Rhymetec

Cyber Security Analyst

Rhymetec United States

Direct message the job poster from Rhymetec

Kelsey Hannemann

Kelsey Hannemann

Human Resources Professional @ Rhymetec | Talent Acquisition, Operations, Analytics, People-Centric

Role: Cyber Security Analyst

Location: Fully Remote


About Rhymetec:

Rhymetec was founded in New York City in 2015, growing steadily in the areas of compliance, cybersecurity and data privacy. Our mission is to ensure our clients are compliant faster, so they can focus on their core business and less on the complexities of building effective and compliant InfoSec programs.


Job Description:

The Cyber Security Analyst (CSA) will be responsible for architecting, developing, and implementing solutions that help Rhymetec's clients achieve, manage and measure security metrics and compliance requirements. The role will work closely with their team to help design and deliver security and compliance objectives and have the ability to help drive foundational changes in internal cloud platforms to enhance their security posture. The ideal candidate will have a team first mentality and fit within the core values and culture at Rhymetec, along with project management experience and knowledge with customized compliance road maps for clients. This person will be responsive to both customers and team members with communications, be detail oriented, and hold a high level of autonomy to complete work on time and with quality.


Responsibilities:

  • Prepare agendas and reference documents for meetings with clients.
  • Assist in building and managing cyber security programs for Rhymetec’s customers based on industry standard cyber security compliance frameworks.
  • Conduct meetings with clients regularly.
  • Configure performance monitoring alarms in AWS, Azure, GCP, Datadog and other cloud infrastructures.
  • Configure Security alarms and Intrusion Detection Systems in AWS, GCP, Azure
  • Set up supporting security applications.
  • Set up mobile device management applications such as Jamf, Jumpcloud, Microsoft Endpoint manager, Hexnode, etc.
  • Configure and maintain compliance monitoring platforms.
  • Conduct internal audits, risk assessments, and generate reports.
  • Conduct Incident Response Tabletop exercises with clients.
  • Conduct Business Continuity and Disaster recovery tabletop exercises with clients
  • Document and lead incident response process should an incident arise.
  • Translate SOC 2 Type 2, ISO 27001, GDPR, and HIPAA controls into actionable items for clients.
  • Conduct employee access reviews, SaaS vendor security assessments, and Gap assessments.
  • Triage bug/vulnerability reports from security researchers.
  • Complete security questionnaires on behalf of clients.
  • Draft supporting documents for clients’ information security management systems and information security policies.
  • Gather and maintain evidence of compliance for various frameworks.
  • Lead engagements with auditors on behalf of clients.
  • Communicate tasks to clients’ employees and educate clients on security best practices.
  • Troubleshoot issues that may arise within our scope of work.
  • Other duties as assigned by the supervisor. Duties listed here are not exhaustive and may change or grow as does the business need for its employees. Quarterly travel may be required.


Qualifications:

  • Bachelor's Degree from an accredited university in a Technology or Cybersecurity field OR 4+ years of direct experience in listed areas.
  • 3+ years of work experience working with technology, cybersecurity, and regulatory compliance.
  • Experience in customer service and ability to develop professional relationships with customers.
  • Preferred experience in translating and implementing HIPAA, HITRUST, GDPR, CCPA, NIST 800-53 and other compliance frameworks.
  • Preferred Certification(s): Cloud+, CySA+, CISSP, CISM.
  • Extensive knowledge of compliance and regulatory frameworks (PCI, ISO/IEC, SOC 2, HIPAA, GDPR).
  • Strong logical security skills, with experience in cloud security.
  • Understanding of cloud environments (AWS, GCP, Azure) and integrating security controls through DevOps and Infrastructure as a Service (IaaS) techniques.


Rhymetec offers a robust employee package, including:

  • Employee covered medical premiums (100%)
  • Dental and Vision Benefits
  • PTO and Sick Time, including 11 paid Holidays
  • 401K retirement option
  • Company paid Life Insurance
  • Annual Subscription to TalkSpace (online counseling & therapy service)


Compensation Range: $80,000 - $120,000 annually depending on education and experience.



Rhymetec is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment regardless of race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetic, disability, age, or veteran status.

  • Seniority level

    Mid-Senior level
  • Employment type

    Full-time
  • Job function

    Information Technology, Consulting, and Project Management
  • Industries

    Information Services and Computer and Network Security

Referrals increase your chances of interviewing at Rhymetec by 2x

See who you know

Get notified about new Cyber Security Analyst jobs in United States.

Sign in to create job alert

Similar jobs

People also viewed

Looking for a job?

Visit the Career Advice Hub to see tips on interviewing and resume writing.

View Career Advice Hub