Cobalto Talent logo
Cobalto Talent

Conectamos con intención. Hacemos ganar.

Information Security Analyst | Cybersecurity

Security AnalystSecurity AnalystFull TimeRemoteMid LevelTeam 11-50Since 2022H1B No SponsorCompany SiteLinkedIn

Location

Mexico

Posted

6 days ago

Salary

0

Seniority

Mid Level

Job Description

Information Security Analyst | Cybersecurity

Cobalto Talent

Role Description We are looking for a proactive and detail-oriented Information Security Analyst to help protect our organization's systems, data, and digital assets. This role is ideal for cybersecurity professionals who are passionate about identifying risks, strengthening security controls, ensuring regulatory compliance, and responding to security threats in fast-paced environments. You'll work closely with IT, Engineering, DevOps, Compliance, and Business teams to maintain a strong security posture, support compliance initiatives (including SOC 2), and implement security best practices across cloud and on-premise environments. If you're passionate about cybersecurity, governance, risk management, and helping organizations stay ahead of evolving threats, we'd love to hear from you. What You'll Do - Monitor, analyze, and respond to cybersecurity incidents, alerts, and vulnerabilities. - Conduct security risk assessments and identify potential threats across systems, networks, and applications. - Support and maintain compliance with security frameworks such as SOC 2, ISO 27001, NIST, CIS Controls, and GDPR where applicable. - Perform vulnerability assessments and coordinate remediation efforts with technical teams. - Review security logs, investigate suspicious activity, and participate in incident response processes. - Collaborate with Engineering and DevOps teams to integrate security best practices throughout the software development lifecycle (DevSecOps). - Develop, maintain, and update information security policies, procedures, and documentation. - Assist with internal and external security audits. - Manage identity and access management (IAM), user permissions, and privileged access controls. - Deliver security awareness training and promote cybersecurity best practices across the organization. - Stay current with emerging cyber threats, vulnerabilities, and security technologies. Qualifications - Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field. - 3+ years of experience in Information Security, Cybersecurity, Security Operations, or Risk & Compliance. - Experience supporting SOC 2 compliance initiatives and security audits. - Strong knowledge of security frameworks such as SOC 2, ISO 27001, NIST, and CIS Controls. - Experience performing vulnerability management, risk assessments, and incident response. - Familiarity with SIEM, EDR, IAM, and endpoint security solutions. - Experience working in cloud environments (AWS, Azure, or Google Cloud). - Strong analytical, documentation, and problem-solving skills. - Professional English proficiency (B2+/C1). - Ability to work independently in a remote and collaborative environment. Preferred Qualifications - Security certifications such as Security+, CySA+, CISSP, CISM, CISA, SSCP, CEH, or GSEC. - Experience supporting U.S.-based companies or global organizations. - Knowledge of DevSecOps, cloud security, and infrastructure security. - Experience with penetration testing or vulnerability scanning tools. - Familiarity with privacy regulations such as GDPR, HIPAA, or PCI DSS. - Experience in SaaS, Technology, FinTech, Healthcare, or Cloud-based organizations. Requirements - Bachelor's degree in Cybersecurity, IT, Computer Science, or related field. - 3+ years of experience in Information Security or Cybersecurity. - Experience with SOC 2, ISO 27001, or NIST. - Experience in Incident Response and Vulnerability Management. - Experience with SIEM tools (Splunk, Sentinel, QRadar). - Experience with IAM (Okta, Azure AD, Active Directory). - Experience securing AWS, Azure, or GCP environments. - English B2+. Preferred (Bonus) - CISSP, CISM, Security+, CySA+, CEH certifications. - Experience with CrowdStrike, Defender, Nessus, Qualys. - Experience supporting U.S. companies. - Knowledge of DevSecOps and Cloud Security. Why Join Us? Join a company that values security as a strategic business priority. You'll work alongside experienced technology professionals to strengthen our cybersecurity posture, protect critical business assets, and support compliance initiatives that enable trust with our customers and partners. Your expertise will directly contribute to building a secure and resilient organization. Next Step Please remember to check your email and complete your One-Way Video Interview. This is the next step in our hiring process and will help us better understand your cybersecurity expertise, risk management experience, problem-solving skills, and ability to protect modern technology environments. We look forward to learning more about you!

Related Job Pages

More Security Analyst Jobs

Role Description cFocus Software seeks a Sr. ISSO to join our program supporting the United States International Defense Finance Corporation (DFC). This position is remote and requires a Public Trust clearance. - Assume Lead ISSO duties during scheduled or unscheduled absences and shall maintain continuity of ISSO operations. - Perform senior ISSO duties for assigned systems as directed by the Lead ISSO. - Support consistent execution of ISSO activities across assigned systems. - Lead assigned RMF, continuous monitoring, vulnerability management, POA&M, audit-support, and compliance workstreams. - Maintain proficiency in DFC authoritative tools, including ServiceNow, CSAM, Splunk, and vulnerability scanning platforms in use. Qualifications - Active Public Trust clearance. - B.S. Computer Science, Information Technology, or a related field. - 7+ years of cybersecurity or information assurance experience. - 5+ years supporting federal information systems as an ISSO, Information Assurance Engineer, Cybersecurity Analyst, or equivalent role. - Demonstrated experience implementing the NIST Risk Management Framework (RMF). - Experience supporting Authorization to Operate (ATO) activities. - Experience supporting FISMA compliance. - Experience preparing cybersecurity documentation and executive reports. Company Description

United States
Nightingale Education Group logo

Senior Analyst, Cyber Security

Nightingale Education Group

Supporting group for Nightingale College, Nightingale Innovations, and Nightingale Solutions.

Full TimeRemoteTeam 1,001-5,000H1B No Sponsor

• Support Nightingale College’s security operations and vulnerability management activities • Monitor security events and coordinate investigations and remediation • Perform vendor security assessments and manage third-party risks • Maintain assessment documentation and support reporting processes • Operate vulnerability management workflows and support access governance and security process improvement

Utah
Full TimeRemoteTeam 5,001-10,000H1B No Sponsor

• Work in a complementary capacity to the Security Operations Center (SOC), performing specialized handling, containment, and response activities for cyber events and incidents; • Conduct threat intelligence, Threat Hunting, and Purple Team activities to proactively identify risks and threats to the technology environment; • Perform in-depth analysis of security logs and digital forensics to investigate cyber events and incidents; • Develop and use automations with languages such as Python, PowerShell, or Bash to support detection, containment, and mitigation processes; • Periodically assess the technology environment to identify vulnerabilities and security gaps in servers, systems, and images; • Apply vulnerability remediations and hardening configurations to strengthen the security of technology assets and reduce cyber risks.

Brazil
Full TimeRemoteTeam 1,001-5,000Since 1970H1B Sponsor

• Lead detection and response for incidents affecting: Manufacturing systems (OT/ICS), Connected medical/surgical devices, Enterprise IT environments • Manage SOC operations with prioritization of IT security, production integrity, and supply chain impact • Investigate and respond to incidents involving: Intellectual property theft, Disruptions and/or ransomware affecting production lines, IT vulnerabilities • Partner with IT, production, and engineering to embed secure-by-design principles across the IT & product lifecycle • Conduct threat modeling and security risk assessments for surgical and medical devices • Support compliance with: IT security guidance, SOX, ISO27001, EU GDPR / NIS2 • Identify and remediate product vulnerabilities (secure firmware, APIs, connectivity) • Secure manufacturing environments (plants, production lines, robotics, control systems) • Lead vulnerability and patch management for industrial control systems • Reduce risk to production continuity and product integrity • Monitor threat landscape with emphasis on: Nation-state attacks targeting IP, Supply chain compromise, Medical device exploitation • Implement Zero Trust principles across corporate IT and manufacturing environments • Ensure alignment with: SOX, ISO 27001, NIST CSF / NIST 800-53, Global data protection regulations (GDPR where applicable)

Florida
$104.1K - $163.6K / year
Job Closed