# 1,454 Remote Cybersecurity Jobs (September 2026) - Apply with AI

> Browse verified remote cybersecurity jobs. Explore 1,454 active cybersecurity roles updated daily. Apply in one click with the LiftmyCV AI Agent.

Canonical HTML: https://www.liftmycv.com/jobs/remote-cybersecurity-jobs/

Markdown: https://www.liftmycv.com/jobs/remote-cybersecurity-jobs.md

Site: https://www.liftmycv.com/

1,454 Remote Cybersecurity Jobs (September 2026) - Apply with AI

Explore remote cybersecurity jobs in September 2026 across core areas like security engineering, cloud security, application security, governance and risk, compliance, detection and response, and security operations. You can expect a mix of hands-on technical roles and policy-focused positions, with remote teams often asking for clear experience with security tools, incident workflows, and cross-functional collaboration. Create an account to explore the full feed and auto-apply with LiftmyCV AI Agent.

## Expert

Marina Galkina, Senior HR Manager, Lead Tech Recruiter, and Career Consultant

https://www.linkedin.com/in/marina-galkina-148b93224/

"Remote cybersecurity hiring in 2026 tends to split into a few clear lanes: cloud security, detection and response, application security, GRC, and security engineering tied to platform or infrastructure work. What changes in remote searches is not just location flexibility. Teams often screen harder for written communication, async judgment, and the ability to work across engineering, IT, and compliance without constant oversight. Candidates who show that mix usually move more cleanly through remote hiring loops."

Marina's Market Take

Senior HR Leader & Lead Tech Recruiter

### How to Land a Remote Cybersecurity Job in 2026

Remote cybersecurity hiring usually moves by lane, so the first step is to position yourself inside a clear track by September 2026. A cloud security applicant should lead with AWS, Azure, IAM, CSPM, or container security work. An application security candidate should foreground secure SDLC, code review, SAST or DAST, and developer-facing work. A SOC or detection-focused candidate needs to show SIEM use, alert triage, incident response, log analysis, and the ability to write or tune detections. GRC, risk, and compliance applicants should be explicit about frameworks, audit support, policy ownership, and evidence collection.

For remote cybersecurity jobs, hiring teams often screen for proof that you can operate without heavy supervision. That means showing outcomes tied to remote-friendly work: documented investigations, runbooks, ticket handling, threat modeling notes, control mapping, vulnerability prioritization, or cross-functional security reviews completed across distributed teams. If you&rsquo;ve worked across time zones, supported asynchronous incident response, or partnered with engineering, IT, legal, or compliance in a remote setup, say so plainly.

Your application should mirror the lane of the posting, not just the word cybersecurity. If a role centers on Okta, Sentinel, Splunk, EDR, PCI, FedRAMP, Kubernetes, phishing response, or third-party risk, put that exact environment near the top of your experience. Remote employers also filter hard on scope. Be specific about whether you handled endpoint security, identity, cloud posture, governance, product security, or security operations.

Search strategy matters too. Save separate searches for SOC, cloud security, GRC, application security, and security engineering roles, because remote listings often look similar until the tooling and ownership details show up. LiftmyCV fits naturally here by filtering remote cybersecurity roles by lane and prioritizing listings that match your actual tools, security domain, and level before you apply.

For **remote cybersecurity jobs**, lead with the work that proves you can secure systems without sitting in the same office as the team. Put security operations, cloud security, incident response, IAM, vulnerability management, GRC, or application security near the top if you&rsquo;ve done it. Name the tools and platforms directly: SIEM products like Splunk or Microsoft Sentinel, EDR tools like CrowdStrike, cloud platforms like AWS or Azure, ticketing and case workflows in Jira or ServiceNow, and frameworks such as NIST, ISO 27001, SOC 2, or CIS Controls. If you hold Security+, CISSP, CISM, CySA+, or cloud security certs, don&rsquo;t bury them.

Cut generic IT bullets that read like help desk work unless they clearly connect to access control, logging, hardening, phishing defense, audit evidence, or security monitoring. Remote cybersecurity resumes usually read better when each bullet shows scope, system, and result. Include distributed-team signals too: follow-the-sun response, async incident handoffs, remote audits, cross-time-zone coordination, or securing SaaS environments used by remote staff.

- **Weak:** Responsible for monitoring security alerts and helping with incidents.
- **Strong:** Monitored Splunk alerts across AWS and Okta, triaged phishing and endpoint incidents, and reduced repeat account-compromise cases by tightening MFA and conditional access policies in 2026.

If your background leans GRC instead of SOC work, swap detection language for audits, control testing, policy ownership, vendor reviews, and evidence collection. For application security, show code scanning, threat modeling, CI/CD checks, and developer remediation work rather than general software delivery.

Remote cybersecurity interviews usually test how you think through risk, not just what tools you've used. Expect a mix of technical screens, incident-response scenarios, and communication questions built around remote work. For security engineering or cloud security roles, be ready to explain how you’d harden AWS or Azure environments, investigate a suspicious login trail, or tune SIEM alerts without flooding the team with noise.

Common formats in 2026 include live troubleshooting, take-home labs, and scenario prompts such as, *“Walk me through your response to a phishing-led credential compromise affecting remote employees.”* If the role leans toward GRC, compliance, or security operations, prepare examples that show policy judgment, audit support, access review decisions, or how you handled exceptions across distributed teams.

Use a few detailed stories with scope, tools, and outcomes: what you detected, how you prioritized severity, which controls you changed, and what improved after remediation. For remote cybersecurity jobs, interviewers often pay close attention to documentation, escalation habits, and how clearly you explain technical risk in writing and on calls.

## Remote Cybersecurity Salary Data (September 2026)

This section summarizes salary information from remote cybersecurity job postings listed on the page in September 2026. It reflects pay details where employers included them and can be read alongside 1,454+ active remote cybersecurity openings.

| Level | P25 | P50 | P75 |
| --- | --- | --- | --- |
| Average | 126950 | 157500 | 190000 |
| Entry | 65612.5 | 93250 | 117802 |
| Mid | 117500 | 137220 | 183203 |
| Senior | 140000 | 172850 | 200250 |

Skills: ["security operations","incident response","threat detection","vulnerability management","SIEM","threat intelligence","cloud security","network security","identity management","access control","security monitoring","risk assessment","security compliance","penetration testing","security engineering","application security","endpoint security","IAM","log analysis","firewall management","documentation","remote collaboration"]

## Example jobs

- **Information Security Engineer — Keyfactor, Inc. — United States; Remote (Cleveland or Atlanta preferred)**: **About Keyfactor **

Our mission is to securely connect the world: humans, machines, and AI. Keyfactor is the leader in trust infrastructure for AI and machines, helping the world's largest enterprises and government agencies take control of the cryptographic identities that safeguard every digital interaction. Behind the platform is a global team of people who care deeply about the work and each other. We move fast, think big, and show up for one another every day. If you're looking for work that matters and a team that brings out your best, we hope you'll trust your future with Keyfactor!

**Title: **Information Security Engineer

**Location:** USA; Remote **(**Atlanta or Cleveland preferred)

**Experience: **Mid-Level

**Job Function**: Corporate IT

**Employment Type**: Full-Time

**Industry:**Computer & Network Security

**About the position**

We are seeking an experienced Information Security Engineer with a strong background in implementing and managing general information security frameworks, including ISO 27001:2022 and SOC 2 Type II. This role involves designing, maintaining, and improving our security infrastructure to ensure compliance with regulatory standards and support continuous monitoring efforts. The ideal candidate will play a key role in safeguarding the organization’s data and infrastructure while driving adherence to evolving security best practices.

**Responsibilities**

- Evaluate the security posture of systems, platforms, and cloud environments, establish appropriate security baselines, and drive implementation and hardening to close identified gaps.
- Quickly develop proficiency in new SIEM, EDR, and other security platforms as the environment evolves; configure, tune, and integrate these tools with SaaS applications and diverse data sources to expand visibility and detection coverage.
- Evaluate and optimize security playbooks, runbooks, and processes based on lessons learned, tooling changes, and evolving threats, ensuring documentation and workflows keep pace with the organization's security operations maturity.
- Experience conducting vulnerability assessments, system audits, and risk analysis using industry-standard scanning tools to support a proactive security posture.
- Manage and implement continuous monitoring processes to ensure the organization maintains compliance with a variety of information security frameworks, including ISO 27001:2022 and SOC 2 Type II. Experience with government compliance standards such as FedRAMP (NIST SP 800-53) and CMMC is preferred. This role focuses on ensuring robust security practices and adapting to evolving compliance requirements.
- Actively monitor, analyze, and respond to security alerts and incidents, performing investigations, incident handling, and recommending corrective actions.

**Minimum Qualifications, Education, and Skills**

- 5+ years of experience in information security or a similar role
- Proficiency in vulnerability scanning tools (Nessus, Burpsuite, Tenable, etc…) and interpreting scan results for remediation.
- Strong knowledge of security standards
- Demonstrated experience in continuous monitoring, network security, firewalls, VPNs, IDS/IPS, and endpoint protection.
- Strong analytical skills and a meticulous approach to problem-solving
- Demonstrated capability to deliver results on-time and to a defined schedule.
- Relevant certifications (e.g., CISSP, CompTIA Security+, CAP) are strongly preferred
- Familiarity with cloud security principles
- Experience with security automation and continuous monitoring tools
- PKI knowledge a plus
- Knowledge of scripting languages (Python, PowerShell) to automate security processes
- Experience with government-regulated environments (AWS GovCloud, Azure Government) preferred #LI-NA1

**Compensation**

Salary will be commensurate with experience. 

**Culture, Career Opportunities and Benefits **

We build teams that continually strive to get better than the day before. You will be challenged daily and given opportunities to grow personally and professionally. We balance autonomy and structure to create an entrepreneurial environment to spur creativity and new ideas. 

Here are just some of the initiatives that make our culture special:

- Second Fridays (a company-wide day off on the second Friday of every month minus November and December due to the Holiday schedule). Please note that this benefit is subject to change.
- Comprehensive benefit coverage globally.
- Paid Parental Leave is available to new parents. Structure varies based on regional/government requirements. In regions where government-paid leave doesn’t exist, like in the U.S., the company offers generous paid parental leave, along with comprehensive adoption and fertility support.
- Competitive time off globally.
- Dedicated employee-focused ambassadors via Key Contributors & Culture Committees.
- DIVERSE Commitment, a call to action for a more inclusive and diverse future in business, society, and technology.
- The Keyfactor Alliance Program to support DEIB efforts.
- Wellbeing resources, wellness allowance, mindfulness app free membership, Wellness Wednesdays.
- Global Volunteer Day, company non-profit matching, and 3 volunteer days off.
- Monthly Talent development and Cross Functional meetings to support professional development.
- Regular All Hands meetings – followed by group gatherings.

**Our Core Values **

Our core values are extremely important to how we run our business and what we look for in every team member:

**Trust****is paramount.**

*We deliver security software and solutions where trust and openness are of the highest importance for our customers. We are honest and a trusted partner in every aspect of business. *

**Customers****are core.**

*We strategize, operate, and execute through a customer-centric view. We prioritize the security interests of our customers, and we act as if their data were our own. *

**Innovation****never stops, it only accelerates.**

*The speed of change is accelerating. We are committed, through investment and focus, to stay ahead of the innovation curve. *

**We deliver with****agility****.**

*We thrive in high-paced and continually changing environments. We navigate through newly added variables, adjust accordingly, while driving towards our strategic goals.*

**United by****respect****.**

*Respect for all is what unites us. We promote diversity, inclusivity, equity, and acting with empathy and openness, both in our business and in our communities. *

**Teams****make “it” happen.**

*Vision and goals are not individually achievable – they require teamwork. We pride ourselves in operating as a cohesive team, creating promoters and partners, and winning as one. *

**Keyfactor is a proud equal opportunity employer including but not limited to veterans and individuals with disabilities.** 

**REASONABLE ACCOMMODATION:**Applicants with disabilities may contact a member of Keyfactor’s People team via people@keyfactor.com and/or telephone at 1.216.785.2990 to request and arrange for accommodations at any time.

**[Keyfactor Privacy Notice](https://www.keyfactor.com/privacy-policy/)**
- **Information Security Analyst, GRC — XBOW — Europe (Remote)**: # **Information Security Analyst (GRC)**

## **About XBOW:**

At XBOW, we’re redefining the future of cybersecurity by building the world's first autonomous pentester, powered by AI. Today, the gold standard for securing software systems is human pentesters, but with the rise of artificial intelligence, we’re stepping up to scale offensive security to meet the ever-growing demand.

AI is transforming the landscape of both cybersecurity and cyberattacks. While millions of people without security expertise are creating software, bad actors are using AI to launch more effective attacks. XBOW fights back with AI-driven superpowers, enabling security teams to stay one step ahead.

What makes XBOW truly unique? Like human experts, it forges creative attacks, adapts its learnings, and continuously works to find vulnerabilities faster than anyone ever could. We’re not only simulating threats—we’re also finding and responsibly disclosing real-world vulnerabilities, ensuring organizations can fix issues before they’re exploited. XBOW isn’t just a tool; it’s a transformative force in the secure development lifecycle.

Backed by Sequoia Capital and a team that includes the creators of GitHub Copilot and GitHub Advanced Security, XBOW is not just keeping up with the times—we’re shaping the future of cybersecurity. Our mission is simple: to defeat the bad actors before they strike, using AI to revolutionize how we approach offensive security.

We’re building something that *must* be built, and we’re the team to do it. Join us in shaping the next frontier of autonomous security.

## **Your Role: Information Security Analyst, GRC**

We’re looking for a detail-oriented, Information Security Analyst to help scale our security and trust function as we grow. In this role, you’ll play a key part in supporting customer and prospect security reviews, coordinating with legal on reviewing customer contracts, assessing third-party vendor risk, supporting resolution of compliance alerts and continuously improving how we identify and manage risk across the business.

This is an individual contributor role with no initial people-management responsibilities. However, as the risk and compliance function matures, there is a clear opportunity for this role to grow in scope and responsibility.

You’ll work closely with IT, Security, Engineering, Legal, Sales, and Customer teams, acting as a trusted partner in communicating our security posture and ensuring we meet customer and regulatory expectations.

## **What You'll Do:**

- Support customers and prospects by completing technical security questionnaires, risk assessments, and due-diligence requests
- Partner with Sales and Customer teams to explain XBOW’s security controls, architecture, and compliance posture
- Assess and manage third-party and vendor security risk, including reviews of SaaS providers and service partners
- Investigate and resolve alerts to stay compliant with our compliance programmes using the Vanta product.
- Help maintain and improve risk assessment frameworks, methodologies, and documentation
- Track and support remediation of identified risks in collaboration with internal stakeholders
- Contribute to compliance initiatives aligned with frameworks such as SOC 2, FedRAMP 20x, ISO 27001, and ISO 42001
- Maintain clear, well-structured risk registers, policies, and supporting evidence
- Coordinate risk management sessions and processes
- Identify opportunities to streamline and automate risk and compliance processes as the company scales
- Support audits, customer reviews, and internal assurance activities as needed

##

## **Skills and Qualifications**

## **Essential:**

- 7+ years of experience in risk, compliance, security assurance, or related roles
- Experience in hands-on technical roles for example in Engineering, IT or operational security
- Hands-on experience completing or reviewing technical security questionnaires and customer risk assessments
- Familiarity and experience with common security compliance, and data protection frameworks (e.g. SOC 2, ISO 27001, NIST, GDPR, and HIPAA)
- Experience conducting or supporting vendor / third-party risk assessments
- Strong written communication skills, with the ability to explain complex security concepts clearly
- Highly organized and detail-oriented, with a pragmatic approach to risk
- Comfortable working in a fast-moving, remote-first startup environment
- Familiar with using modern AI tooling to improve productivity whilst managing risk

## **Advantageous:**

- Experience working in a SaaS or security-focused company
- Experience handling Subject Access Requests for GDPR
- Security or risk certifications (e.g. CRISC or CISSP)
- Knowledge of cloud security best practices

## **What We Offer**

- **Compensation & Equity:** Competitive salary and meaningful stock options.
- **Growth:** Opportunity to learn from and collaborate with top security and AI experts
- **Impact**: Work on complex technical challenges that support the foundation of our company
- **Remote-First**:Work from anywhere, with regular opportunities to meet in person

## **What Else You Should Know**

- **Location:** Remote UK/EU (all team members are remote but we meet regularly and you’re supported to travel to collaborate with colleagues in person)
- **Contract:** Full-time.
- **Hiring Process:**
 Talent Introduction
- GRC & Security Knowledge Interview
 A conversation about your practical security and GRC knowledge and how you apply it in day-to-day compliance work.

Hiring Manager Interview

Final Interview with a member of our leadership team

We’re a security company that builds with AI at the core - so you’ll be protecting a team that moves fast, iterates aggressively, and lives in the command line. If that sounds like your kind of environment, let’s talk.
- **Information Security Analyst — GovWorx — United States**: GovWorx is seeking an experienced Information Security Analyst to enhance AI systems used by public safety agencies. This remote role involves evaluating and improving security systems, managing compliance frameworks like SOC2 and NIST, and working closely with IT and product teams. Candidates must have US citizenship, a background in security analysis with at least 5 years of experience, and the ability to pass an FBI background check. Join a mission-driven team focused on enhancing public safety through technology.
- **Information Security Analyst — EnableComp — Franklin, TN**: EnableComp is a leader in Specialty Revenue Cycle Management solutions, leveraging over 24 years of expertise to enhance financial sustainability for healthcare organizations. The Security Analyst will be responsible for day-to-day operations of the security program, ensuring secure system and network design and management. The role involves collaboration with various teams, leading departmental activities, and managing security assessments. Candidates should possess technical expertise in information security, compliance, and the ability to educate staff on security practices.
- **Information Security Analyst — City Lodge Hotels — Support Ofiice Johannesburg, ZA**: # **Position Detail**

### **Overall Purpose of the Job**

Supports the IT functionality of all business units and hotels by providing all internal users with secure solutions to their IT needs. Troubleshoots security issues and identifies security trends so as to ensure ongoing up time of systems. Provides insights into future security trends.

### **Education (Formal Qualification Required)**

***Minimum***

Grade 12.

National Diploma: IT.

N+.

MCSA: Windows 10 and above.

ITIL Foundations v4.

Security +.

Microsoft 365: Modern Desktop Administrator Associate.

Computer literacy is essential particularly with proficiency in Microsoft Office Suite.

***Advantageous***

CEH.

### **Legal Requirements (e.g. Driver’s License, etc.)**

Valid driver’s license.

### **Experience (Minimum Experience Required - Number of years)**

***Minimum***

Incumbent must have at least 4 years' experience in Incident Response, Intrusion Prevention, Cyber Security Techniques, Advanced Server, Advanced Network Support WAN and LAN, Operating Systems, Advanced Azure Support and Virtualisation.

***Advantageous***

IT experience in hospitality or related industry.

### **People**

May hire new employees when authorised to do so up to the level of Information Systems Support Officer (Security).

Is required to issue verbal/written warnings when necessary and in the event of company policy having been violated. After consultation with the Divisional Director: IT | Group IT Manager and the Divisional Director: HR | Group HR Manager, may terminate contracts of employment, where necessary and in the event of company policy having been gravely violated.

### **Finance**

The job requires the handling of money and the authorisation to dispense and deposit company funds and is therefore subject to a fraud and credit check.

### **Occasional Duties**

Carry out any duties as may be requested by the Divisional Director: IT and in line with expertise and role.

## **Special Conditions**

May be required to work on a standby basis after hours, as per rotation schedule.

May be required to be available 24/7 for emergencies.

Own transport.

This job requires prolonged sitting, maintaining a static posture, performing repetitive movements, undertaking manual handling that may involve awkward postures, managing visual strain, and coping with exposure to psychosocial and cognitive stressors.

## **Competencies (Knowledge, Skills and Behavioural Attributes)**

**Knowledge**

- Penetration testing
- Active Directory
- Scripting
- Azure Cloud and Hybrid
- Email Security and Spam Filters
- Data handling and Encryption
- Voice
- Networks – routing and switching
- Virtualisation
- Antivirus and EDR
- Patch management
- Immutable Backups
- Secure Certificates
- Vulnerability Assessment

**Skills**

- Time management
- Verbal and written communication
- Troubleshooting/problem solving
- Relationship management
- Cognitive (Memory/Insight/ Conceptualisation)
- Planning
- Clerical (documentation)
- Attention to detail
- Critical and creative thinking
- Learning agility

**Behavioural Attributes**

- Customer centric
- Perseverance
- Self-starter
- Collaborative
- Stress tolerant and resilient
- Results orientated
- Accountable

### **Position Requirements**

**Detailed Description / Output**

- Finds and supplies secure solutions to issues in an effective and efficient manner.
- Contributes necessary information for budgets.
- Contributes to cost savings drive by the division.
- Monitors and reports on the entire estate to ensure everything is secured correctly by attending to:

1. Awareness Training
2. PCIDSS Assessments
3. GDPR/POPI Assessments
4. Penetration Testing
5. Vulnerability and Patch Management
6. Incident Response

- Configures and maintains all deployed hardware to the required security standards considering the current functionality of the hardware and the capacity of the hardware measured against the needs of the business.
- Maintains software deployed on the hardware and networks. This includes operating systems and various other operational tools (such as backup tools, monitoring tools and security tools) and business and core CLH systems.
- Ensure that the WAN and LAN are correctly secured
- Builds and maintains relationship with 3rd party suppliers.
- Manages escalations.
- Maintains security on all software applications and hardware devices and assists with the deployment of new or existing systems.
- Attends to security incidents.
- Monitors the strict adheres of the IT team and users to IT security requirements.
- Administers the change management process in a manner that ensures changes or new implementations do not affect business efficiency and continuity.
- Devises and maintains the necessary DR policies, plans and procedures.
- Manages the applicable DR solutions in place.
- Tests DR solutions, processes and procedures and reports on these, as well as on all other DR related activities.
- Develops, implements and maintains IT security policies and procedures.
- Be on the lookout for and be aware of any enhancements that could improve the security of the group’s infrastructure and to communicate such to the group.
- Maintains any differentiation, should it exist or be required, between the brands in relation to the applicable hardware/software authorised for use in those brands.
- Provides support to first line technicians on the more technical software, hardware, network and security related queries and resolve these within the agreed Service Level Agreements (SLAs).
- Provides incident management, problem management, event management, availability management, asset and configuration management and capacity management.
- Supports projects related to the deployment or upgrade of IT hardware, networks and software.
- Assists with testing of new and existing systems prior to deployment.
- Provides 24/7 support to the business to eliminate any system down time.
- Communicates effectively and timeously with different business units, suppliers and CLH IT.
- Builds and maintains relationships with key stakeholders which includes the different business units, suppliers, CLH IT and 3rd party vendors.
- Participates in personal development activities to learn/enhance skillset.
- Participates in and manages ITs human resources function in accordance with the company’s human resource policies.
- Conducts/participates all legislative and operational training in line with group requirements and/or training department directives.
- Achieves and maintains good working relationships and cooperation with IT employees and company colleagues.
- In liaison with the training department of the HR division, provides users accessing core business applications with sufficient training and reference material in line with CLH policies and standard operating procedures.
- **Information Security Analyst — Alteryx, Inc. — United States - Remote**: Alteryx is seeking an Information Security Analyst to join its Security Trust team. This role involves supporting security assurance workflows, including customer security reviews and third-party risk assessments. The ideal candidate will analyze security information, enhance processes, and leverage artificial intelligence tools. You will contribute to building customer trust and ensure compliance across security and privacy domains. This position offers an opportunity to grow in various aspects of security assurance while working in a dynamic environment focused on innovation and excellence.
- **Information Security Analyst — Atlas Technica — Kyiv, UA, Manila, PH**: **Title:** Information Security Analyst
**Reports to:** Chief Information Security Officer
**Department:** Information Security
**Location:** Kyiv, Ukraine – Remote
**Term:** Full-time

**About Atlas Technica**

Atlas Technica’s mission is to shoulder IT management, user support, and cybersecurity for our clients, who are hedge funds and other investment firms. Founded in 2016, we have grown year over year through our uncompromising focus on service.

We value ownership, execution, growth, intelligence, and camaraderie. We are looking for people who share our Core Values, thrive, and contribute to this environment while putting the customer first. At Atlas Technica, we offer a competitive salary, comprehensive benefits, and great perks to our global Team. We strive to maintain a professional yet friendly environment while promoting professional and career development for our Team Members. Join Atlas Technica now!

**Position Overview**

We are seeking an Information Security Analyst to join our growing Information Security team. This is a highly technical role focused on strengthening the security posture of Atlas Technica and our clients through vulnerability management, risk and compliance activities, security hardening, monitoring, and incident support.

Working closely with the Chief Information Security Officer and cross-functional teams, the Information Security Analyst will identify security risks, coordinate remediation efforts, support due diligence and compliance initiatives, improve security configurations, and help develop scalable approaches to vulnerability and incident management.

The successful candidate will combine strong cybersecurity fundamentals with analytical thinking, technical problem-solving, automation skills, clear communication, and the ability to work independently. As the Information Security function continues to evolve, this role will provide opportunities to take on greater responsibility and contribute to the development of Atlas Technica’s security practices and standards.

**Position Responsibilities:**

- Review vulnerability reports, investigate findings, recommend scalable remediation approaches, and track remediation progress through completion
- Coordinate with Support, NOC, Engineering, and other technical teams to implement security remediations while minimizing client impact and appropriately planning maintenance activities
- Develop or support scripts, automation, and repeatable processes that improve vulnerability remediation across multiple client environments
- Address vulnerabilities identified through internal and third-party vulnerability management platforms and apply relevant remediation strategies across applicable client environments
- Complete Due Diligence Questionnaires (DDQs) and coordinate accurate, timely responses to security and risk-related information requests
- Review findings from risk assessments and penetration testing, identify appropriate remediation actions, and participate in Business Impact Analyses and tabletop exercises
- Measure and improve alignment with Microsoft security benchmarks, including Microsoft Intune configurations, while identifying opportunities to strengthen workstation, cloud, infrastructure, and security configurations
- Support system hardening initiatives across endpoints, cloud environments, identity, and other security technologies
- Support ongoing SOC 2 and security operations activities, including test restores, KnowBe4 phishing and training reviews, SIEM log reviews, and related security-control activities
- Assist with cybersecurity incident response, investigation, remediation, and follow-up activities
- Partner with the NOC and outsourced SOC resources to develop, maintain, and improve security remediation runbooks and response procedures
- Maintain accurate security documentation, tickets, remediation records, and supporting evidence while contributing to continuous improvement initiatives across the Information Security function

**Requirements:**

- Strong understanding of cybersecurity principles, security controls, risk management, and industry security practices
- Experience with vulnerability management, vulnerability analysis, remediation, and tracking
- Familiarity with Microsoft Intune, Microsoft security benchmarks, and endpoint or cloud security configuration
- Experience working with security technologies such as SIEM platforms, IDS/IPS solutions, vulnerability scanners, or similar security tools
- Experience with RMM, SOAR, or other automation and security-orchestration platforms
- Scripting or automation experience with the ability to develop scalable approaches to security remediation and operational tasks
- Experience creating and maintaining technical documentation, security procedures, and remediation runbooks
- Strong analytical, troubleshooting, and problem-solving skills with the ability to investigate findings and recommend practical remediation strategies
- Strong written and verbal communication skills with the ability to collaborate effectively across technical and non-technical teams
- Ability to work effectively both independently and collaboratively within a remote, fast-paced environment while managing multiple security priorities

**Desirable Qualities:**

- Experience working within a Managed Service Provider environment
- Experience supporting security or compliance activities in a multi-client or highly regulated environment
- Exposure to SOC 2, penetration testing, security assessments, due diligence, or related compliance initiatives
- Relevant cybersecurity, Microsoft, or cloud certifications such as AZ-500, SC-900, SC-300, CompTIA Security+, or similar credentials

**Atlas Technica is proud to be an Equal Employment Opportunity employer. We do not discriminate based upon race, religion, color, national origin, gender, sexual orientation, gender identity, age, status as a protected veteran, status as an individual with a disability, or other applicable legally protected characteristics.**
- **Senior Information Security Engineer — G-P — Ireland (Remote-First)**: **About Us**

Our leading SaaS-based Global Employment Platform™ enables clients to expand into over 180 countries quickly and efficiently, without the complexities of establishing local entities. At G-P, we’re dedicated to breaking down barriers to global business and creating opportunities for everyone, everywhere.

Our diverse, remote-first teams are essential to our success. We empower our Dream Team members with flexibility and resources, fostering an environment where innovation thrives and every contribution is valued and celebrated.

The work you do here will positively impact lives around the world. We stand by our promise: Opportunity Made Possible. In addition to competitive compensation and benefits, we invite you to join us in expanding your skills and helping to reshape the future of work.

At G-P, we assist organizations in building exceptional global teams in days, not months—streamlining the hiring, onboarding, and management process to unlock growth potential for all.

**About this Position**

As an Application Security engineer , you will support G-P’s application security program, ensuring the safety of both web platforms and integrated AI/LLM systems. You will evaluate web technologies and AI workflows using enterprise-grade tools, enforce AI security guidelines, and coordinate remediation efforts with engineering teams.

**What you will do:**

- Participate in threat modeling exercises with engineering team members for application and AI-driven architectures
- Triage SCA/SAST/DAST/CSPM findings by eliminating false positives and providing well-vetted vulnerabilities to engineering teams
- Support vulnerability management efforts for networks and infrastructure
- Partner with engineering teams ensuring timely remediation of security findings
- Perform security assessments, reviews, and internal penetration tests
- Support application security programs and security team initiatives
- Develop scripts and tools to automate repetitive security tasks, such as log analysis, patch management, and incident detection.
- Build custom solutions to integrate security tools with existing systems using languages like Python, JavaScript, or Go.

**What we are looking for:**

***Minimum Requirements:***

- Education:BS (or higher) in Computer Science or related field, or equivalent work experience.
- Experience: 3+ years of experience in application security with any combination of the following: threat modeling experience, secure design reviews, code reviews, pen-testing
- Excellent communication skills and business acumen
- Proficiency in coding/scripting languages (e.g., Python, Go etc.).
- Web application penetration testing experience (CTFs, Bug Bounty, etc)
- Amazon Web Services (AWS) security and engineering knowledge and experience
- Experience with developing or testing web application technologies
- Nice to have****security certifications (OSCP, OSWP, eCPPT, eWPT, Security+, etc)
- Experience with Linux, Docker, Terraform, and programming against REST APIs

The annual gross fixed pay range for this position is €84,000 - €105,000 plus variable compensation

*Individuals residing, or applying to work, in the **United States: California or Philadelphia**, **Pennsylvania, **please review the following additional information:

G-P will consider qualified applicants with arrest or conviction records in accordance with the California Fair Chance Act, Los Angeles City Fair Chance Act Ordinance, Los Angeles County Fair Chance Act Ordinance, and San Francisco Fair Chance Act Ordinance. Los Angeles applicants can review additional information regarding the Los Angeles City Fair Chance Act here: [Fair Chance Initiative for Hiring Ordinance](https://shared.outlook.inky.com/link?domain=urldefense.com&t=h.eJxFUF1PwjAU_Suy-GRkZV33hS8SVAQJjCw84EvTtR10dGvTFXQY_7sb0fhwT3LOufeem_vlnIx0xjfOwVrdjAHoKOMFrxvuUlWBsw8w_vVySlxJqLCtu1dnsNVSEdaAgoqDAitlBeV3cGRVBxOtpaCktk1HCmU6TI04E9t3PFfdZMtN7408F_ouRK5mBcYPi2wr-xoM1hHeZa-0Ykmp_UOJEXue0HYzgFmbTEUphzJJ8dwzDaIZEYty-rn5mIUaQS_2ZyZ98tIin33UwQt-W9rV3K-X1fEzupQVwXkeZrvJktX--vB-69zfOMf-A3upciLFhVih6qEmxtbdjUAqw4WU7eN-qK8vCXIKecgYz2mQ5JzFSQwDThiCNPaiIAZeFMEQ-Z3qIohGoY_6DN5nWGpOl79Nvcquyf9cdNz7_gFnYIED.MEQCICChUMF1POWhdDQaggM0FRjjJZ1lAcLJ15DZZDq3zupvAiAx1VO2lLsi1vKRs7_BzTCXX81huhJ5uOVsv4BIuvW39A), and Philadelphia applicants can review information pertaining to Philadelphia’s Fair Criminal Record Screening Standards Ordinance here: [Fair Chance Poster](https://shared.outlook.inky.com/link?domain=urldefense.com&t=h.eJxFj1tvgjAAhf-Kkj0OSku5uZcZNi-bmxqefGpKW6FYoCko6rL_PjFb9vidk5wv58s6GmVNRlbRdbqdAHBDLvaiboXDmgqcPEDIb9f3vaMLqaiTNydQCS4pQC6CLkYeDNwIh2BGpbGTgtZM2AtpZJ3biva2btpOGEfzPSFP4_E6JLt0wSoel9orSoL565RdtmOUXuJElspW8YYsoWkxS6l8K5Pztp8HGiMYeXOzeYGbfTbva39G3lfd59KrV9XhHF7LipIsC9Ld9H3d8zL5eLAeR9ZheJerJqNKXmknm9rW1HS1MC1QjRFSqctzbuv7XT9jSASci4z5cSZ4FEfIF5RjxCIY-hGAYYgC7N1SByPsBh4eHGJwdMwcr39LQ8rv5n-WN4bfP1nrdLY.MEUCIA1-pP3eRDEfOnGzDHEJO_5cRL2WrthGwPNyFvUSTvbwAiEA_qA8gsy2BPUN-ydrjIruYGuY5d00Vye8J-RWpWPUJeo). Any consideration of a candidate’s background check with arrest or conviction records will include an individualized assessment based on the factors required by applicable law, including the candidate’s specific record and the duties and requirements of the specific job.*

**G-P. Global Made Possible.**

*G-P is a proud Equal Opportunity Employer, and we are committed to building and maintaining a diverse, equitable and inclusive culture that celebrates authenticity. We prohibit discrimination and harassment against employees or applicants on the basis of race, color, creed, religion, national origin, ancestry, citizenship status, age, sex or gender (including pregnancy, childbirth, and pregnancy-related conditions), gender identity or expression (including transgender status), sexual orientation, marital status, military service and veteran status, physical or mental disability, genetic information, or any other legally protected status.*

*G-P also is committed to providing reasonable accommodations to individuals with disabilities. Individuals with disabilities are encouraged to apply for these positions. If you need an accommodation due to a disability during the interview process, please contact us at [careers@g-p.com.](mailto:careers@globalization-partners.com)*
- **Senior Information Security Engineer — Zscaler — Remote - United States**: Zscaler (NASDAQ: ZS) accelerates digital transformation so customers can be more agile, efficient, resilient, and secure. The Zscaler Zero Trust Exchange™️ platform protects thousands of customers from cyberattacks and data loss by securely connecting users, devices, and applications in any location. Distributed across 160+ public exchanges globally and thousands of private exchanges at the edge, the SASE-based Zero Trust Exchange is the world’s largest in-line cloud security platform.

We believe the future of work is Human + AI and are building an AI-native enterprise where human potential is amplified by machine intelligence to solve the world’s hardest security challenges. Driven by deep customer obsession, we are committed to the mission, outcome, and to each other. We bring these commitments to life through three core behaviors: ownership and collaboration, trust through outcomes and impact, and a challenge culture with ongoing feedback. Ready to make an impact at the company pioneering security transformation in the AI era? Join us at Zscaler.

**Role**

We are looking for a Senior Information Security Engineer to join our team. This is a Remote (US only) role, reporting to the Senior Manager, Enterprise Security in the Enterprise Security department. As a key member of the Enterprise Security team, you will be responsible for protecting corporate data with a primary focus on Data Protection operations. In this role, you will implement and operationalize security tools while continuously improving alert fidelity to strengthen overall security outcomes.

**What you’ll do (Role Expectations)**

- Implement and provide tuning recommendations for data loss prevention solutions
- Perform periodic reviews of data protection program with recommendations for improvement
- Maintain strong relationships with business partners to understand where sensitive data lives and what controls can be put in place to protect it

**Who You Are (Success Profile)**

- You thrive in ambiguity and feel comfortable building the path as you walk it, viewing dynamic environments as an opportunity to construct something meaningful.
- You act like an owner with a strong bias for action, operating with integrity and navigating seamlessly between high-level strategy and hands-on execution.
- You are a dedicated learner with a true growth mindset who actively seeks feedback to develop yourself and deliver purposeful results.
- You are a positive force who approaches complex challenges with constructive energy, inspiring your team to stay focused on solutions.
- You operate with urgency, recognizing that speed and quality are aligned to deliver high-impact results in a fast-growing organization.

**What We’re Looking for (Minimum Qualifications)**

- Demonstrated curiosity and active exploration of AI tools, with a proven history of integrating new technologies to enhance daily workflows and augment problem-solving
- Experience with a variety of data loss prevention tools, focusing on various exfiltration avenues, like web, endpoint, and email
- Proven working knowledge of reviewing DLP alerts, reducing false positives, and moving controls to blocking state with minimal impact to the business
- Understanding of various data stores, including in the cloud and SaaS, to be able to deploy monitoring functionality and controls

**What Will Make You Stand Out (Preferred Qualifications)**

- Experience with Zscaler security tools, particularly ZIA and DSPM
- Automation skills to help with data processing and tuning opportunities

#AJ-1 #AJ-Remote

Zscaler’s salary ranges are benchmarked and are determined by role and level. The range displayed on each job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations and could be higher or lower based on a multitude of factors, including job-related skills, experience, and relevant education or training.

The base salary range listed for this full-time position excludes commission/ bonus/ equity (if applicable) + benefits.

Base Pay Range

$134,000—$167,500 USD

At Zscaler, we are committed to building a team that reflects the communities we serve and the customers we work with. We foster an inclusive environment that values all backgrounds and perspectives, emphasizing collaboration and belonging. Join us in our mission to make doing business seamless and secure.

Our Benefits program is one of the most important ways we support our employees. Zscaler proudly offers comprehensive and inclusive benefits to meet the diverse needs of our employees and their families throughout their life stages, including:

- Various health plans
- Time off plans for vacation and sick time
- Parental leave options
- Retirement options
- Education reimbursement
- In-office perks, and more!

Learn more about Zscaler's hybrid working model and benefits [here](https://www.zscaler.com/candidate-resource-hub).

By applying for this role, you adhere to applicable laws, regulations, and Zscaler policies, including those related to security and privacy standards and guidelines.

Zscaler is committed to providing equal employment opportunities to all individuals. We strive to create a workplace where employees are treated with respect and have the chance to succeed. All qualified applicants will be considered for employment without regard to race, color, religion, sex (including pregnancy or related medical conditions), age, national origin, sexual orientation, gender identity or expression, genetic information, disability status, protected veteran status, or any other characteristic protected by federal, state, or local laws. *See more information by clicking on the*[*Know Your Rights: Workplace Discrimination is Illegal*](https://www.eeoc.gov/sites/default/files/2023-06/22-088_EEOC_KnowYourRights6.12ScreenRdr.pdf)*link.*

Pay Transparency

Zscaler complies with all applicable federal, state, and local pay transparency rules.

Zscaler is committed to providing reasonable support (called accommodations or adjustments) in our recruiting processes for candidates who are differently abled, have long term conditions, mental health conditions or sincerely held religious beliefs, or who are neurodivergent or require pregnancy-related support.
- **Information Security Engineer Sr — MultiCare Health System — Remote, United States**: Join MultiCare as an Information Security Cybersecurity Senior. You'll play a significant role in leading the information security team by implementing a comprehensive security program. This includes defining policies, deploying technical controls, and safeguarding technology and information systems. The role requires experience in IT or information security and offers numerous benefits including competitive salary and generous PTO, all while working in a supportive environment that values growth, community, and well-being.
- **Senior Information Security Engineer — eMoney Advisor — Remote**: The Senior Information Security Engineer at eMoney Advisor is responsible for the management and operational availability of a 24/7 infrastructure, ensuring the confidentiality and integrity of sensitive data. This hands-on role involves risk analysis, compliance monitoring, and collaboration with various business units to enhance security policies and procedures. The candidate will also support security software, facilitate audits, and respond to potential data breaches, contributing to the company’s commitment to security and data integrity.
- **Information Security Engineer (R14207) — Oportun — Remote - MX**: ### **ABOUT OPORTUN**

Oportun (Nasdaq: OPRT) is a mission-driven financial services company that puts its members' financial goals within reach. With intelligent borrowing, savings, and budgeting capabilities, Oportun empowers members with the confidence to build a better financial future. Since inception, Oportun has provided more than $21.3 billion in responsible and affordable credit, saved its members more than $2.5 billion in interest and fees, and helped its members set aside an average of more than $1,800 annually.

### **WORKING AT OPORTUN**

Working at Oportun means enjoying a differentiated experience of being part of a team that fosters a diverse, equitable and inclusive culture where we all feel a sense of belonging and are encouraged to share our perspectives. This inclusive culture is directly connected to our organization's performance and ability to fulfill our mission of delivering affordable credit to those left out of the financial mainstream. We celebrate and nurture our inclusive culture through our employee resource groups.

### **POSITION OVERVIEW**

The Information Security Engineer will lead cybersecurity investigations across cloud, endpoint, identity, SaaS, email, and network environments. This role is responsible for identifying, investigating, containing, and remediating security incidents while correlating data from SIEM, EDR, cloud, identity, and network security tools. The position partners closely with Engineering, Infrastructure, Fraud, Legal, Communications, and Product teams to manage incidents, communicate risk, and improve the organization’s security posture.

The ideal candidate has hands-on experience with incident response, threat hunting, detection engineering, and digital threat protection, along with knowledge of Windows, Linux, AWS, Active Directory, networking, and modern identity-based attacks. This role also supports continuous improvement through automation, AI-assisted security workflows, detection tuning, playbook development. Experience with cloud security, Kubernetes, Wiz, SOAR, purple teaming, fraud investigations, and third-party takedowns is preferred.

### **WHAT YOU’LL DO**

- Bachelor's degree in Computer Science, Cybersecurity, Information Systems, or a related field, or 2-5 years of experience in Security Operations, Incident Response, Digital Threat Protection, Threat Intelligence, Cyber Forensics, or Detection Engineering.
- Experience leading and coordinating cybersecurity investigations from initial detection through containment and remediation.
- Experience with SIEM platforms such as Splunk for investigation, detection engineering, and threat hunting.
- Experience investigating incidents across cloud, endpoint, identity, SaaS, and network environments.
- Experience analyzing telemetry from EDR, firewalls, identity providers, proxies, cloud platforms, email security solutions, and authentication systems.
- Strong understanding of Windows, Linux, Active Directory, Entra ID (Azure AD), AWS IAM, and modern identity attacks.
- Working knowledge of networking fundamentals, including TCP/IP, DNS, HTTP/S, SMTP, VPNs, and common enterprise architectures.
- Experience performing root cause analysis and correlating activity across multiple security technologies.
- Ability to develop clear executive summaries and communicate technical findings to both technical and non-technical stakeholders.
- Experience collaborating across Engineering, Infrastructure, Fraud, Legal, , Communications, and Product teams during investigations.
- Strong documentation skills for investigations, incident timelines, playbooks, and lessons learned.
- Continuous learning, security automation, and process improvement.

### **WHO YOU ARE / WHAT YOU BRING**

- Experience leveraging AI-assisted security tools and workflow automation to improve investigation efficiency, threat hunting, detection engineering, and documentation
- Demonstrate ability to identify repetitive operational tasks suitable for automation and implement AI-enabled workflows that improve analyst productivity without reducing investigation quality
- Experience in conducting purple team exercises
- Coordinate external takedowns and threat remediation with third-party providers.
- Investigate suspicious activity in AWS, Kubernetes, GitHub, SaaS platforms, and identity systems.
- Experience using Wiz Cloud Native Application Protection Platform (CNAPP)
- Experience conducting Threat Hunting using the MITRE ATT&CK framework.
- Experience developing, tuning, or maintaining security detections and SIEM use cases.
- Experience with SOAR platforms and security automation.
- Experience conducting fraud investigations or partnering with Fraud Operations.
- Experience investigating Account Takeover (ATO), payment fraud, synthetic identity fraud, or cyber-enabled fraud.
- Security certifications such as GCIH, GCTI, AWS Security Specialty, Security+, or equivalent.

#LI-REMOTE

#LI-GK1

We are proud to be an Equal Opportunity Employer and consider all qualified applicants for employment opportunities without regard to race, age, color, religion, gender, national origin, disability, sexual orientation, veteran status or any other category protected by the laws or regulations in the locations where we operate.

California applicants can find a copy of Oportun's CCPA Notice here: [https://oportun.com/privacy/california-privacy-notice/](https://oportun.com/privacy/california-privacy-notice/).

We will never request personal identifiable information (bank, credit card, etc.) before you are hired. We do not charge you for pre-employment fees such as background checks, training, or equipment. If you think you have been a victim of fraud by someone posing as us, please report your experience to the FBI’s Internet Crime Complaint Center (IC3).

## Related

- [Cybersecurity Jobs](/jobs/cybersecurity-jobs/)
- [Remote Jobs in the US](/jobs/remote-jobs-us/)
- [Remote Jobs in the UK](/jobs/remote-jobs-uk/)
- [Remote Jobs In Canada](/jobs/remote-jobs-canada/)
- [Remote DevOps Engineer Jobs](/jobs/remote-devops-engineer-jobs/)
- [DevOps Engineer Jobs](/jobs/devops-engineer-jobs/)
- [Remote QA (Quality Assurance) Jobs](/jobs/remote-qa-jobs/)
- [QA (Quality Assurance) Jobs](/jobs/qa-jobs/)
- [Remote Software Developer Jobs](/jobs/remote-software-developer-jobs/)
- [Software Developer Jobs](/jobs/software-developer-jobs/)
- [Web3 Jobs](/jobs/web3-jobs/)
- [Remote Product Manager Jobs](/jobs/remote-product-manager-jobs/)

## FAQ

### Are remote cybersecurity jobs usually fully remote or partly on-site?

This page is focused on remote cybersecurity jobs, so the main pattern is work that can be done off-site. Even so, some postings may still note occasional travel, team overlap hours, or specific remote location limits. It helps to read each remote cybersecurity listing closely before you apply.

### Do remote cybersecurity jobs require prior security experience?

Some remote cybersecurity jobs ask for direct security experience, while others are more open to adjacent backgrounds in IT support, systems administration, cloud infrastructure, or network operations. On a remote page like this, employers may also pay close attention to whether you can handle security work independently without in-office supervision.

### Can I apply for remote cybersecurity jobs if I’m coming from IT or networking?

Yes, that can be a reasonable path for certain remote cybersecurity roles. Experience with networking, access control, endpoint support, logging, or cloud administration can overlap with security work. For remote cybersecurity jobs, it helps if your resume shows hands-on responsibility for incident response, monitoring, hardening, or security-related troubleshooting.

### What should I highlight when applying for remote cybersecurity jobs?

For remote cybersecurity jobs, focus on the work that proves you can investigate issues, document clearly, and manage security tasks without constant oversight. Concrete details help: security monitoring, vulnerability remediation, IAM work, SIEM exposure, cloud security tasks, or policy support. If you use LiftmyCV, keep the resume focused on remote cybersecurity work rather than broad IT duties.

### Are remote cybersecurity jobs limited to senior-level candidates?

No. Remote cybersecurity pages can include a mix of experience levels, although fully remote security roles often lean toward people who can work with less day-to-day guidance. Entry-level applicants may still find openings tied to security operations, compliance support, monitoring, or analyst work, especially when their background already includes technical support or infrastructure tasks.

### Do remote cybersecurity jobs usually involve compliance work or hands-on technical work?

It can be either, and broad remote cybersecurity pages often include both. Some jobs lean toward technical areas like monitoring, incident handling, cloud security, or vulnerability management. Others sit closer to governance, risk, compliance, audit support, or policy documentation. The title and job description usually show which side of cybersecurity the remote role emphasizes.

### Land Your Next Cybersecurity Job with LiftmyCV's AI Agent

Use LiftmyCV to match with remote cybersecurity roles, tailor your resume to each opening, and auto-apply without repeating the same steps for every application. It helps you focus on better-fit jobs while handling the routine parts of the search.
