Overview
Skills
Job Details
Role: Information Security Communications Analyst
Location: Remote
Hire Type: FTE/Permanent
Seniority: Middle
Job Description:
Our client, a highly regarded Am Law 100 firm, is seeking an Information Security Communications Analyst to support its enterprise-wide security awareness and training initiatives. This role will play a key part in supporting the firm's ISO 27001 certification efforts, helping to maintain compliance and drive a culture of security across the organization.
Position Overview:
The Information Security Communications Analyst will work closely with the Information Security Awareness Manager to deliver targeted awareness campaigns, support ISO certification readiness, and coordinate training initiatives. This role requires strong communication skills, attention to detail, and the ability to work across technical and non-technical stakeholders.
Key Responsibilities:
- Promote a culture of security by engaging users and encouraging secure behaviors through targeted training and communication.
- Track ISO 27001 certification status and assist in preparing for audits.
- Coordinate and track compliance with firmwide ISO training requirements.
- Prepare security policy exception review requests and support ongoing security training activities.
- Gather, analyze, and report key data and metrics to support risk management and awareness initiatives.
- Collaborate with InfoSec and risk teams to identify awareness opportunities and training needs.
- Contribute to the development of presentations and other awareness materials tailored to diverse audiences.
Required Qualifications:
- Bachelors degree required.
- Minimum 3 years of experience in information security or a related field. Ideally 3 to 5 years
- Working knowledge of security principles, risk mitigation techniques, and ISO 27001 certification frameworks.
- Strong written and verbal communication skills, with the ability to present complex information clearly.
- Proficiency in Microsoft Excel and PowerPoint.
- Familiarity with project management tools and methodologies.
- High degree of professionalism, confidentiality, and independence.
Preferred Qualifications:
- 3 to 5 years of experience in information security, with a focus on training or communications.
- Exposure to ISO 27001 certification processes and/or audits.
- Experience using tools such as JIRA for tracking and reporting.
- Industry certifications such as CompTIA Security+ or CISSP (preferred but not required).
- Ability to analyze data and provide actionable insights for leadership.