Position Details
About this role
Mid-level information security analyst responsible for maintaining ISO 27001 and SOC 2 Type II compliance, managing client audits and security RFIs, and applying a GRC lens to AWS cloud environments.
Key Responsibilities
- Support compliance frameworks and audits
- Own Client Audits and Security RFIs
- Cloud governance for AWS and CIS benchmarks
- Incident management and alert triage
- Third-party risk management
Technical Overview
Roles includes compliance leadership, audit responses, cloud security posture management, and incident management with CSPM/SIEM/EDR tooling; interaction with external auditors and vendors.
Ideal Candidate
The ideal candidate is a mid-level information security professional with 3-5 years of hands-on experience in GRC, ISO 27001 and SOC 2 audits, and strong cloud security posture skills in AWS, aiming to improve control design and audit responsiveness.
Must-Have Skills
Nice-to-Have Skills
Tools & Platforms
Required Skills
Hard Skills
Soft Skills
Certifications
Preferred
Industry & Role
Clearance & Visa
Keywords for Your Resume
Deal Breakers
No 3-5 years of relevant experience, Lack of exposure to ISO 27001 or SOC 2 audits, Requires visa sponsorship
Get matched to jobs like this
Luna finds roles that fit your skills and career goals — no endless scrolling required.
Create a Free Profile