Information Security Analyst – Long Term Contract – Remote
We are partnering with a leading global organization to identify an Information Security Analyst to join its global security team. This role is primarily remote, with occasional on-site meetings as needed. Candidates must be comfortable working Eastern Time business hours.
This is a full-time contract engagement (40 hours per week) open to credentialed information security professionals located within the United States.
Due to the sensitive nature of this role and the environment it supports, all candidates will be subject to a thorough verification process, including confirmation of identity, employment history, credentials, and background screening in accordance with applicable laws and company policy. Candidates should be prepared to participate in standard compliance and security vetting procedures required for access to enterprise systems and data.
Key Responsibilities
Lead security operations for the platform, with a focus on identifying, monitoring, and responding to potential threats.
Implement and manage security monitoring tools and incident response procedures to ensure rapid detection and remediation of security events.
Conduct vulnerability assessments and penetration testing to proactively identify and address security weaknesses.
Ensure the platform complies with internal security policies, industry standards, and applicable regulatory requirements.
Implement and govern GitHub and GitHub Advanced Security within Agile and DevOps pipelines, embedding DevSecOps best practices and tooling such as CodeQL code scanning, secret scanning, dependency and software composition analysis (SCA), infrastructure-as-code (IaC) scanning, and secure CI/CD processes with branch protection policies.
Proactively identify, triage, and remediate vulnerabilities while continuously improving the organization’s secure Software Development Lifecycle (SDLC).
Apply AI capabilities across the firm’s AI ecosystem, including the aIQ Chat agent environment, by quickly adopting and integrating emerging AI models and tools.
Design and maintain secure AI workflows and governance guardrails, including data protection, access controls, prompt safety, model risk management, and regulatory compliance.
Qualifications
Minimum of 7 years of Information Technology and Information Security experience, with a background in software security and software development using Agile and DevOps methodologies and tools.
Bachelor’s degree in Computer Science, Information Technology, Information Security, Business Administration, or a related field. Professional certifications such as CIPP and/or CISSP are preferred.
Experience documenting processes and reviewing or developing technical architecture and cloud security architecture best-practice materials; Microsoft Azure experience is preferred.
Strong understanding of modern attack vectors, emerging threats, and remediation strategies.
Familiarity with computer forensics practices, incident investigations, and evidence handling is preferred.
By applying for this job, you agree to receive calls, AI-generated calls, text messages, or emails from Benchmark IT, LLC and its affiliates, and contracted partners. Frequency varies for text messages. Message and data rates may apply. Carriers are not liable for delayed or undelivered messages. You can reply STOP to cancel and HELP for help. You can access our privacy policy here: bmarkits.com/privacy-policy