controls.
  • Support cybersecurity awareness programs and liaison with leadership across agencies.
  • Contribute to enterprise cybersecurity strategy and statewide security initiatives; participate in governance boards and cross-agency committees.

Skills

Cybersecurity leadership
Risk assessments
Incident response coordination
Stakeholder engagement
Zero Trust architecture

Education

Bachelor's degree in information security

Tools

NIST frameworks

Job description

The Unisys Information Security Officer (ISO) provides dedicated cybersecurity leadership in support of the client. This role is responsible for helping the client implement, manage, and govern information security programs that protect the information systems, services, and data. The Unisys ISO works closely with the Unisys account management team and delivery teams to ensure Unisys services meet the client’s security standards. The Unisys ISO is the functional lead for a team of security professionals providing technical guidance and support in the context of delivering the services. The Unisys ISO is the key contact point for the client's CISO team, agency leadership, and stakeholders across the Commonwealth to ensure statewide compliance with IT security standards, perform risk assessments, support incident response, and deliver strategic security guidance.

Key Responsibilities
  1. Security Delivery Lead for Unisys services: Main liaison for Unisys account management for cybersecurity and compliance matters; Service Delivery Manager for cybersecurity services and solutions provided to the client; Technical lead for cybersecurity professionals in a matrixed organization; Provide updates for Unisys leadership related to cybersecurity delivery; Serve as the escalation point for internal Unisys cybersecurity issues affecting the client.
  2. Security Governance & Compliance: Develop, refine, and maintain agency-aligned security policies, controls, and documentation; Assist the client and assigned agencies with audits, compliance reviews, and remediation planning in accordance with Unisys contractual obligations; Ensure adoption of NIST-aligned risk management and security control frameworks.
  3. Risk Management: Conduct or assist with enterprise risk assessments, data classification, and security control evaluations for the client and supported agencies; Identify security gaps and recommend risk-based remediation strategies; Support the development of System Security Plans (SSPs), Business Impact Assessments (BIAs), and agency risk registers; Provide guidance on Continuity of Operations Plan (COOP) and Incident Response Plan development.
  4. Incident Response & Threat Support: Act as an incident response resource to the client, helping coordinate cybersecurity investigations, analysis, and documentation; Collaborate with the client's SOC, the Virginia Fusion Center, and agency staff during active events; Deliver after-action reporting, root cause analysis, and improvement recommendations.
  5. Security Architecture & Technology Support: Assist the client in evaluating IT solutions, cloud services, and enterprise initiatives for security compliance; Review designs, contracts, and procurements to ensure required security controls are incorporated; Provide recommendations aligned with Zero Trust, identity management best practices, encryption, logging, and network security principles.
  6. Training, Awareness, & Stakeholder Coordination: Support cybersecurity awareness programs across the client and partner agencies; Act as one of the primary Unisys security liaisons connecting with leadership; Communicate risks, emerging threats, and mitigation options to technical and non-technical audiences; Offer security guidance to project teams, application developers, and business units.
  7. Strategic Security Leadership: Contribute to enterprise cybersecurity strategy and statewide security initiatives; Recommend modern tools, frameworks, and processes to enhance the Commonwealth’s security posture; Take part in governance boards, working groups, and cross-agency cybersecurity committees; Support Unisys in delivering high-quality, contract-aligned services that enhance VITA’s mission.

You will be successful in this role if you have:

  • Bachelor's degree in information security, Computer Science, IT, or related field; equivalent experience considered.
  • 10+ years of cybersecurity or information assurance experience.
  • Strong understanding of: NIST frameworks (800-53, 800-37, CSF) Commonwealth of Virginia security standards (SEC 501, SEC 525, SEC 530) Zero Trust principles and modern security architecture; Experience in risk assessments, audits, and implementing security controls; Incident response or SOC coordination experience; Excellent communication, documentation, and stakeholder‑engagement skills; Experience with applying AI in support of delivery and to meet contractual obligations.
Must Have Certifications
  • CISSP
Preferred Certifications
  • CISM
  • CISA
  • CRISC
  • GIAC certifications (GSEC, GCIH, GSTRT, etc.)
  • Cloud security certifications (AWS / Azure)
Key Competencies
  • Ability to work collaboratively across multiple agencies and stakeholder groups
  • Strong analytical and risk-based decision-making skills
  • Ability to communicate complex security issues clearly
  • High initiative, ownership, and professionalism
  • Commitment to delivering high-quality support to a mission‑critical state client

Onsite position, with the possibility to work 1-2 days per week remotely. This role may require access to export‑controlled commodities and technology. Therefore, to conform to U.S. export control regulations, applicant should be eligible for any required authorizations from the U.S. Government.

Unisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law. This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers.

Notice for U.S. Applicants: Unisys is an Equal Opportunity Employer – Minorities/ Females/ Veterans/ Individuals with Disabilities/ Sexual Orientation/ Gender Identity

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Information Security Officer (ISO) in Richmond, VA
Information Security Officer (ISO) in Richmond, VA

Unisys Corporation • Richmond (VA)

Hybrid
USD 140,000 - 190,000
Information Security Officer — Lead, Risk & Compliance (Hybrid)
Information Security Officer — Lead, Risk & Compliance (Hybrid)

Unisys Corporation • Richmond (VA)

Hybrid
USD 140,000 - 190,000
Strategic Information Security Leader (Hybrid Remote)
Strategic Information Security Leader (Hybrid Remote)

Unisys • Richmond (VA)

Hybrid
USD 140,000 - 195,000
Information Systems Security Officer, Senior
Information Systems Security Officer, Senior

Unisity, LLC • Maryland

On-site
USD 210,000 - 220,000
12% company 401k contribution
Health plan options with HSA
Vision and Dental insurance
+2
Senior Information Systems Security Officer
Senior Information Systems Security Officer

Data Intelligence LLC • Vienna (VA)

On-site
USD 83,000 - 96,000
Information Systems Security Officer
Information Systems Security Officer

Kids for the Future • Foster (VA)

Hybrid
USD 120,000 - 185,000
Information Systems Security Officer L2
Information Systems Security Officer L2

Unisity, LLC • Maryland

On-site
USD 140,000 - 190,000
401k plan with 12% company support
Medical options with HSA
Vision and Dental
+3
Deputy Chief Information Security Officer – Virginia Tech
Deputy Chief Information Security Officer – Virginia Tech

V T CORPORATE RESOURCE CTR • Blacksburg (VA)

On-site
USD 120,000 - 160,000
AI Cloud & Application Security Architect
AI Cloud & Application Security Architect

Unisys Corporation • United States

On-site
USD 130,000 - 170,000
Unlimited paid time off
401(k) match
Comprehensive healthcare
+3
Chief Information Security Officer
Chief Information Security Officer

The Rector & Visitors of the University of Virginia • Charlottesville (VA)

Hybrid
USD 120,000 - 160,000