ISO Security Analyst

Popular

Northern (KY)

Hybrid

USD 55,000 - 75,000

Full time

4 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Popular seeks an entry-level ISO Security Analyst to support risk management, governance, and advisory activities within the BISO Enablement Unit. You will coordinate with CISP teams and stakeholders to translate policies into actionable requirements, assist with risk assessments, and support vendor due diligence and reporting.

The role emphasizes collaboration, documentation governance, and alignment with frameworks and regulatory expectations, while contributing to risk communications and

Qualifications

  • Bachelor’s degree in business administration, computer engineering, computer science, information technology, or related fields.
  • Two (2) years of related experience in information technology audit, information security, or vendor management preferred.
  • Certifications such as CISA, CISM, and CISSP are preferable.
  • Strong business acumen and ability to translate policies into practical requirements.

Responsibilities

  • Serve as liaison between assigned business areas and Corporate Information Security & Privacy teams.
  • Translate enterprise information security policies into practical, business-aligned requirements.
  • Support security awareness and risk culture initiatives with clear communications.
  • Perform information security risk assessments for initiatives, apps, products, services, vendors, and AI use cases.
  • Conduct third-party vendor information security due diligence, including reviews and contract security.
  • Track and report information security risks, remediation plans, and residual risk decisions.
  • Prepare vendor due diligence reports and status updates for management oversight.
  • Contribute to documentation governance and alignment with frameworks, regulations, and internal governance.
  • Assist with documentation and control activities alignment to cybersecurity frameworks and regulatory expectations.

Skills

Business acumen
Technical acumen
Communication skills
Analytical skills
Problem solving
Project management
Regulatory knowledge
AI awareness

Education

Bachelor’s degree in related field

Tools

Power BI
Power Pivot
MS Office 365
Data management

Job description

ISO Security Analyst

Job Title:ISO Security Analyst

General Description

As an entry-level member of the Business Information Security Office (BISO) Enablement Unit, you will support the execution of information security risk management, governance, and business-aligned information security advisory activities in coordination with CISP teams, business stakeholders, and other control functions.

Essential Duties and Responsibilities:

  • Serving as a liaison between assigned business or enablement areas and Corporate Information Security & Privacy teams for security requests, requirements, and risk-related matters.
  • Assisting business units in translating enterprise information security policies, standards, and guidelines into practical, business-aligned requirements and advisory guidance.
  • Support security awareness and risk culture initiatives by helping communicate information security expectations, risks, and requirements to business stakeholders in a clear and practical manner.
  • Perform information security risk assessments for business initiatives, applications, products, services, vendors, and emerging technologies, including artificial intelligence use cases, as applicable.
  • Perform third-party vendor information security due diligence activities, including ongoing vendor reviews, contract security reviews, and follow-up of identified risks or recommendations.
  • Perform tracking, reporting, and follow-up of information security risks and issues, remediation plans, exceptions, action items, and residual risk decisions identified as a result of the ongoing vendor information security due diligence assessments.
  • Prepare ongoing vendor information security due diligence reports and/or status updates to support management oversight, risk visibility, and decision-making.
  • Contribute to the BISO Unit’s documentation governance activities, including the inventory, review, update, and lifecycle management of information security policies, standards, procedures, guidelines, and related repositories.
  • Assist with the alignment of documentation and control activities to relevant cybersecurity frameworks, regulatory expectations, and internal governance requirements.

Education

Bachelor’s degree in business administration, Computer Engineering, Computer Science, Information Technology, or related fields.

Experience

Two (2) years of related experience in information technology audit, information security, or vendor management is preferred.

Certifications / Licenses

Certifications and licenses such as CISA, CISM, and CISSP are preferable.

Knowledge, Skills and Abilities (KSA’s)

  • Strong business acumen: ability to understand the needs and concerns of business stakeholders and colleagues and respond promptly and effectively to stakeholder requests. Ability to conduct analysis on work procedures,business results and recommend changes to improve the effectiveness of the business's management.
  • Strong technical acumen: knowledge of Information Security and Information Technology concepts. Ability to write technical instructions using programs and technology. Robust knowledge of applicable local and federal laws, regulations, and guidelines.
  • Communication skills: effectively interact with internal and external stakeholders. Ability to foster trusting relationships with colleagues and clients. Highly develop written and verbal communications skills, strong abilityto communicate ideas (storytelling). Presents numerical data effectively. Superior communication andinterpersonal skills. Excellent report-writing and presentation skills. Polished in preparing presentations,summaries, and reports for all audiences.
  • Analytical skills: Stays focused on main issues, prevents irrelevant issues or distractions from interfering withtimely completion of assignments. Collects, research and complements data; Synthesizes complex or diverse information. Demonstrates attention to detail; Applies design principles; Generate creative solutions. Strongquantitative, research and analytical skills. Experience with data analysis, persuasive and informative writing,workload management, and process management.
  • Problem Solving: Identifies and resolves problems in a timely manner; Develops alternative solutions.
  • Project Management: Ability to prioritize and work with multiple projects and tasks with minimum supervision; self-direct and task switch between strategic and tactical initiatives regularly. Capacity to achieve results according to plan ensuring the expected quality. Excellent organization capacity to define priorities, meet deadlines, and flexible to change. Knowledge on project coordination, identification of business needs, work plan,budget control, time management, resource allocation, team management and status reports. Mustdemonstrate leadership, logic, and reasoning skills.
  • Operational/Regulations Processes: Knowledge on budget administration, resources allocation, organization’spolicies, and regulations. Ability to establish, conduct and track operational processes properly.
  • Computer and Technological Skills: Proficient in MS Office 365. Experience with data management tools such asPower Pivot, and/or Power BI, among others is preferred. Basic knowledge of artificial intelligence technology is preferred. Ability to achieve results by providing innovative ways of working with operational and technological considerations.Knowledge of computer flow charts and programming logic and codes.

Work Schedule

Hybrid

Important: The candidate must provide evidence of academic preparation or courses related to the job posting, if necessary.

Our hybrid work model benefit applies to certain positions and is subject to changes based on the organizational needs.

ABOUT US

Popular is Puerto Rico’s leading financial institution and have been evolving since it was founded over a century ago. From a small bank it has developed into a large corporation that offer a wide variety of services and financial solutions to our customers, with presence in the United States, the Caribbean and Latin America.

As employees, we are dedicated to making our customers dreams come true by offering financial solutions in each stage of their life. Our extensive trajectory demonstrates the resiliency and determination of our employees to innovate, reach for the right solutions and strongly support the communities we serve; therefore, we value their diverse skills, experiences and backgrounds.

We reaffirm our commitment to always offer essential financial services and solutions for our customers and communities, including during emergency situations and/or natural disasters. Popular’s employees are considered essential workers, whose role is critical in the continuity of these important services even under such circumstances. By applying to this position, you acknowledge that Popular may require your services during and immediately after any such events.

If you have a disability or need more information about requesting an accommodation, please contact us at asesorialaboral@popular.com . This email inbox is monitored for such types of requests only. All information you provide will be kept confidential and will be used only to the extent required to provide needed exemptions or reasonable accommodations. Any other correspondence will not receive a response.

If you are a California resident, please learn more about your privacy rights.

Job Segment: Compliance, Data Analyst, Law, Data Management, Legal, Entry Level, Data

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

ISO Security Analyst
ISO Security Analyst

Popular • Colorado

Hybrid
USD 55,000 - 75,000
Hybrid work model
ISO Security Analyst
ISO Security Analyst

Popular • San Juan (PR)

Hybrid
USD 42,000 - 62,000
Hybrid work environment
ISO Security Analyst
ISO Security Analyst

Popular Bank • Silverton (CO)

Hybrid
USD 42,000 - 65,000
ISO Security Analyst
ISO Security Analyst

Popular Bank • Colorado

Hybrid
USD 65,000 - 90,000
IAM Security Specialist
IAM Security Specialist

Popular Bank • Town of Florida (NY)

Hybrid
USD 90,000 - 120,000
Hybrid work model
Business Analyst / Specialized Businesses Group
Business Analyst / Specialized Businesses Group

Popular • San Juan (PR)

On-site
USD 60,000 - 90,000
Sr Data Analyst - Digital Enablement
Sr Data Analyst - Digital Enablement

Popular • San Juan (PR)

Hybrid
USD 80,000 - 110,000
Hybrid work model
Equal Opportunity Employer
Business Analyst
Business Analyst

Popular • San Juan (PR)

On-site
USD 60,000 - 90,000
Hybrid work model
IT Assistant General Auditor (Director)
IT Assistant General Auditor (Director)

Popular • San Juan (PR)

On-site
USD 120,000 - 180,000
Hybrid work model
Program Manager
Program Manager

Popular • San Juan (PR)

On-site
USD 100,000 - 150,000