✦ Luna Orbit — Cybersecurity

Information Security Analyst

at Cutover

📍 Remote, US Remote 💰 $145K – $155K USD / year Posted March 31, 2026
Salary $145K – $155K USD / year
Type Full-Time
Experience mid
Exp. Years 3-5 years
Education Not specified
Category Cybersecurity

Mid-level information security analyst responsible for maintaining ISO 27001 and SOC 2 Type II compliance, managing client audits and security RFIs, and applying a GRC lens to AWS cloud environments.

  • Support compliance frameworks and audits
  • Own Client Audits and Security RFIs
  • Cloud governance for AWS and CIS benchmarks
  • Incident management and alert triage
  • Third-party risk management

Roles includes compliance leadership, audit responses, cloud security posture management, and incident management with CSPM/SIEM/EDR tooling; interaction with external auditors and vendors.

The ideal candidate is a mid-level information security professional with 3-5 years of hands-on experience in GRC, ISO 27001 and SOC 2 audits, and strong cloud security posture skills in AWS, aiming to improve control design and audit responsiveness.

3-5 years in Information Security with a proven track record in full-stack security or GRCExperience triaging alerts and incident managementFoundational understanding of cloud native security toolsExperience leading SOC2 or ISO27001 audits and managing evidence collection
Experience with external audits and client responsesFamiliarity with AWS security posture and CIS benchmarks
AWSCSPMSIEMEDR
ISO 27001SOC 2 Type IICSPMSIEMEDRAWSGRCrisk assessmentsaudit coordinationcloud securityincident managementvendor risk management
ISO 27001SOC 2 Type IICIS benchmarksAWSCSPMSIEMEDRGRCrisk assessmentsaudit coordinationcloud securityincident managementvendor risk management
communicationproblem solvingself-motivatedindependenceteam collaboration

Preferred

CISACISSP
Industry Technology
Job Function Support ISO 27001 and SOC 2 compliance, manage audits, and strengthen cloud security posture for Cutover
Role Subtype Security Analyst
Tech Domains Amazon Web Services, Security Information and Event Management
Visa Sponsorship No
ISO 27001SOC 2 Type IICIS benchmarksAWSCSPMSIEMEDRGRCrisk assessmentsaudit coordinationcloud securityincident managementvendor risk managementCISACISSPinformation security analystexternal auditorsRFI responsesclient auditsGRC analyst

No 3-5 years of relevant experience, Lack of exposure to ISO 27001 or SOC 2 audits, Requires visa sponsorship

Apply for this Position →

Get matched to jobs like this

Luna finds roles that fit your skills and career goals — no endless scrolling required.

Create a Free Profile