Information Security Analyst

Cognism

United States

On-site

USD 65,000 - 110,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cognism, a leading provider of European B2B data, is seeking a GRC Analyst in the United States to help run and strengthen our governance, risk, and compliance programme. You will support day-to-day GRC operations, control monitoring, and audit readiness across ISO 27001 and SOC 2.

Join a security-minded team that values structured processes, clear documentation, and proactive risk-based decision making. You will collaborate with Engineering, IT Operations, and Compliance to close gaps and

Qualifications

  • 1-2 years experience in security, GRC, IT audit, or related risk function.
  • Working knowledge of ISO 27001 and SOC 2 fundamentals.
  • Detail-oriented with strong written and verbal communication.
  • Comfortable collaborating with Engineering, IT Operations and Compliance.

Responsibilities

  • Support day-to-day GRC programme operations including control monitoring and audit readiness.
  • Maintain and improve documentation: policies, procedures, risk registers, control mappings.
  • Support internal and external audits, questionnaires, vendor risk assessments.
  • Take risk-based approach to prioritising work and effort allocation.

Skills

GRC concepts
ISO 27001
SOC 2
Risk assessment
Communication

Job description

WHO ARE WE

Cognism is the leading provider of European B2B data and sales intelligence. Ambitious businesses of every size use our platform to discover, connect, and engage with qualified decision-makers faster and close more deals. Headquartered in London with global offices, Cognism’s contact data and contextual signals are trusted by thousands of revenue teams to eliminate the guesswork from prospecting.

At Cognism, the security of our data, our systems and our clients' systems is a business priority. Information security is embedded in the way we work, and we are driving a culture where the fastest path is the securest path. As our Information Security team continues to mature, we are now hiring for a GRC Analyst to help us run and strengthen our governance, risk, and compliance programme.

  • Support operation of ISO 27001 and SOC 2 frameworks
  • Own evidence collection and control tracking
  • Take risk-based approach to all work
  • Work closely with Engineering, IT Operations, and Compliance
  • Build relationships that drive remediation closure
  • Grow your GRC career in data-intensive product environment.

Within 12 months, you will have

  • Become trusted owner of evidence and control monitoring across ISO 27001 and SOC 2
  • Built strong relationships enabling tracked remediation to closure
  • Applied risk-based lens to prioritise impactful gaps over low-value items
  • Improved at least one recurring security process for speed or efficiency
  • Developed working knowledge of AI security and control intersections
What You'll Own
  • Support day-to-day GRC programme operations including control monitoring and audit readiness
  • Maintain and improve documentation: policies, procedures, risk registers, control mappings
  • Support internal and external audits, questionnaires, vendor risk assessments
  • Take risk-based approach to prioritising work and effort allocation
    What We Need
    • 1-2 years experience in security, GRC, IT audit, or related risk function
    • Working knowledge of ISO 27001 and/or SOC 2 fundamentals
    • Detail-oriented: notice inconsistencies and gaps others miss
    • Process-driven: build and follow repeatable, well-documented processes
    • Strong written and verbal communication skills
    • Explain risk and compliance concepts to technical and non-technical audiences
    • Comfortable working across Engineering, IT Operations, and Compliance teams
    • Build trust and hold risk-based mindset in practice
    • Weigh likelihood and impact rather than treat all requirements equally
    • Comfortable with ambiguity and willing to ask questions
    • Curious about AI: risks, potential, and compliance applications
    • AI security and risk working knowledge is strong plus, not mandatory
    • Builder mentality: energised by bringing structure to processesPragmatic about sequencing and focused on outcomes over box-ticking
    WHY COGNISM

    At Cognism, we’re not just building a company - we’re building an inclusive community of brilliant, diverse people whosupport, challenge, and inspire each other every day. If you’re looking for a place where your work trulymakes an impact, you’re in the right spot!

    Our values aren’t just words on a page—they guide how we work, how we treat each other, and how we grow together. They shape our culture, drive our success, and ensure that everyone feels valued, heard, and empowered to do their best work.

    Here’s what we stand for:

    • We Own the Outcome Together.
    • We Deeply Understand our Customers.
    • We Celebrate Impact Wherever It Comes From.

    At Cognism, we are committed to fostering an inclusive, diverse, and supportive workplace. We welcome applications from individuals typically underrepresented in tech, so if this role excites you but you’re unsure if you meet every requirement, we encourage you to apply!

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Partner Account Manager
Partner Account Manager

Cognisys • United States

On-site
USD 80,000 - 120,000
Annual Leave
Bank Holidays
Health insurance
+3
Chief Information Security Officer (CISO)
Chief Information Security Officer (CISO)

Cohere • New York (NY)

Hybrid
USD 250,000 - 350,000
Lunch stipend
Health and dental benefits
RRSP matching / 401K
+5
Account Manager (Mid-Market)
Account Manager (Mid-Market)

Cognism • United States

Hybrid
USD 70,000 - 110,000
Security Operations Engineer, EMEA
Security Operations Engineer, EMEA

Cohere • United States

Hybrid
USD 140,000 - 190,000
Lunch stipend
Health and dental benefits
RRSP matching
+6
GRC Consultant-68498
GRC Consultant-68498

Hitachi Digital Services • Town of Texas (WI)

On-site
USD 110,000 - 150,000
GRC Security Analyst: ISO 27001 & SOC 2 Focus
GRC Security Analyst: ISO 27001 & SOC 2 Focus

Cognism • United States

On-site
USD 65,000 - 110,000
IT Security Operations Analyst
IT Security Operations Analyst

Cognex Corporation • Natick (MA)

Hybrid
USD 110,000 - 140,000
Security Analyst
Security Analyst

DigitalXForce Corporation • United States

On-site
USD 70,000 - 110,000
Principal Information Security Engineer (AI Product Security + SecOps)
Principal Information Security Engineer (AI Product Security + SecOps)

Cognite - AI for Industry • United States

Hybrid
USD 32,000 - 63,000
Security exploration days
Direct access to executives
Healthcare benefits
+1
Senior Information Security Analyst, CX
Senior Information Security Analyst, CX

NICE • Sandy (UT)

On-site
USD 110,000 - 150,000