Job Closed
This listing is no longer active.
Security Analyst
Location
United States
Posted
98 days ago
Salary
0
No structured requirement data.
Job Description
Security Analyst
CoSourcing Partners
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description We are seeking a SOC 2 Audit Coordinator to own and drive the execution of SOC 2 audits across IT and Security teams. This role is responsible for managing audit timelines, coordinating evidence collection, tracking controls, and serving as the primary point of contact between internal stakeholders and external auditors. This is a high-visibility, execution-oriented role focused on keeping audits on track, reducing organizational friction, and ensuring successful audit outcomes. The ideal candidate has hands-on experience supporting SOC 2 audits and thrives in fast-paced environments that require strong follow-through, organization, and communication. - Coordinate end-to-end SOC 2 audit activities, including readiness, evidence collection, review cycles, and auditor interactions - Maintain ownership of audit timelines, deliverables, and milestones - Translate auditor requests into clear, actionable evidence asks for IT and Security teams - Validate evidence for completeness, accuracy, and alignment to SOC 2 control requirements - Work closely with Engineering, IT, Security, Compliance, and Leadership teams to collect required evidence - Track ownership of controls and follow up consistently to ensure timely delivery - Proactively identify risks, gaps, or blockers and escalate appropriately - Maintain organized audit repositories, evidence libraries, and version control - Map evidence to SOC 2 Trust Services Criteria and control narratives - Ensure documentation is audit-ready and reusable across future audits - Serve as the primary liaison with external auditors - Provide clear, concise audit status updates to leadership - Draft professional communications for evidence requests, follow-ups, and escalations - Keep stakeholders aligned without introducing unnecessary friction or noise Qualifications - Hands-on experience supporting or coordinating SOC 2 audits - Strong understanding of SOC 2 Trust Services Criteria, audit workflows, and evidence expectations - Familiarity with security and governance frameworks such as NIST CSF, ISO 27001, or COBIT - Proven ability to manage multiple concurrent workstreams with tight deadlines - Strong tracking and follow-through skills across controls, evidence, and owners - Excellent written and verbal communication skills - Ability to provide polite-but-firm follow-ups to keep work moving - Highly detail-oriented with strong documentation and organizational discipline Requirements - Experience coordinating audits in SaaS or technology-driven organizations - Background working with auditors, GRC teams, or security leadership - Familiarity with audit tools, ticketing systems, or compliance platforms - Experience supporting repeat SOC 2 audits or continuous compliance programs Ideal Candidate Profile - Execution-first mindset — gets things done without waiting to be asked - Calm under pressure and comfortable managing ambiguity - Organized, structured, and proactive - Confident communicating with engineers, leadership, and auditors - Treats audits as a program to run, not a task to react to Why This Role Matters This role is critical to maintaining customer trust, meeting regulatory commitments, and protecting the organization’s ability to scale. Success is measured by on-time audits, clean evidence reviews, and minimal disruption to internal teams.
Job Requirements
- Hands-on experience supporting or coordinating SOC 2 audits
- Strong understanding of SOC 2 Trust Services Criteria, audit workflows, and evidence expectations
- Familiarity with security and governance frameworks such as NIST CSF, ISO 27001, or COBIT
- Proven ability to manage multiple concurrent workstreams with tight deadlines
- Strong tracking and follow-through skills across controls, evidence, and owners
- Excellent written and verbal communication skills
- Ability to provide polite-but-firm follow-ups to keep work moving
- Highly detail-oriented with strong documentation and organizational discipline
- Experience coordinating audits in SaaS or technology-driven organizations
- Background working with auditors, GRC teams, or security leadership
- Familiarity with audit tools, ticketing systems, or compliance platforms
- Experience supporting repeat SOC 2 audits or continuous compliance programs
- Ideal Candidate Profile
- Execution-first mindset — gets things done without waiting to be asked
- Calm under pressure and comfortable managing ambiguity
- Organized, structured, and proactive
- Confident communicating with engineers, leadership, and auditors
- Treats audits as a program to run, not a task to react to
- Why This Role Matters
- This role is critical to maintaining customer trust, meeting regulatory commitments, and protecting the organization’s ability to scale. Success is measured by on-time audits, clean evidence reviews, and minimal disruption to internal teams.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Cybersecurity Analyst
Med A/RxMeduit is one of the nation’s leading revenue cycle management solutions companies, partnering with hospitals and physician practices in 48 states to provide excellent, compassionate patient engagement. We focus our talents on addressing patient questions after their visit so our clients can focus on their treatment. Our core values that we live daily are Integrity, Teamwork, Continuous Improvement, Client-Focused, and being Results-Oriented. Meduit is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race, color, religion, sex, age, national origin, disability, military status, genetic information, sexual orientation, marital status, domestic violence victim status or status as a protected veteran or any other federal, state, or local protected class.
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description Support our healthcare partners & help them thrive at Meduit! We’re seeking a hands-on Cybersecurity Analyst to strengthen our security posture. You’ll work with tools like CrowdStrike, Rapid7 InsightVM/IDR, and Microsoft Defender for Cloud, while helping implement Microsoft Purview for data protection and compliance. Strong Azure security knowledge is essential. Key Responsibilities - Implement and manage Microsoft Purview for data protection - Investigate alerts from CrowdStrike, Azure Defender, and Rapid7 InsightIDR - Support endpoint security and hardening efforts - Review and prioritize vulnerabilities using Rapid7 InsightVM - Monitor identity security, MFA, and Conditional Access in Azure/Entra ID - Document investigations and remediation steps - Collaborate with IT teams to resolve security issues Qualifications - Strong knowledge of Azure security, identity protection, and endpoint security - Ability to apply networking fundamentals (TCP/IP, DNS, firewalls, VPNs) in security monitoring, incident investigation, and threat analysis - Hands-on experience with CrowdStrike, Rapid7, and Microsoft Purview - Ability to analyze alerts, investigate incidents, and recommend improvements - Excellent documentation and communication skills Requirements - 2 to 4+ years in cybersecurity or SOC operations - 1 year of hands-on experience with networking fundamentals (TCP/IP, DNS, firewalls, VPNs) applied in security investigations - Experience with: - Azure AD / Entra ID - Microsoft Defender for Cloud - CrowdStrike Falcon - Rapid7 InsightVM / IDR - Microsoft Purview - Certifications: - SC-900 (Microsoft Security Fundamentals) - SC-400 (Information Protection Administrator) Preferred Qualifications - Certifications: - SC-200 - SC-300 - AZ-500 - CompTIA Security+ or CySA+ - Bachelor’s degree in Cybersecurity, IT, or related field Benefits - Positive and engaging work culture - Medical, Dental, and Vision insurance (among many other options) - HSA and FSA available - 401K - PTO and Paid holidays - Internal Company Growth Additional Information - Salary: $80,000 to $95,000 depending on skills and qualifications - Location: Remote - Anticipated start date: 1/1/2026 - Internet Speed Test: A download speed of 30MB or higher & upload speed of 10MB or higher are REQUIRED. (you can test your speed here: https://speedtest.net/ ) - Background check: As a condition of employment, a pre-employment background check will be conducted Company Description Meduit is one of the nation’s leading revenue cycle management solutions companies, partnering with hospitals and physician practices in 48 states to provide excellent, compassionate patient engagement. We focus our talents on addressing patient questions after their visit so our clients can focus on their treatment. Our core values that we live daily are Integrity, Teamwork, Continuous Improvement, Client-Focused, and being Results-Oriented. Meduit is an Equal Opportunity Employer and does not discriminate against any employee or applicant for employment because of race, color, religion, sex, age, national origin, disability, military status, genetic information, sexual orientation, marital status, domestic violence victim status or status as a protected veteran or any other federal, state, or local protected class.
Application Security Analyst
Knitwell GroupKnitWell Group, a specialty retail operating company, comprises some of the most iconic brands in America – Ann Taylor, Chico's, Haven Well Within, Lane Bryant, LOFT, Soma, Talbots, White House Black Market. Individually, our brands are unique and strong. Together, we are powerful. Our common thread is our commitment to create exceptional products, provide memorable experiences, and achieve superior results. Our associates are innovators who thrive through collaboration and are dedicated to excellence. At the heart of it all are the customers we serve.
This description is a summary of our understanding of the job description. Click on 'Apply' button to find out more. Role Description An application security analyst is a trained professional responsible for providing security assessments of applications and other software. The goal of these assessments is to protect organizations from hacking attempts and threats such as phishing, malware, and ransomware. - Conduct application security assessments to identify and mitigate security risks - Perform DAST scans for the internal and external applications - Conduct end-to-end Pentest engagement for E-commerce applications - Perform False positive analysis for vulnerabilities from scan results - Analyze the security risks and create vulnerability report with recommendations - Work collaboratively with cross-functional teams to identify and solve complex security problems - Work on ad hoc SAST scan requests and vulnerability analysis - Participate in incident response activities and provide technical guidance on security-related incidents - Develop and maintain technical documentation related to application security Qualifications - Education and/or Certifications in Computer Science, Information Systems, other related field, or equivalent work experience - 3-5+ years of IT work experience, with at least 2 years of experience working in Application security - Working experience with security testing tools (DAST, SAST, SCA) - Hands on experience with manual web application penetration testing (VAPT) - Proficient in Burp suite and Kali Linux tools - Experience on API testing - Knowledge of secure coding practices/frameworks such as OWASP, SSDF - Strong knowledge of application security principles - Knowledge on Threat Modeling and DevSecOps - Strong working knowledge of IT Security best practices - Knowledge of policies and procedures; governance practices and control frameworks (ITIL); and regulatory obligations (SOX and PCI) as it relates to information systems - Familiarity with software development methodologies such as Agile or DevOps - Knowledge in any one programming languages such as Java, Python, or C++ - Proficiency in some scripting languages (PowerShell, JavaScript, SQL, etc.) - Understanding of various operating system platforms including Windows, UNIX, etc. - Ability to interact with all levels of management - Must possess an understanding of the retail industry - Must possess an understanding eCommerce infrastructure Benefits - You will be eligible to receive a merchandise discount at select KnitWell Group brands, subject to each brand’s discount policies - Support for your individual development plus opportunities for career mobility within our family of brands - A culture of giving back – local volunteer opportunities, annual donation and volunteer match to eligible nonprofit organizations, and philanthropic activities to support our communities - Medical, dental, vision insurance & 401(K) - Employee Assistance Program (EAP) - Time off – paid time off & holidays - The target salary range for this role is: $100,000 – 115,000
Cyber Security Analyst Intern
ICFFounded in 1969, ICF is a global advisory and technology services company headquartered in Reston, Virginia. It delivers data-driven solutions across energy, en
Description The Cyber Security Analyst Intern role is a hands-on learning opportunity designed for individuals eager to begin a career in information security. This internship provides exposure to real enterprise security operations while working closely with experienced cybersecurity professionals in a supportive, mentorship‑focused environment. The intern will learn how organizations protect systems and data across on‑premises and cloud environments by assisting with day‑to‑day security activities. Through guided participation, structured assignments, and real-world tools, the intern will build foundational skills in areas such as vulnerability management, monitoring, incident response, and compliance while contributing meaningfully to the team’s mission. This is a full-time, 10-week internship that begins in early June 2026. Work may be done remotely from any U.S. location, or hybrid from our Austin, TX office. At this time, we are unable to provide relocation nor housing assistance for this internship. Pay is expected to be $23/hour. As a Cyber Security Analyst intern, you will gain practical experience and understanding of: - How enterprise security teams monitor, detect, and respond to threats - The use of vulnerability scanning, log monitoring, and alerting tools - How security incidents and requests are documented, investigated, and escalated - How security controls support compliance, audit, and risk management efforts - How cloud and on‑premises systems are secured in a real-world environment - How to collaborate effectively within a professional cybersecurity team - Role Responsibilities: - Learn how vulnerability scanning tools are used and assist in reviewing findings with senior analysts - Observe and support log monitoring activities to understand how security events are detected - Help document and refine security alerts, processes, and workflows - Assist with tracking and validating remediation efforts alongside internal teams - Gain experience supporting audit, compliance, and evidence‑gathering activities - Learn how security incidents and requests are documented and escalated - Participate in incident response exercises and disaster recovery planning activities - Research emerging threats, tools, and trends and share insights with the team Basic Qualifications: - Completed a minimum of 30 college-level credit hours related to a degree in a degree in Cybersecurity, Information Technology, Computer Science, or a related field - Candidate must be a US citizen, reside in the U.S., be authorized to work in the U.S., and all work must be performed in the U.S. per contract requirements Preferred Qualifications - Ability to attend occasional meetings in the Austin, TX area - Basic understanding of information security concepts such as least privilege, defense in depth, and continuous threat and exposure management. - Interest in learning how security is applied in a real-world enterprise environment - Willingness to learn, ask questions, and grow technical skills - Professional mindset and respect for confidentiality - Exposure to Azure and Defender XDR through coursework or labs - Introductory experience with scripting, automation, or technical labs - Familiarity with security tools or concepts from academic or personal projects - Strong communication skills and ability to clearly document learning and observations Working at ICF ICF is a global advisory and technology services provider, but we’re not your typical consultants. We combine unmatched expertise with cutting-edge technology to help clients solve their most complex challenges, navigate change, and shape the future. We can only solve the world's toughest challenges by building a workplace that allows everyone to thrive. We are an equal opportunity employer. Together, our employees are empowered to share their expertise and collaborate with others to achieve personal and professional goals. For more information, please read our EEO policy. We will consider for employment qualified applicants with arrest and conviction records. Reasonable Accommodations are available, including, but not limited to, for disabled veterans, individuals with disabilities, and individuals with sincerely held religious beliefs, in all phases of the application and employment process. To request an accommodation, please email Candidateaccommodation@icf.com and we will be happy to assist. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. Read more about workplace discrimination rights or our benefit offerings which are included in the Transparency in (Benefits) Coverage Act. Candidate AI Usage Policy At ICF, we are committed to ensuring a fair interview process for all candidates based on their own skills and knowledge. As part of this commitment, the use of artificial intelligence (AI) tools to generate or assist with responses during interviews (whether in-person or virtual) is not permitted. This policy is in place to maintain the integrity and authenticity of the interview process. However, we understand that some candidates may require accommodation that involves the use of AI. If such an accommodation is needed, candidates are instructed to contact us in advance at candidateaccommodation@icf.com. We are dedicated to providing the necessary support to ensure that all candidates have an equal opportunity to succeed. Pay Range - There are multiple factors that are considered in determining final pay for a position, including, but not limited to, relevant work experience, skills, certifications and competencies that align to the specified role, geographic location, education and certifications as well as contract provisions regarding labor categories that are specific to the position. The pay range for this position based on full-time employment is: $34,564.00 - $58,758.00 Nationwide Remote Office (US99)
• Manage and maintain Elastic Stack (ELK) environments • Create dashboards and reports in Kibana • Develop and tune correlation rules in the SIEM • Monitor security events and support incident investigations • Work with the SOC and infrastructure teams to continuously improve the environments

