Armis Security logo
Armis Security

Armis, the cyber exposure management & security company, protects the entire attack surface and manages an organization’s cyber risk exposure in real time. In a rapidly evolving, perimeter-less world, Armis ensures that organizations continuously see, protect and manage all critical assets - from the ground to the cloud. Armis secures Fortune 100, 200 and 500 companies as well as national governments, state and local entities to help keep critical infrastructure, economies and society stay safe and secure 24/7. Armis is a privately held company headquartered in California.

Cybersecurity Analyst

Security AnalystSecurity AnalystOtherRemoteMid LevelTeam 501-1,000

Location

United States + 1 moreAll locations: United States, Canada

Posted

4 days ago

Salary

$140K - $180K / year

Seniority

Mid Level

Job Description

Role Description

As Armis rapidly scales its operations, we are seeking a motivated Cybersecurity Analyst to join our Governance, Risk and Compliance team and directly support our commercial compliance efforts. This role will be an integral part of maintaining and strengthening our overall security posture. You will focus on the foundational work of security, assisting our team in gathering essential evidence, documenting control implementation across our platforms, and ensuring the smooth operation of our key security processes. You will collaborate closely with various departments and end-users across the company, primarily supporting the vital functions of the Office of the Chief Information Security Officer (OCISO) team.

What you'll do:

  • Audit and Assessment Support: Provide direct support for external and internal audit efforts, specifically focusing on frameworks such as SOC 2 Type 2, ISO 27001, ISO 27017, ISO 27018, and ISO 42001.
  • Evidence Management & Monitoring: Execute and document procedures for continuous monitoring and evidence gathering. Implement automated solutions, including utilizing AI, to effectively reduce manual efforts associated with repetitive evidence collection tasks, ensuring security artifacts are accurately captured and readily available.
  • Policy and Documentation: Review, edit and update internal security policies, standards and procedures to ensure they accurately reflect current operational controls and compliance requirements.
  • Vendor and Supply Chain Risk Management (SCRM): Assist in the supply chain risk management program by tracking vendor compliance documentation, reviewing vendor security posture, and maintaining the vendor risk register.
  • Risk and Sales Support: Participate in internal security audits and support the business development team by completing security questionnaires for Requests for Proposal (RFP), ensuring accurate and compliant representation of our controls.

Qualifications

  • 3-5 years of experience in a security, IT audit, GRC or related technical field.
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field; equivalent professional experience will be considered in lieu of a degree.
  • Maintain industry certifications such as CompTIA Security+ and work toward advanced certifications such as (ISC)² CISSP.
  • Foundational understanding of diverse regulatory environments and major security frameworks and compliance standards (e.g., ISO, SOC, HIPAA, SOX, NIST, FedRAMP, GovRAMP, DoD IL 5/6 PCI DSS).
  • Foundational understanding of enterprise IT and OT/ICS environments, including network protocols, operating systems, cloud platforms and security technologies.
  • Foundational understanding of core cloud technologies, particularly security concepts and services within AWS and GCP.
  • Strong organizational skills, exceptional attention to detail, and the ability to manage documentation effectively.
  • Excellent written communication skills, with experience reviewing and editing formal technical documents and policies.

Preferred Skills

  • Prior experience in directly supporting security audits for the frameworks noted above.
  • Familiarity with the FedRAMP authorization process and compliance requirements.
  • Detailed understanding of core security concepts, including data encryption, logical access controls, and boundary security mechanisms.
  • Working experience with Linux operating systems.
  • Experience supporting security or compliance efforts in AWS and GCP cloud environments.
  • Experience working with a global team where the majority of team members are remote.
  • Experience working with task planning tools like JIRA and Asana.
  • Experience managing content throughout its lifecycle in the Microsoft Office 365 and Google Workspace ecosystems.
  • Experience using GRC automation and evidence management platforms such as Anecdotes, Drata, or similar tools to streamline compliance processes and maintain continuous monitoring.

Benefits

  • Pay ranges $140,000 to $180,000.
  • The salary range listed does not include other forms of compensation or benefits (e.g. bonuses, commissions, stocks, health insurance benefits, etc.) offered to candidates.
  • Comprehensive health benefits.
  • Discretionary time off.
  • Paid holidays including monthly me days.
  • A highly inclusive and diverse workplace.

Company Description

Armis, the cyber exposure management & security company, protects the entire attack surface and manages an organization’s cyber risk exposure in real time. In a rapidly evolving, perimeter-less world, Armis ensures that organizations continuously see, protect and manage all critical assets - from the ground to the cloud. Armis secures Fortune 100, 200 and 500 companies as well as national governments, state and local entities to help keep critical infrastructure, economies and society stay safe and secure 24/7. Armis is a privately held company headquartered in California.

Job Requirements

  • 3-5 years of experience in a security, IT audit, GRC or related technical field.
  • Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or a related field; equivalent professional experience will be considered in lieu of a degree.
  • Maintain industry certifications such as CompTIA Security+ and work toward advanced certifications such as (ISC)² CISSP.
  • Foundational understanding of diverse regulatory environments and major security frameworks and compliance standards (e.g., ISO, SOC, HIPAA, SOX, NIST, FedRAMP, GovRAMP, DoD IL 5/6 PCI DSS).
  • Foundational understanding of enterprise IT and OT/ICS environments, including network protocols, operating systems, cloud platforms and security technologies.
  • Foundational understanding of core cloud technologies, particularly security concepts and services within AWS and GCP.
  • Strong organizational skills, exceptional attention to detail, and the ability to manage documentation effectively.
  • Excellent written communication skills, with experience reviewing and editing formal technical documents and policies.
  • Preferred Skills
  • Prior experience in directly supporting security audits for the frameworks noted above.
  • Familiarity with the FedRAMP authorization process and compliance requirements.
  • Detailed understanding of core security concepts, including data encryption, logical access controls, and boundary security mechanisms.
  • Working experience with Linux operating systems.
  • Experience supporting security or compliance efforts in AWS and GCP cloud environments.
  • Experience working with a global team where the majority of team members are remote.
  • Experience working with task planning tools like JIRA and Asana.
  • Experience managing content throughout its lifecycle in the Microsoft Office 365 and Google Workspace ecosystems.
  • Experience using GRC automation and evidence management platforms such as Anecdotes, Drata, or similar tools to streamline compliance processes and maintain continuous monitoring.

Benefits

  • Pay ranges $140,000 to $180,000.
  • The salary range listed does not include other forms of compensation or benefits (e.g. bonuses, commissions, stocks, health insurance benefits, etc.) offered to candidates.
  • Comprehensive health benefits.
  • Discretionary time off.
  • Paid holidays including monthly me days.
  • A highly inclusive and diverse workplace.

Related Job Pages

More Security Analyst Jobs

Tangent Technologies is seeking a skilled Information Systems Security Officer (ISSO) to support a federal program. The ISSO will ensure ongoing security, compliance, and risk management of information systems. This role is critical in the development and implementation of system...

United States + 180 moreAll locations: United States, Canada, Brazil, Colombia, Argentina, Chile, Venezuela, Bolivarian Republic Of, Bolivia, Plurinational State Of, Ecuador, French Guiana, Guyana, Paraguay, Peru, Suriname, Uruguay, Mexico, Costa Rica, El Salvador, Guatemala, Honduras, Nicaragua, Panama, Dominican Republic, Puerto Rico, Bahamas, Guadeloupe, Haiti, Jamaica, Martinique, Montserrat, United Kingdom, Germany, France, Estonia, Portugal, Hungary, Poland, Ukraine, Romania, Bulgaria, Czech Republic, Slovakia, Belarus, Moldova, Republic Of, Sweden, Greece, Belgium, Italy, Ireland, Switzerland, Netherlands, Finland, Malta, Denmark, Lithuania, Croatia, Spain, Austria, Bosnia And Herzegovina, Iceland, Luxembourg, Macedonia, The Former Yugoslav Republic Of, Montenegro, Norway, Serbia, Slovenia, Albania, Cyprus, Latvia, Monaco, South Africa, Egypt, Algeria, Angola, Benin, Botswana, Burkina Faso, Burundi, Cameroon, Cape Verde, Central African Republic, Chad, Congo, Côte D'ivoire, Congo, The Democratic Republic Of The, Equatorial Guinea, Eritrea, Ethiopia, Gabon, Gambia, Ghana, Guinea, Guinea-bissau, Kenya, Lesotho, Liberia, Libyan Arab Jamahiriya, Madagascar, Malawi, Mali, Mauritania, Mauritius, Mayotte, Morocco, Mozambique, Namibia, Niger, Nigeria, Réunion, Rwanda, Senegal, Seychelles, Sierra Leone, Somalia, Sudan, Swaziland, Tanzania, United Republic Of, Togo, Tunisia, Uganda, Zambia, Zimbabwe, Georgia, Turkey, Israel, United Arab Emirates, Armenia, Azerbaijan, Bahrain, Iraq, Jordan, Kuwait, Lebanon, Oman, Qatar, Saudi Arabia, Palestinian Territory, Occupied, Yemen, India, Japan, Philippines, Pakistan, Thailand, Singapore, Viet Nam, Taiwan, Province Of China, Indonesia, Cambodia, Lao People's Democratic Republic, Malaysia, Myanmar, Korea, Republic Of, China, Afghanistan, Bangladesh, Bhutan, Kazakhstan, Kyrgyzstan, Maldives, Mongolia, Nepal, Sri Lanka, Tajikistan, Turkmenistan, Uzbekistan, Australia, Papua New Guinea, Kiribati, Palau, French Polynesia, Tuvalu, New Zealand
OtherRemoteTeam 10,001

The Loss Prevention Associate will assist the manager in overseeing all inventory control aspects for the US, leading loss prevention investigations into fraud, internal, and external issues. Responsibilities also include weekly monitoring of site security, compiling shrink analysis to identify trends, and partnering with internal/external teams to prevent and recover losses.

United States
$67K - $72K / year
BRMi logo

Technical Analyst

BRMi

**Can be 100% remote in TX, NJ, NC, WV, AL, VA, MD, MO, DC, GA, or FL** Click here to learn about BRMi's culture. Click here to see BRMi’s Glassdoor reviews.

OtherRemoteTeam 51-200

The Secrets Management Technical Analyst is responsible for discovering, compiling, researching, analyzing, and documenting data, requirements, workflows, controls, and business processes within Enterprise Security Product and Services. This role serves as a subject matter expert...

United States
$80K - $110K / year
Devoted Health logo

SIU Investigator

Devoted Health

Our mission: to dramatically improve the health & well-being of older Americans by caring for everyone like family

OtherRemoteTeam 1,001-5,000Since 2017H1B No Sponsor

The investigator will lead complex investigations into healthcare fraud, waste, and abuse (FWA) across the full lifecycle, utilizing data mining and analysis to detect aberrancies in claims and records. Key duties include serving as a subject matter expert, developing policies, preparing detailed reports for external referrals, and collaborating with internal and external stakeholders.

United States
$55K - $100K / year