Information Security Analyst | Cybersecurity | SOC 2 Compliance | Risk Management
We are looking for a proactive and detail-oriented Information Security Analyst to help protect our organization's systems, data, and digital assets. This role is ideal for cybersecurity professionals who are passionate about identifying risks, strengthening security controls, ensuring regulatory compliance, and responding to security threats in fast-paced environments.
You'll work closely with IT, Engineering, DevOps, Compliance, and Business teams to maintain a strong security posture, support compliance initiatives (including SOC 2), and implement security best practices across cloud and on-premise environments.
If you're passionate about cybersecurity, governance, risk management, and helping organizations stay ahead of evolving threats, we'd love to hear from you.
What You'll Do
- Monitor, analyze, and respond to cybersecurity incidents, alerts, and vulnerabilities.
- Conduct security risk assessments and identify potential threats across systems, networks, and applications.
- Support and maintain compliance with security frameworks such as SOC 2, ISO 27001, NIST, CIS Controls, and GDPR where applicable.
- Perform vulnerability assessments and coordinate remediation efforts with technical teams.
- Review security logs, investigate suspicious activity, and participate in incident response processes.
- Collaborate with Engineering and DevOps teams to integrate security best practices throughout the software development lifecycle (DevSecOps).
- Develop, maintain, and update information security policies, procedures, and documentation.
- Assist with internal and external security audits.
- Manage identity and access management (IAM), user permissions, and privileged access controls.
- Deliver security awareness training and promote cybersecurity best practices across the organization.
- Stay current with emerging cyber threats, vulnerabilities, and security technologies.
Information Security Expertise
- Information Security
- Cybersecurity
- SOC 2 Compliance
- ISO 27001
- NIST Cybersecurity Framework
- CIS Controls
- Risk Assessment
- Vulnerability Management
- Incident Response
- Security Operations
- Governance, Risk & Compliance (GRC)
- Identity & Access Management (IAM)
- Security Auditing
- Threat Detection
- Security Awareness Training
- Cloud Security
- Network Security
- Endpoint Security
- Security Policies & Procedures
- Business Continuity & Disaster Recovery
Security Tools & Technologies
Security Platforms
- Microsoft Defender
- CrowdStrike Falcon
- SentinelOne
- Splunk
- Microsoft Sentinel
- QRadar
- Rapid7
- Tenable Nessus
- Qualys
- Burp Suite
- Wireshark
Cloud & Infrastructure
- AWS Security Hub
- Microsoft Azure Security Center
- Google Cloud Security
- Okta
- Microsoft Entra ID (Azure AD)
- Active Directory
Productivity & Collaboration
- Jira
- Confluence
- ServiceNow
- Microsoft 365
- Google Workspace
- Slack
- Microsoft Teams
AI & Productivity Tools
- ChatGPT
- Microsoft Copilot
- Claude
- Gemini
What We're Looking For
- Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field.
- 3+ years of experience in Information Security, Cybersecurity, Security Operations, or Risk & Compliance.
- Experience supporting SOC 2 compliance initiatives and security audits.
- Strong knowledge of security frameworks such as SOC 2, ISO 27001, NIST, and CIS Controls.
- Experience performing vulnerability management, risk assessments, and incident response.
- Familiarity with SIEM, EDR, IAM, and endpoint security solutions.
- Experience working in cloud environments (AWS, Azure, or Google Cloud).
- Strong analytical, documentation, and problem-solving skills.
- Professional English proficiency (B2+/C1).
- Ability to work independently in a remote and collaborative environment.
Preferred Qualifications
- Security certifications such as Security+, CySA+, CISSP, CISM, CISA, SSCP, CEH, or GSEC.
- Experience supporting U.S.-based companies or global organizations.
- Knowledge of DevSecOps, cloud security, and infrastructure security.
- Experience with penetration testing or vulnerability scanning tools.
- Familiarity with privacy regulations such as GDPR, HIPAA, or PCI DSS.
- Experience in SaaS, Technology, FinTech, Healthcare, or Cloud-based organizations.
Why Join Us?
Join a company that values security as a strategic business priority. You'll work alongside experienced technology professionals to strengthen our cybersecurity posture, protect critical business assets, and support compliance initiatives that enable trust with our customers and partners. Your expertise will directly contribute to building a secure and resilient organization.
Next Step
Please remember to check your email and complete your One-Way Video Interview. This is the next step in our hiring process and will help us better understand your cybersecurity expertise, risk management experience, problem-solving skills, and ability to protect modern technology environments. We look forward to learning more about you!
Requirements
Information Security Analyst – High Fit Resume Requirements
- Bachelor's degree in Cybersecurity, IT, Computer Science, or related field.
- 3+ years of experience in Information Security or Cybersecurity.
- Experience with SOC 2, ISO 27001, or NIST.
- Experience in Incident Response and Vulnerability Management.
- Experience with SIEM tools (Splunk, Sentinel, QRadar).
- Experience with IAM (Okta, Azure AD, Active Directory).
- Experience securing AWS, Azure, or GCP environments.
- English B2+.
Preferred (Bonus)
- CISSP, CISM, Security+, CySA+, CEH certifications.
- Experience with CrowdStrike, Defender, Nessus, Qualys.
- Experience supporting U.S. companies.
- Knowledge of DevSecOps and Cloud Security.