Source Job

$120,000–$170,000/yr
US

  • Manage and conduct penetration testing, antivirus scanning, and SIEM tooling to ensure system security.
  • Assess software systems for security posture and maintain compliance frameworks like SOC2, NIST, and CJIS.
  • Respond to security questionnaires, manage training programs, and improve Business Continuity and Disaster Recovery plans.

Security Analysis Penetration Testing Compliance Management SIEM

20 jobs similar to IT Security Analyst

Jobs ranked by similarity.

$120,000–$132,000/yr
US

  • Improve, manage, and provide direction for LSAC's Security Policies, Procedures, and Best Practices.
  • Perform IT security inspections, tests, audits, and vulnerability assessments to ensure compliance with SOC2, IT/Financial Audits, and PCI/DSS.
  • Consult, monitor, and report on security systems like intrusion prevention, VPNs, firewalls, and conduct penetration testing to close security gaps.

LSAC advances law and justice by promoting access, equity, and fairness in law school admission and supporting the learning journey from prelaw through practice. They are a mission-driven organization with a culture of continuous improvement and creativity, emphasizing accountability and technical leadership.

India

  • Monitor enterprise AI usage end to end to detect unauthorized AI tools and rogue agent activity.
  • Investigate alerts related to autonomous agents and AI-powered workflows, including data exfiltration and credential misuse.
  • Partner with security, legal, and engineering teams to align findings with incident response processes and support ISO 42001 audits.

AlphaSense provides AI-driven market intelligence and search to help companies make informed decisions. With over 2,000 employees across the globe, the company fosters a collaborative and innovative culture.

US

  • Manage and maintain version control of all documentation related to compliance for each standard and track implementation status of security controls.
  • Oversee preparation and execution of external compliance audits, including facilitating security assessments.
  • Support mapping of compliance requirements to security control implementation using agile development processes.

Hypori is a high-growth cybersecurity SaaS company providing a virtual workspace platform for secure mobile access. Backed by $55M in funding, the company is expanding into commercial and regulated markets with a focus on innovation and security.

US

  • Lead the design and governance of control frameworks and risk workflows within the GRC platform, ensuring alignment with compliance requirements like HIPAA, HITRUST, and NIST.
  • Oversee risk assessments, control testing, and vendor evaluations to identify and mitigate security risks.
  • Manage policy lifecycle, audit coordination, and reporting on control effectiveness and risk indicators.

USAP is a healthcare organization focused on providing anesthesia services and patient safety. It is a growing company with a culture of security, compliance, and collaboration.

EMEA

  • Represent the security organization in customer-facing incidents, cases, and security-related calls.
  • Own, triage, investigate, and respond to security matters, ensuring timely communication and resolution.
  • Act as the primary point of contact for security matters, supporting both internal and external stakeholders.

ServiceNow provides an AI platform for business reinvention, helping 85% of the Fortune 500 work smarter and faster. The company fosters an AI-native culture where technology and talent are unstoppable together.

US

  • Design and implement cybersecurity architectures, controls, and technologies for secure government systems.
  • Manage Authority to Operate (ATO) activities, including security documentation, compliance tracking, and continuous monitoring.
  • Apply NIST SP 800 security controls and support Risk Management Framework (RMF) implementation.

The partner organization provides advanced cybersecurity solutions for critical government technology environments. They operate in a mission-driven, collaborative culture with a focus on protecting federal systems.

US

  • Secure AI systems and use AI to scale security, conducting security reviews and threat modeling of AI-integrated product features.
  • Deliver end-to-end application security reviews for high-risk features, working directly with engineering teams to surface and close risk.
  • Advance CI/CD pipeline security by operating and evolving security scanning controls in GitLab pipelines.

Smartsheet empowers teams to manage work and scale solutions by uniting human teams with AI agents. They are a large company with over 20 years of experience, fostering a culture where ideas are heard and contributions have real impact.

US

  • Monitor networks for security breaches and investigate violations.
  • Assist in developing business continuity and recovery standards.
  • Install and use software like firewalls and data encryption to protect sensitive information.

Gilbane is a top-10 ENR Contractor and a family-owned business with 45 offices, shaping communities since 1870. It is consistently recognized as one of the most reputable construction management firms in the country, committed to delivering projects safely and on-time.

US

  • Execute formal SCA/R duties and lead security assessment efforts.
  • Establish reusable security playbooks and assessment frameworks for rapid AI deployment.
  • Evaluate technical control effectiveness across AWS cloud, DevSecOps pipelines, and AI/LLM stacks.

Dark Wolf Solutions specializes in cybersecurity engineering, cloud architecture, and DevSecOps prototyping for high-priority projects, including AI/LLM technologies. The company is an EEO/AA employer and focuses on fast-paced, collaborative environments.

$80,900–$137,600/yr

  • Monitors, investigates, and responds to cybersecurity events and alerts across various security platforms.
  • Manages data loss prevention and insider risk alerts, collaborating with IT and business stakeholders.
  • Supports continuous improvement of detection capabilities through alert tuning and process optimization.

USAP is a company that safeguards organizational data and technology assets through cybersecurity operations. The size and culture are not specified, but the job emphasizes collaboration, continuous improvement, and a secure technology environment.

Canada United States

  • Execute the security architecture process for business initiatives, from engagement through to implementation.
  • Support the Information Security Architect across analysis, reviews, and outputs as needed.
  • Act as a point of contact for InfoSec queries and use security tooling to identify and analyze risks.

StackAdapt is a leading technology company that provides an AI-powered marketing platform for programmatic advertising. The company has a diverse, remote-first culture with a supportive workplace.

$172,279–$249,640/yr
US Canada

  • Partner with engineering teams to review cloud and compute architecture design changes.
  • Establish threat models for cloud and compute paved roads to identify security risks.
  • Write code for automations that support security requirements like threat detection and incident containment.

Quora operates two platforms: a global knowledge sharing platform with over 300 million monthly unique visitors, and Poe, a platform for AI language models. The company is remote-first with a culture rooted in transparency, idea-sharing, and experimentation.

US

  • Responsible for daily incident management of customer incidents, including incident response and forensic analysis of compromised systems.
  • Formulate and direct incident response efforts, prioritize response actions, and create legible incident reports describing compromise vectors and attacker methodologies.
  • Build and maintain incident response plans, playbooks, and sandbox/test lab environments to evaluate malicious code.

We protect over 100,000 organizations worldwide from increasingly sophisticated cyber and AI-driven threats, securing their AI transformation with a prevention-first approach. We are recognized by TIME, Newsweek, and Forbes for our excellence and workplace culture, and we value ownership, curiosity, and solving complex problems.

$230,000–$250,000/yr
United States Unlimited PTO 12w maternity 12w paternity

  • Own our approach to AI and agentic security: guardrails for agentic access to cloud and data, and the security of AI/ML workloads.
  • Own our detection platform (Panther): detection strategy and coverage across cloud, container, and SaaS log sources.
  • Act as the senior security resource across cloud security and security reviews, mentoring teammates.

SmarterDx is a clinical AI platform that helps health systems capture revenue and improve quality metrics using clinically-validated EHR data. The company is a remote-first team with a small, collaborative engineering culture focused on making healthcare more accurate and effective.

Poland

  • Define security guardrails and perform risk assessments and red-team exercises for AI technologies.
  • Collaborate with Security, Architecture, Engineering, and Compliance teams throughout the AI solution lifecycle.
  • Advise on secure implementation and contribute to AI security awareness initiatives.

Inetum Polska is part of the global Inetum Group, driving digital transformation for businesses and public institutions. With over 28,000 professionals across 19 countries, the company fosters a diverse and inclusive work environment and actively supports employee development.

$105,000–$130,000/yr
US

  • Consult onsite and remotely with customers to collect and analyze data related to policies, infrastructure, and compliance requirements.
  • Perform gap analyses of current environments and recommend remediation steps.
  • Assist with sales and marketing activities as a subject matter expert and prepare industry presentations.

CampusGuard provides information security and privacy consulting and compliance services for campus-based organizations. It is a full-service firm leveraging industry standards to deliver world-class security and compliance services.

Australia

  • Define the strategic direction and security frameworks for AI systems at scale.
  • Lead research into emerging AI threats and drive threat modeling.
  • Serve as the technical authority for AI security across Canva.

Canva is a design platform that empowers the world to design. We have campuses in Sydney, Melbourne, and other Australian cities, with a culture that trusts our Canvanauts to choose the balance that empowers them.

$51,840–$64,800/yr
Europe

  • Support the ISO 27001 program by maintaining audit readiness, running evidence collection, and managing access reviews.
  • Perform recurring security operations including vulnerability scanning, risk assessments, and vendor reviews.
  • Collaborate cross-functionally to harden identity and access management, respond to security questionnaires, and support AI governance initiatives.

Didomi is a consent management platform that helps companies manage user consent and data privacy. The company is a growing SaaS organization with a collaborative culture, emphasizing automation and efficiency.

$130,000–$160,000/yr
US Unlimited PTO

  • Design and evolve security architecture across cloud infrastructure, applications, and CI/CD pipeline.
  • Conduct threat modeling, architecture reviews, and define secure design patterns for GCP-based environment.
  • Evaluate emerging technologies like AI and GenAI platforms to identify risks and define secure adoption patterns.

Airship provides a no-code, AI-powered platform for brands like Alaska Airlines and BBC to create personalized cross-channel customer experiences. The company fosters a digital-first, flexible remote culture with a collaborative team across time zones.

UK

  • Lead and support the response to all security events and incidents across Twilio's global infrastructure, services, and applications.
  • Work cross-collaboratively to solve challenges related to a broad spectrum of threat actors and improve security posture.
  • Own the security incident lifecycle, participate in on-call rotation, and conduct post-incident betterments.

Twilio shapes the future of communications with innovative solutions for hundreds of thousands of businesses, empowering millions of developers worldwide. The company embraces a remote-first work culture and a strong culture of connection and global inclusion, fostering a vibrant and diverse team.