Назад
Company hidden
9 дней назад

Junior Security Analyst (SaaS)

Тип работы
fulltime
Грейд
junior
Английский
b2
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Junior Security Analyst (SaaS): Supporting security operations, governance, risk, and compliance activities for a global CRM platform with an accent on security monitoring, access management, and audit readiness. Focus on analyzing security events, tracking vulnerability remediation, and ensuring compliance with frameworks like ISO 27001 and SOC 2.

Company

hirify.global is a global vendor of an agentic CRM & workflow platform with no-code and AI at its core.

What you will do

  • Monitor and analyze security events using SIEM reports and other security tools.
  • Support incident response activities, including triage, investigation, evidence collection, and root cause analysis.
  • Perform access management activities, including periodic access reviews and entitlement validation.
  • Support vulnerability management by tracking findings, remediation progress, and risk acceptance.
  • Prepare and maintain security metrics, KPIs, reports, risk registers, and remediation logs.
  • Support audit readiness and evidence collection for ISO 27001/17/18, SOC 2, GDPR, HIPAA, and other relevant frameworks.

Requirements

  • 1+ years of experience in information security, cybersecurity, IT, compliance, audit, or risk management.
  • Hands-on experience in a Security Analyst or similar cybersecurity role.
  • Understanding of IAM, access reviews, vulnerability management, and incident response.
  • Exposure to cloud security, endpoint security, cloud IAM models, and networking fundamentals.
  • Familiarity with SOC 2, ISO 27001, NIST CSF, CIS Controls, or GDPR.
  • Ability to analyze security data, trends, and metrics and communicate findings clearly.

Nice to have

  • Security, privacy, or audit-related certifications (e.g., Security+, ISO 27001 Foundation, CCSK, or CISA).
  • Background in supporting BCP/DRP testing or tabletop exercises.
  • Practical exposure to audits, compliance reviews, or vendor assessments.
  • Familiarity with SOAR tools or incident response automation.
  • Scripting or automation skills with Python, PowerShell, or Bash.

Culture & Benefits

  • Clear career paths, mentorship opportunities, and access to continuous learning.
  • Flexible work arrangements to help manage schedules effectively and maintain productivity.
  • Culture that celebrates achievements and empowers employee ideas.
  • Competitive compensation and benefits package tailored to the country of residence.
  • Innovative environment that embraces new ideas and modern technologies.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →