We are seeking a highly motivated and detail-oriented Information Security Analyst to join our remote cybersecurity team. In this role, you’ll be responsible for monitoring, analyzing, and strengthening the organization’s information security posture. The ideal candidate will have a solid foundation in cybersecurity practices, threat detection, and compliance frameworks, and thrive in a fully remote environment.
Key Responsibilities:
- Monitor security tools and systems for threats, vulnerabilities, and indicators of compromise.
- Investigate and respond to security incidents, alerts, and breaches.
- Conduct vulnerability scans and risk assessments across infrastructure, applications, and endpoints.
- Maintain and enforce security policies, procedures, and best practices.
- Support compliance with security standards such as NIST, ISO 27001, HIPAA, SOC 2, or GDPR.
- Collaborate with IT, DevOps, and business teams to ensure secure system design and operations.
- Assist in security awareness training and phishing simulations.
- Document incidents, findings, and remediation plans.
- Recommend improvements to enhance overall security posture.
Required Qualifications:
- Bachelor’s degree in Cybersecurity, Information Technology, Computer Science, or a related field (or equivalent experience).
- 2–7+ years of experience in information security, cybersecurity operations, or a related field.
- Working knowledge of SIEM tools (e.g., Splunk, LogRhythm, Sentinel), firewalls, IDS/IPS, and endpoint protection solutions.
- Familiarity with vulnerability management tools (e.g., Nessus, Qualys, Rapid7).
- Strong understanding of TCP/IP, DNS, HTTP, and network security concepts.
- Solid grasp of access controls, encryption, and identity & access management (IAM).
- Excellent analytical, communication, and problem-solving skills.
- Ability to work independently and manage tasks in a remote environment.
Preferred Qualifications:
- Industry certifications such as Security+, CISSP, CISM, CEH, or GSEC.
- Experience with cloud security (AWS, Azure, GCP).
- Familiarity with DevSecOps practices and tools.
- Prior experience working in a remote or distributed team.