Senior Cybersecurity Risk Analyst (NIST)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Senior Cybersecurity Risk Analyst (NIST): Coordinating and driving institution-wide security initiatives including threat exposure management, red-team engagements, and risk assessment with an accent on cloud security and regulatory compliance. Focus on vulnerability management, application security testing (DAST/SAST), and managing enterprise risk registries.
Location: Must be based in the United States (US-Remote with optional hybrid flexibility)
Salary: $157,000–$180,000 USD
Company
The (AIR) is a nonpartisan, not-for-profit organization conducting behavioral and social science research and providing data-driven technical assistance to address pressing societal challenges.
What you will do
- Drive vulnerability management activities including scanning and tracking findings across network, containers, and applications.
- Execute application security testing (DAST, SAST) and lead targeted red teaming engagements.
- Lead cyber risk management, identify enterprise risks, and develop comprehensive treatment plans.
- Oversee remediation of findings using standard Plan of Action and Milestones (POA&M) processes.
- Respond to complex client data security and privacy questionnaires.
- Serve as HIPAA Security Officer and support AI governance and third-party risk management initiatives.
Requirements
- Bachelor’s degree and minimum 9 years of information security experience.
- Must be authorized to work in the U.S. (sponsorship not available).
- Current major cybersecurity certification from ISC2, ISACA, OffSec, or SANS.
- 5+ years of hands-on experience with vulnerability management, DAST, SAST, and SCA tools.
- 5+ years of experience securing cloud environments (Azure, AWS, or Google Cloud).
- 2+ years experience in cyber risk and assurance applying NIST frameworks (800-53, 800-171).
Culture & Benefits
- Comprehensive Total Rewards Program designed to motivate and reward staff.
- Remote work flexibility with hybrid options at U.S. office locations.
- Collaborative environment focused on mission-driven behavioral and social science research.
- Commitment to a drug-free, inclusive, and affirmative action workplace.
- Opportunities for professional growth in a nonpartisan, not-for-profit setting.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →