Information Security Officer (ISO) in Richmond, VA

Posted 2 Days Ago
Be an Early Applicant
Richmond, VA, USA
In-Office
Expert/Leader
Information Technology
The Role
Leads cybersecurity delivery and governance for a state client, overseeing compliance with Virginia and NIST standards, risk assessments, audits, security controls, incident response, architecture reviews, and strategic security initiatives. The role coordinates with SOC, agency, and executive stakeholders; develops security plans and documentation; supports Zero Trust and cloud security efforts; and guides security professionals across a matrixed organization.
Summary Generated by Built In

What success looks like in this role:

Position Summary

The Unisys Information Security Officer (ISO) provides dedicated cybersecurity leadership in support of the client. This role is responsible for helping the client implement, manage, and govern information security programs that protect the information systems, services, and data.

The Unisys ISO works closely with the Unisys account management team and delivery teams to ensure Unisys services meet the client’s security standards. The Unisys ISO is the functional lead for a team of security professionals providing technical guidance and support in the context of delivering the services. The Unisys ISO is the key contact point for the client's CISO team, agency leadership, and stakeholders across the Commonwealth to ensure statewide compliance with IT security standards, perform risk assessments, support incident response, and deliver strategic security guidance.

Key Responsibilities

1. Security Delivery Lead for Unisys services

  • Main liaison for Unisys account management for cybersecurity and compliance matters
  • Service Delivery Manager for cybersecurity services and solutions provided to the client
  • Technical lead for cybersecurity professionals in a matrixed organization
  • Provide updates for Unisys leadership related to cybersecurity delivery
  • Serve as the escalation point for internal Unisys cybersecurity issues affecting the client.

2. Security Governance & Compliance

  • Develop, refine, and maintain agency-aligned security policies, controls, and documentation.
  • Assist the client and assigned agencies with audits, compliance reviews, and remediation planning in accordance with Unisys contractual obligations.
  • Ensure adoption of NIST-aligned risk management and security control frameworks.

3. Risk Management

  • Conduct or assist with enterprise risk assessments, data classification, and security control evaluations for the client and supported agencies.
  • Identify security gaps and recommend risk-based remediation strategies.
  • Support the development of System Security Plans (SSPs), Business Impact Assessments (BIAs), and agency risk registers.
  • Provide guidance on Continuity of Operations Plan (COOP) and Incident Response Plan development.

4. Incident Response & Threat Support

  • Act as an incident response resource to the client, helping coordinate cybersecurity investigations, analysis, and documentation.
  • Collaborate with the client's SOC, the Virginia Fusion Center, and agency staff during active events.
  • Deliver after-action reporting, root cause analysis, and improvement recommendations.

5. Security Architecture & Technology Support

  • Assist the client in evaluating IT solutions, cloud services, and enterprise initiatives for security compliance.
  • Review designs, contracts, and procurements to ensure required security controls are incorporated.
  • Provide recommendations aligned with Zero Trust, identity management best practices, encryption, logging, and network security principles.

6. Training, Awareness, & Stakeholder Coordination

  • Support cybersecurity awareness programs across the client and partner agencies.
  • Act as one of the primary Unisys security liaisons connecting with leadership.
  • Communicate risks, emerging threats, and mitigation options to technical and non-technical audiences.
  • Offer security guidance to project teams, application developers, and business units.

7. Strategic Security Leadership

  • Contribute to enterprise cybersecurity strategy and statewide security initiatives.
  • Recommend modern tools, frameworks, and processes to enhance the Commonwealth’s security posture.
  • Take part in governance boards, working groups, and cross-agency cybersecurity committees.
  • Support Unisys in delivering high-quality, contract-aligned services that enhance VITA’s mission.

You will be successful in this role if you have:

  • Bachelor's degree in information security, Computer Science, IT, or related field; equivalent experience considered.
  • 10+ years of cybersecurity or information assurance experience.
  • Strong understanding of:
  • NIST frameworks (800-53, 800-37, CSF)
  • Commonwealth of Virginia security standards (SEC 501, SEC 525, SEC 530)
  • Zero Trust principles and modern security architecture
  • Experience in risk assessments, audits, and implementing security controls.
  • Incident response or SOC coordination experience.
  • Excellent communication, documentation, and stakeholder-engagement skills.
  • Experience with applying AI in support of delivery and to meet contractual obligations

Must Have Certifications:

  • CISSP

Preferred Certifications:

  • CISM
  • CISA
  • CRISC
  • GIAC certifications (GSEC, GCIH, GSTRT, etc.)
  • Cloud security certifications (AWS / Azure)

Key Competencies

  • Ability to work collaboratively across multiple agencies and stakeholder groups
  • Strong analytical and risk-based decision-making skills
  • Ability to communicate complex security issues clearly
  • High initiative, ownership, and professionalism
  • Commitment to delivering high-quality support to a mission-critical state client

Onsite position, with the possibility to work 1-2 days per week remotely.

This role may require access to export-controlled commodities and technology.  Therefore, to conform to U.S. export control regulations, applicant should be eligible for any required authorizations from the U.S. Government.

Unisys is proud to be an equal opportunity employer that considers all qualified applicants without regard to age, caste, citizenship, color, disability, family medical history, family status, ethnicity, gender, gender expression, gender identity, genetic information, marital status, national origin, parental status, pregnancy, race, religion, sex, sexual orientation, transgender status, veteran status or any other category protected by law.

This commitment includes our efforts to provide for all those who seek to express interest in employment the opportunity to participate without barriers. If you are a US job seeker unable to review the job opportunities herein, or cannot otherwise complete your expression of interest, without additional assistance and would like to discuss a request for reasonable accommodation, please contact our Global Recruiting organization at [email protected] or alternatively Toll Free: 888-560-1782 (Prompt 4).  US job seekers can find more information about Unisys’  EEO commitment here.

Skills Required

  • Bachelor's degree in information security, Computer Science, IT, or a related field, or equivalent experience
  • 10+ years of cybersecurity or information assurance experience
  • Experience with NIST frameworks, including NIST 800-53, NIST 800-37, and the Cybersecurity Framework
  • Knowledge of Commonwealth of Virginia security standards SEC 501, SEC 525, and SEC 530
  • Understanding of Zero Trust principles and modern security architecture
  • Experience conducting risk assessments, audits, and implementing security controls
  • Incident response or SOC coordination experience
  • Excellent communication, documentation, and stakeholder-engagement skills
  • Experience applying artificial intelligence to support service delivery and contractual obligations
  • CISSP certification
  • CISM certification
  • CISA certification
  • CRISC certification
  • GIAC certification such as GSEC, GCIH, or GSTRT
  • Cloud security certification for AWS or Azure
  • Eligibility for required U.S. Government export-control authorizations

Unisys Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Unisys and has not been reviewed or approved by Unisys.

  • Fair & Transparent Compensation Fair & Transparent Compensation: Compensation terms at hire are often presented clearly and upfront, creating a straightforward “take it or leave it” expectation. Pay outcomes are also described as variable by role and geography, with some pockets viewed as satisfactory or above average.
  • Retirement Support Retirement Support: A 401(k) plan with an employer match is commonly described as part of the core package. The match is often characterized as a meaningful component of total rewards relative to other benefits.
  • Healthcare Strength Healthcare Strength: Core medical, dental, and vision coverage is described as available and broadly in line with a large IT-services employer. The underlying carrier network is sometimes viewed as solid even when cost concerns exist.

Unisys Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Blue Bell, PA
22,588 Employees
Year Founded: 1986

What We Do

Unisys is a global information technology company that builds high-performance, security-centric solutions for the most demanding businesses and governments on Earth. Unisys offerings include security software and services; digital transformation and workplace services; industry applications and services; and innovative software operating environments for high-intensity enterprise computing. We build better outcomes securely for our clients across the Government, Financial Services and Commercial

Similar Jobs

SailPoint Logo SailPoint

Software Engineering Manager

Artificial Intelligence • Cloud • Sales • Security • Software • Cybersecurity • Data Privacy
Remote or Hybrid
United States
2461 Employees
141K-237K Annually

MongoDB Logo MongoDB

Enterprise Account Executive

Big Data • Cloud • Software • Database
Easy Apply
Hybrid
2 Locations
5550 Employees
167K-167K Annually

TransUnion Logo TransUnion

Technical Product Manager

Big Data • Fintech • Information Technology • Business Intelligence • Financial Services • Cybersecurity • Big Data Analytics
Hybrid
3 Locations
13000 Employees
169K-281K Annually

ServiceNow Logo ServiceNow

Enterprise Account Executive

Artificial Intelligence • Cloud • HR Tech • Information Technology • Productivity • Software • Automation
Remote or Hybrid
Vienna, VA, USA
29000 Employees
137K-186K Annually

Similar Companies Hiring

Axle Health Thumbnail
Artificial Intelligence • Healthtech • Information Technology • Logistics
Santa Monica, CA
25 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees
Golden Pet Brands Thumbnail
Digital Media • eCommerce • Information Technology • Marketing Tech • Pet • Retail • Social Media
El Segundo, California
178 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account