Senior Information Security Specialist

Halcyon
United States
Workplace: RemoteFull timeUSD 120,000 - 160,000 annuallyFunction: CybersecurityExperience: 5+ yearsSkills: ["Communication","Documentation","Cross-functional collaboration","Risk assessment"]

Support and mature enterprise security and GRC programs by coordinating third-party risk, security testing (vulnerability scans and penetration tests), and corrective action plans. Partner with managed security service providers and cross-functional stakeholders to monitor security events, ensure security and compliance requirements are implemented, and maintain policies, standards, and procedures. Help coordinate incident response readiness, disaster recovery testing, and business continuity exercises while staying current with security and privacy frameworks.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Halcyon
Halcyon
12 hours ago

Senior Information Security Specialist

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 1 hour agoStatus: Live

Job Summary

Support and mature enterprise security and GRC programs by coordinating third-party risk, security testing (vulnerability scans and penetration tests), and corrective action plans. Partner with managed security service providers and cross-functional stakeholders to monitor security events, ensure security and compliance requirements are implemented, and maintain policies, standards, and procedures. Help coordinate incident response readiness, disaster recovery testing, and business continuity exercises while staying current with security and privacy frameworks.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Mid level

Key Responsibilities

  • •Perform and maintain third-party risk assessments and track vendor remediation activities.
  • •Coordinate internal and external security testing, including vulnerability scans and penetration tests.
  • •Develop, track, and follow up on corrective action plans for security gaps or audit findings.
  • •Collaborate with managed security service providers and internal stakeholders to monitor security events and escalations.
  • •Partner with engineering and operations teams to implement security and compliance requirements, including policies and incident response planning.

Pay and Benefits

Salary: USD 120,000 - 160,000 annually
Equity and Bonus:Equity
Perks:Health InsuranceDentalVision401kDisabilityLife InsurancePaid LeaveParental LeaveEquity

Key Requirements

  • •5+ years of experience in information security, GRC, or IT risk management.
  • •Strong understanding of cybersecurity concepts, controls, and risk frameworks.
  • •Demonstrated experience with third-party risk management processes and tooling.
  • •Proven ability to coordinate security testing and vulnerability management efforts.
  • •Ability to assess and implement technical and administrative controls across cloud and hybrid environments.
Experience:5+ yearsCybersecurityGRCIT risk management
Skills:CommunicationDocumentationCross-functional collaborationRisk assessment
Certifications:CISSPCISACISMSecurity+
Languages:English
Tech Stack:GRCThird-party risk managementSOC 2ISO 27001TX-RAMPFedRAMPDrataVantaNIST 800-53CIS ControlsIncident responseDisaster recoveryBusiness continuityMicrosoft 365Google WorkspaceHIPAAGDPRCCPADevSecOpsSecurity controls

Company Brief

Halcyon
Builds AI-powered copilots and knowledge tools that help teams access organizational knowledge, automate workflows, and surface insights from documents and data to improve productivity and decision-making.
Industry: AI & Machine Learning
Website