Назад
Company hidden
3 дня назад

Senior Cybersecurity Risk Analyst (NIST)

157 000 - 180 000$
Формат работы
remote (только USA)/hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Senior Cybersecurity Risk Analyst (NIST): Coordinating and driving institution-wide security initiatives including threat exposure management, red-team engagements, and risk assessment with an accent on cloud security and regulatory compliance. Focus on vulnerability management, application security testing (DAST/SAST), and managing enterprise risk registries.

Location: Must be based in the United States (US-Remote with optional hybrid flexibility)

Salary: $157,000–$180,000 USD

Company

The hirify.global (AIR) is a nonpartisan, not-for-profit organization conducting behavioral and social science research and providing data-driven technical assistance to address pressing societal challenges.

What you will do

  • Drive vulnerability management activities including scanning and tracking findings across network, containers, and applications.
  • Execute application security testing (DAST, SAST) and lead targeted red teaming engagements.
  • Lead cyber risk management, identify enterprise risks, and develop comprehensive treatment plans.
  • Oversee remediation of findings using standard Plan of Action and Milestones (POA&M) processes.
  • Respond to complex client data security and privacy questionnaires.
  • Serve as HIPAA Security Officer and support AI governance and third-party risk management initiatives.

Requirements

  • Bachelor’s degree and minimum 9 years of information security experience.
  • Must be authorized to work in the U.S. (sponsorship not available).
  • Current major cybersecurity certification from ISC2, ISACA, OffSec, or SANS.
  • 5+ years of hands-on experience with vulnerability management, DAST, SAST, and SCA tools.
  • 5+ years of experience securing cloud environments (Azure, AWS, or Google Cloud).
  • 2+ years experience in cyber risk and assurance applying NIST frameworks (800-53, 800-171).

Culture & Benefits

  • Comprehensive Total Rewards Program designed to motivate and reward staff.
  • Remote work flexibility with hybrid options at U.S. office locations.
  • Collaborative environment focused on mission-driven behavioral and social science research.
  • Commitment to a drug-free, inclusive, and affirmative action workplace.
  • Opportunities for professional growth in a nonpartisan, not-for-profit setting.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →