Senior Security Analyst

PKR

  • Pennsylvania
  • 1 day ago

    Highlights

    Relevant certifications such as CISSP, CISM, CCSP, GIAC, CIPP, Security+, ISO 27001 Lead Implementer or Lead Auditor, or comparable certifications are preferred. Our client is a purpose-driven SaaS organization that helps businesses use employee feedback and workplace insights to build stronger organizations.

    Numbers & Facts

    LocationPennsylvania

    Description

    Who Our Client Is

    Our client is a purpose-driven SaaS organization that helps businesses use employee feedback and workplace insights to build stronger organizations. They combine technology, data, and expert guidance to help customers better understand and improve the employee experience.

    What Our Client Needs

    Our client is seeking a Senior Security Analyst to advance information security, privacy, and compliance programs. This role will strengthen technical controls, governance, risk management, cloud security, and compliance while protecting company systems, customer data, and business operations.

    Who You Are

    You are a hands-on security professional who balances technical depth with a practical approach to risk. You work effectively across technical and business teams, communicate security issues clearly, and take ownership of security, privacy, compliance, and continuous improvement initiatives.

    What You’ll Do

    You will partner across Engineering, Product, IT, Legal, HR, and other business functions to strengthen security and privacy throughout the organization.

    • Support security throughout the Secure Software Development Lifecycle, including secure coding standards, application security testing, threat modeling, and architecture reviews
    • Monitor security posture using SIEM, endpoint protection, cloud security, and vulnerability management tools
    • Investigate security alerts and incidents and coordinate containment, remediation, recovery, and post-incident reviews
    • Implement and maintain cloud security, encryption, key management, identity management, secure storage, and Data Loss Prevention controls
    • Coordinate security audits and assurance activities, including ISO 27001, SOC 2, customer assessments, and continuous compliance efforts
    • Maintain security policies, standards, procedures, risk assessments, audit evidence, remediation tracking, and the organizational risk register
    • Conduct third-party security assessments and ongoing vendor risk monitoring
    • Support privacy compliance activities, including DPIAs, data mapping, data retention, classification, GDPR, and CCPA/CPRA requirements
    • Administer vulnerability management programs, analyze emerging threats, prioritize risks, and coordinate remediation
    • Review new technologies, cloud services, integrations, identity controls, and architecture for security risks
    • Support Zero Trust, Identity and Access Management, disaster recovery, and business continuity initiatives
    • Develop security awareness training, mentor junior analysts, and provide security guidance across the organization

    This role includes mentoring and technical leadership responsibilities. It is remote, with occasional opportunities for in-person collaboration.

    What You’ll Need

    • Bachelor’s degree in Information Security, Computer Science, Information Technology, or equivalent professional experience
    • 3+ years of progressive experience in Information Security, Cybersecurity, Security Engineering, or a related discipline
    • Experience supporting ISO 27001, SOC 2, NIST CSF, or similar security and compliance frameworks
    • Experience performing security risk assessments and vulnerability management
    • Working knowledge of cloud security principles and technologies in AWS, Azure, Google Cloud, or similar environments
    • Experience with SIEM, endpoint security, vulnerability management, identity management, and security monitoring tools
    • Strong understanding of networking, authentication, encryption, access control, and security architecture
    • Experience supporting privacy compliance initiatives involving GDPR, CCPA/CPRA, or similar requirements
    • Strong written and verbal communication skills with the ability to explain security risks to technical and non-technical stakeholders
    • Relevant certifications such as CISSP, CISM, CCSP, GIAC, CIPP, Security+, ISO 27001 Lead Implementer or Lead Auditor, or comparable certifications are preferred

    What They Offer

    Great work starts with an environment where people can thrive, grow, and do meaningful work. Their benefits and employee experience are designed to support you both professionally and personally.

    • Compensation range of $77,000 to $82,000, with $4,000 bonus potential
    • Time to recharge: Paid time off including vacation, sick time, company holidays, and floating holidays
    • Work-from-home flexibility: The flexibility and convenience of remote work
    • Health care support: Company contribution toward the cost of individual health care premiums
    • Plan for your future: Opportunity to participate in a company-sponsored 401(k)
    • Keep learning: Access to training, education, and ongoing professional development
    • Invest in your growth: Access to a third-party professional coach for every employee
    • Continue your education: Tuition reimbursement opportunities to support continued learning
    • Do work that matters: Be part of a purpose-driven organization committed to using business as a force for good as a Certified B Corporation

    The benefits go beyond the basics. You’ll have the flexibility, resources, and development opportunities to build your career while contributing to a purpose-driven organization focused on making the workplace better.

    Equal Opportunity Statement

    Our client believes that diversity fuels innovation, strengthens teams, and drives success. They are committed to fostering a workplace where every individual—regardless of background—feels valued, respected, and empowered to thrive. Discrimination or harassment of any kind is strictly prohibited.

    Our client does not discriminate based on race, color, religion, sex, sexual orientation, gender identity or expression, national origin, ethnicity, age, disability, veteran status, marital status, or any other characteristic protected by applicable laws. Their commitment extends beyond compliance; they actively cultivate an inclusive culture where diverse perspectives are welcomed, and every employee has an equal opportunity to contribute and succeed.

    Similar Jobs