Назад
Company hidden
6 дней назад

Senior IT and Security Governance Analyst (Cybersecurity)

80 000 - 90 000$
Формат работы
remote (Global)
Тип работы
fulltime
Грейд
senior
Английский
b2
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior IT and Security Governance Analyst (Cybersecurity): Advancing technology governance, security controls, data stewardship, and operational risk management across corporate IT, cloud, product, and operational environments with an accent on IAM, data governance, cloud security, and compliance frameworks. Focus on maintaining risk registers, coordinating vulnerability and incident response activities, implementing Secure SDLC practices, and strengthening resilience through audits, vendor assurance, and disaster recovery testing.

Location: Fully remote

Salary: $80,000–$90,000 per year

Company

hirify.global provides services and programs supporting Deaf and hard-of-hearing communities.

What you will do

  • Maintain IT and security roadmaps, risk registers, policies, system ownership records, technology inventories, and governance reporting.
  • Implement data classification, access governance, retention standards, data flow documentation, and security control mappings.
  • Administer IAM processes covering SSO, MFA, least privilege, access reviews, and joiner-mover-leaver workflows.
  • Coordinate endpoint management, SaaS governance, backups, vulnerability management, and cloud security guardrails.
  • Partner with Engineering on Secure SDLC practices, secure architecture reviews, threat modeling, and scalable system design.
  • Maintain incident response runbooks, coordinate tabletop exercises, support business continuity testing, and manage vendor security assessments and audits.

Requirements

  • Bachelor’s degree in IT, Cybersecurity, Computer Science, or a related field, or at least five years of progressively responsible experience in IT governance, cybersecurity, IT operations, or risk management.
  • Experience across multiple IT and security domains, including IAM, logging, endpoint security, encryption, backups, vulnerability management, and network security.
  • Ability to analyze complex technical risks, develop practical recommendations, and independently lead cross-functional initiatives.
  • Experience implementing IT, data, or security governance initiatives and supporting audits or frameworks such as PCI DSS, SOC 2, ISO 27001, NIST 800-53 Rev. 5, or HIPAA-adjacent controls.
  • Relevant certifications such as Security+, SSCP, GSEC, CISSP, CISM, or CCSP are relevant to the role.
  • Experience supporting grant-funded initiatives, multi-partner collaborations, or externally funded programs.

Nice to have

  • Experience with AWS, Azure, or GCP and CI/CD environments.
  • Experience with MDM, EDR, SIEM, vulnerability scanners, and related tools.
  • Familiarity with secure software development practices and threat modeling.
  • Ability to communicate effectively in American Sign Language.

Culture & Benefits

  • Fully remote work environment.
  • Cross-functional collaboration with Engineering, Legal, program teams, and business stakeholders.
  • Work focused on improving resilience, accountability, security, and sustainable organizational growth.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →