
Information Security Analyst – Cybersecurity
Posted 23 hours ago

Posted 23 hours ago
This is a fully remote position, open to applicants in Mexico.
• Oversee, evaluate, and react to cybersecurity incidents, alerts, and vulnerabilities.
• Perform security risk assessments on systems, networks, and applications.
• Assist in ensuring compliance with SOC 2, ISO 27001, NIST, CIS Controls, and GDPR when applicable.
• Execute vulnerability assessments and coordinate remediation efforts with technical teams.
• Analyze security logs and investigate any suspicious activities.
• Engage in incident response processes.
• Work closely with Engineering and DevOps to embed security practices throughout the software development lifecycle.
• Create, maintain, and enhance information security policies, procedures, and documentation.
• Aid in both internal and external security audits.
• Oversee identity and access management, user permissions, and privileged access controls.
• Provide security awareness training and advocate for cybersecurity best practices.
• Keep up-to-date with emerging cyber threats, vulnerabilities, and security technologies.
• Complete a one-way video interview as the subsequent step in the hiring process.
• Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related discipline.
• Minimum of 3 years of experience in Information Security, Cybersecurity, Security Operations, or Risk & Compliance.
• Experience in supporting SOC 2 compliance initiatives and conducting security audits.
• In-depth knowledge of SOC 2, ISO 27001, NIST Cybersecurity Framework, and CIS Controls.
• Proficiency in vulnerability management, risk assessments, and incident response.
• Familiarity with SIEM, EDR, IAM, and endpoint security solutions.
• Experience in working within AWS, Azure, or Google Cloud environments.
• Strong analytical, documentation, and problem-solving capabilities.
• Professional English proficiency (B2+/C1).
• Ability to work autonomously in both remote and collaborative settings.
• Preferred security certifications include Security+, CySA+, CISSP, CISM, CISA, SSCP, CEH, or GSEC.
• Experience supporting U.S.-based companies or global organizations is preferred.
• Knowledge of DevSecOps, cloud security, and infrastructure security is desirable.
• Experience with penetration testing or vulnerability scanning tools is an asset.
• Familiarity with GDPR, HIPAA, or PCI DSS is advantageous.
• Background in SaaS, Technology, FinTech, Healthcare, or Cloud-based organizations is preferred.
• Experience with SIEM tools such as Splunk, Sentinel, or QRadar.
• Experience with IAM tools like Okta, Azure AD, or Active Directory.
• Proven experience securing AWS, Azure, or GCP environments.
• English proficiency at B2+ level.
• Preferred certifications include CISSP, CISM, Security+, CySA+, or CEH.
• Preferred experience with CrowdStrike, Defender, Nessus, or Qualys.
• Remote work arrangement.
• Opportunity to collaborate with seasoned technology professionals.
• Professional development through initiatives in cybersecurity, governance, risk management, and compliance.
• Engagement in security awareness and professional development activities.
Cobalto Talent
Cobalto Talent
Cobalto Talent
RunSybil
Get handpicked remote jobs straight to your inbox weekly.