Назад
Company hidden
21 час назад

Security Risk & Compliance Analyst (Cybersecurity)

85 100 - 154 420$
Формат работы
remote (только USA)
Тип работы
fulltime
Грейд
junior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Risk & Compliance Analyst (Cybersecurity): Supporting Jamf’s security risk and compliance program through risk assessments, policy maintenance, audits, vendor reviews, and customer assurance with an accent on cybersecurity frameworks, regulatory compliance, and security controls. Focus on evaluating cyber risks, maintaining ISO 27001, ISO 27701, SOC 2, and StateRAMP certifications, and coordinating remediation across multiple teams.

Location: US Remote; periodic work at a hirify.global office or collaborative work location may be required for certain events.

Salary: $85,100–$154,420 USD annually, with the range varying by U.S. hiring location.

Company

hirify.global provides Apple device management, deployment, and security solutions for workplaces, schools, and healthcare organizations worldwide.

What you will do

  • Conduct security risk assessments and evaluate cyber risk treatment plans.
  • Maintain security policies and monitor implementation against applicable laws, regulations, and industry standards.
  • Participate in external audits supporting ISO 27001, ISO 27701, SOC 2 Type 2, and StateRAMP certifications.
  • Support vendor risk management and review security terms in vendor, partner, and customer contracts.
  • Respond to security questionnaires and assurance requests from customers, prospects, and partners.
  • Support security awareness training, senior-management reporting, and continuous program improvement.

Requirements

  • At least 1 year of relevant experience in security operations, governance, risk management, or compliance.
  • Familiarity with risk management methodologies, cybersecurity frameworks, and regulatory compliance.
  • Working knowledge of operating systems, networking, cloud technology, and security tools.
  • Strong analytical, problem-solving, written, verbal, and interpersonal communication skills.
  • Bachelor’s degree in Computer Science or a related field, or an equivalent combination of education and experience.
  • Ability to work both collaboratively and independently across multiple projects.

Nice to have

  • Experience with GRC applications.
  • Knowledge of StateRAMP or FedRAMP.
  • Progress toward CGRC, CISA, CISSP, CISM, or CompTIA Security+ certification.
  • AWS experience or security training from ISACA.

Culture & Benefits

  • Flexible remote work culture based on trust, respect, ownership, and work-life balance.
  • Opportunity to contribute to security services used by more than 75,000 global customers.
  • Small, empowered teams with supportive leadership and a clear career-growth path.
  • Ongoing security training and continuous learning are supported.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →