Information Security Analyst I (Mid Level)
USAA · Charlotte, NC
$85,040–$162,550from the description
Jul 22, 2026
Charlotte, NC
Jul 23, 2026
What this job asks for AI summary
An entry-level information security analyst role focused on cybersecurity risk and compliance within a financial services organization. Day-to-day work involves assessing and documenting security controls, monitoring regulatory requirements, contributing to risk reporting, and supporting cross-functional teams in identifying and mitigating emerging risks. Best suited to candidates with a background in cybersecurity, audit, or risk management and familiarity with frameworks such as NIST and SOC 2.
Mid level · 4+ years · San Antonio, TX · Full-time
Advertised as Junior, but the requirements read as Mid.
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Roughly 95 people in the San Antonio, TX area plausibly meet what this posting asks for (information security analysts). range 30–140
Applicant volume Moderate — A normal amount of company. The rare requirements below are what will separate a shortlisted application from the rest.
What the occupation pays Median $125,255 (middle half $101,678–$152,501). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (8)
The title 'Information Security Analyst I' implies an entry/junior level, but the role hard-requires 4 years of relevant experience and operates in a complex, matrixed financial-services environment — consistent with a Mid-level band.
The role is primarily risk, compliance, and GRC-oriented (assessing controls, regulatory alignment, audit support) rather than hands-on security operations or threat analysis; 15-1211 Computer Systems Analysts is a plausible runner-up given the heavy compliance/analytical framing.
Microsoft Office (Word, Excel, PowerPoint) is listed under the required 'What you have' section with 'advanced proficiency' language and is treated as a hard gate.
NIST 800-53, NIST 800-63, NIST CSF, SOC 2, and GDPR appear exclusively under 'What sets you apart' (the preferred/differentiator section) and are therefore preferred.
CISSP, CRISC, and CIMP certifications are described as 'highly preferred' and appear under 'What sets you apart'; they are preferred, with CRISC and CIMP listed as alternatives since the posting treats them interchangeably.
Experience with 'information security or access management tools' is mentioned but no specific product is named; no concrete tool skill was emitted per extraction rules.
The role is hybrid (4 days/week in office) across multiple possible locations: San Antonio TX, Plano TX, Phoenix AZ, Charlotte NC, and Tampa FL. San Antonio is used as the primary CBSA given it is USAA's headquarters city.
The degree requirement is effectively None — the JD accepts '4 years of relevant education and/or experience' as an alternative to a Bachelor's degree.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.