Senior InfoSec Analyst — Hybrid Role in Compliance & Risk

Great Gray

Boston (MA)

Hybrid

USD 95,000 - 120,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Medical, dental and vision insurance
Employer-paid life and disability ins.
Annual well-being stipend
401(k) with employer contribution

Job summary

Great Gray is seeking a Senior Information Security Analyst to support IT governance, risk assessment, and security compliance across SOC2, CIS18, and NIST CSF frameworks. The role focuses on developing and documenting ISMS policies, processes, and controls, with collaboration across IT and business units.

The position offers a hybrid model (4 days onsite, 1 day remote) in Boston, MA or Wilmington, DE. Salary ranges from $95,000 to $120,000 with potential annual incentive bonus and comprehensive

Qualifications

  • Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or a related field.
  • 5+ years of audit, compliance, or technical experience.
  • Excellent knowledge of IT security control trends and auditing & compliance best practices.
  • Effective communication skills to articulate complex IT controls and compliance issues to leadership.
  • Relevant training and/or industry certifications in auditing, compliance, or IT security.

Responsibilities

  • IT governance, risk assessment, and security awareness.
  • Internal auditing & evidence collection for IT controls compliance (PCI, SOX) and SOC2.
  • Vendor risk management assessment, onboarding, and reviews.
  • Business impact analysis (BIA) and sensitive data reviews (SDR).
  • URM and PAM reviews for critical applications.
  • Support in assessment, design, and implementation of technical control requirements.
  • Identify and recommend changes to improve efficiency of key controls.
  • Collaborate with control owners to ensure quality and operability of controls.
  • Review IT systems and tools to ensure appropriate controls.
  • Review test findings and remediate IT control gaps.

Skills

IT governance
Auditing & compliance
Security awareness
Communication skills
SOC2

Education

Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or related field

Job description

Great Gray is seeking a Senior Information Security Analyst to support IT governance, risk assessment, and security compliance across SOC2, CIS18, and NIST CSF frameworks. The role focuses on developing and documenting ISMS policies, processes, and controls, with collaboration across IT and business units.

The position offers a hybrid model (4 days onsite, 1 day remote) in Boston, MA or Wilmington, DE. Salary ranges from $95,000 to $120,000 with potential annual incentive bonus and comprehensive

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior Information Security Analyst — Hybrid, Risk & Compliance
Senior Information Security Analyst — Hybrid, Risk & Compliance

Great Gray Group. • Wilmington (DE)

Hybrid
USD 95,000 - 140,000
Competitive compensation package
Medical, dental, and vision insurance
Life and disability insurance
+2
Senior Information Security Analyst – Hybrid (SOC2/PCI)
Senior Information Security Analyst – Hybrid (SOC2/PCI)

Great Gray Group. • Wilmington (MA), Northern (KY)

Hybrid
USD 95,000 - 120,000
Group medical, dental and vision
Employer-paid life and disability
Annual well-being stipend
+1
Senior Information Security & Risk Analyst (Hybrid)
Senior Information Security & Risk Analyst (Hybrid)

COUNTRY Financial • Bloomington (IL)

Hybrid
USD 94,000 - 130,000
401(k) with company match
Hybrid work
Incentive plan
+1
Cyber Risk & Compliance Analyst — Hybrid/Remote
Cyber Risk & Compliance Analyst — Hybrid/Remote

Boston Government Services, LLC (BGS) • Knoxville (TN)

Hybrid
USD 136,000 - 161,000
Health Insurance
Dental Insurance
Vision Insurance
+4
Hybrid Information Governance & Compliance Analyst
Hybrid Information Governance & Compliance Analyst

INSPYR Solutions • Deerfield Beach (FL)

Hybrid
USD 69,000 - 83,000
Comprehensive medical benefits
401(k)
Retirement plan
Senior GRC Security Engineer - Hybrid, Full Benefits
Senior GRC Security Engineer - Hybrid, Full Benefits

Insight Global • United States

Hybrid
USD 120,000 - 160,000
Senior Governance Risk & Compliance Analyst
Senior Governance Risk & Compliance Analyst

Oliver James • Farmington Hills (MI)

On-site
USD 89,544 - 96,432
InfoSec & GRC Specialist — Hybrid Role
InfoSec & GRC Specialist — Hybrid Role

Placements24 • Willows (CA)

Hybrid
USD 85,000 - 110,000
Hybrid work model
Certifications support
Competitive salary
Contract Security & Compliance Analyst — SOC2/ISO Focus
Contract Security & Compliance Analyst — SOC2/ISO Focus

Cygnus Professionals Inc • Boston (MA)

On-site
USD 80,000 - 100,000
Information Security Analyst
Information Security Analyst

Talener • Boston (MA)

On-site
USD 125,000 - 175,000
Comprehensive benefits