Welcome to RemoteYeah 2.0! Find out more about the new version here.

Remote Senior Security Analyst (Remote - US)

at Jobgether

Posted 13 hours ago 1 applied

Description:

  • The position is for a Senior Security Analyst, Vulnerability Management, at Fullsteam, located in the United States.
  • The role involves taking ownership of a vulnerability management program, focusing on identifying, evaluating, and remediating security risks.
  • The analyst will collaborate with engineering, IT, and compliance teams to enhance the organization’s security posture.
  • Responsibilities include designing, implementing, and maintaining the vulnerability management program in line with security SLAs.
  • The analyst will develop secure configuration standards and hardening guides across various platforms and systems.
  • The role requires collaboration with teams to assess risks, prioritize remediation efforts, and improve threat mitigation outcomes.
  • Ensuring compliance with standards such as PCI-DSS, SOC2, ISO 27001, and NIST CSF is essential.
  • The analyst will automate and enhance vulnerability detection and reporting processes for increased efficiency.
  • Contributions to enterprise risk management, including maintaining risk registers and providing key metrics, are expected.
  • The position also involves mentoring junior security team members and fostering a culture of continuous improvement.

Requirements:

  • Candidates must have 4+ years of experience in vulnerability management, attack surface management, or related areas.
  • Expertise with tools such as Qualys, Nessus, Rapid7, Wiz, Orca, or Microsoft Defender is required.
  • A working knowledge of application security testing tools and methodologies (SAST, DAST, IAST) is necessary.
  • Experience with scripting in languages such as Python, Bash, or PowerShell is preferred.
  • A strong understanding of security compliance frameworks (PCI, SOC2, NIST, ISO) is essential.
  • Candidates must be able to work autonomously in a remote-first setting while managing multiple priorities.
  • Relevant certifications such as CISSP, GIAC, CISM, or CRISC are strongly preferred.
  • A Bachelor’s degree in cybersecurity or equivalent professional experience is required.
  • Exposure to project management principles and collaborative process documentation is beneficial.

Benefits:

  • The position offers a competitive salary and performance-based bonuses.
  • Employees will enjoy a fully remote work environment with flexible scheduling.
  • The company promotes an inclusive and supportive culture.
  • Medical, dental, and vision insurance coverage is provided.
  • Professional development and certification reimbursement are available.
  • There are opportunities for growth within a fast-scaling organization.
  • Paid time off and company-recognized holidays are included.