> Markdown version of [/jobs/ext/1270060-information-security-governance-specialist](https://www.wearedevelopers.com/jobs/ext/1270060-information-security-governance-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Information Security Governance Specialist - **Company:** HERMES IT LLC - **Location:** Jackson, MS, United States - **Salary:** $124,800.0 - $145,600.0 - **Contract:** Permanent contract - **Skills:** CompTIA Security+, Cyber Security, Identity and Access Management, IT Management, Software Vulnerability Management, CIS Benchmarks, Software Version Control - **Published:** July 15, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=71ff62d750ed1426 ## About the Role We are seeking an experienced Information Security Governance Technical Writer to develop, revise, and maintain enterprise information security governance documentation. The ideal candidate will have strong technical writing experience in cybersecurity and IT governance, with expertise in developing security policies, standards, procedures, technical baselines, and compliance documentation aligned with industry security frameworks. This role requires close collaboration with security architects, engineers, auditors, and business stakeholders to ensure governance documentation is technically accurate, enforceable, and audit-ready. Mandatory Skills * Strong technical writing experience in Cybersecurity or IT Governance. * Experience developing and maintaining: * Information Security Policies * Security Standards * Operational Procedures * Implementation Guides * Security Baselines * Configuration Documentation * Compliance Documentation * Experience documenting security controls and governance processes. * Experience working with the following security frameworks and standards: * NIST Cybersecurity Framework (CSF) * NIST SP 800-53 * IRS Publication 1075 * Knowledge of: * CIS Critical Security Controls * Security Governance and Risk Management * Identity and Access Management (IAM) * Incident Response * Vulnerability Management * Disaster Recovery & Business Continuity * Vendor Risk Management * Security Awareness & Training * Policy Lifecycle Management * Experience collaborating with Subject Matter Experts (SMEs). * Experience with document version control and periodic policy reviews. * Ability to produce documentation for technical teams, management, auditors, and external reviewers. Preferred Skills * Experience writing governance documentation specifically aligned with: * NIST Cybersecurity Framework * NIST SP 800-53 * IRS Publication 1075 * Professional certifications such as: * CISSP * CISA * CGRC * Security+ * Equivalent cybersecurity certifications ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [A practical guide to writing secure Dockerfiles](https://www.wearedevelopers.com/videos/109-a-practical-guide-to-writing-secure-dockerfiles) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Your Manager Doesn’t Come with a User Manual (But You Can Totally Write One)](https://www.wearedevelopers.com/videos/1495-your-manager-doesn-t-come-with-a-user-manual-but-you-can-totally-write-one) - [What makes Cybersecurity different for critical infrastructure?](https://www.wearedevelopers.com/videos/571-what-makes-cybersecurity-different-for-critical-infrastructure) - [One Pipeline, Three Regulator - SBOM Compliance for the Developer](https://www.wearedevelopers.com/videos/100169-one-pipeline-three-regulator-sbom-compliance-for-the-developer) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Technical Documentation For Developers](https://www.wearedevelopers.com/magazine/128-technical-documentation-for-developers) - [A call for Guest Writers for the WeAreDevelopers Magazine](https://www.wearedevelopers.com/magazine/648-a-call-for-guest-writers-for-the-wearedevelopers-magazine) - [7 Best Steps For Writing Good Software Technical Documentation](https://www.wearedevelopers.com/magazine/113-7-best-steps-for-writing-good-software-technical-documentation) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities)