Senior Cybersecurity Analyst
Listed on 2026-09-14
-
IT/Tech
Cybersecurity, Information Security & Data Protection
ISO New England is seeking an experienced Cybersecurity Analyst to support and enhance enterprise cloud, infrastructure, AI, and Dev Sec Ops security initiatives. This role is responsible for advancing the organization’s cybersecurity strategy by facilitating cross-functional collaboration to strengthen technical security, governance, risk management, and regulatory compliance. The position provides technical leadership and cybersecurity expertise to support evolving business objectives while addressing emerging cyber threats across enterprise, cloud, AI, Dev Sec Ops , and regulated environments.
Working closely with internal stakeholders, the role drives security initiatives, influences technical decisions, and promotes a culture of security, resilience, and continuous improvement.
The ideal candidate will have strong experience in cloud security, vulnerability management, Dev Sec Ops , AI security, network security and security compliance, with the ability to collaborate across technical teams to implement and maintain enterprise security standards
What we offer you:- A stable, mission-driven workplace where your impact truly matters
- A highly engaged work environment that values inclusion, collaboration, and employee safety and wellbeing
- Competitive compensation with a base salary + performance bonus
- Robust benefits package, including:
- Enhanced 401(k) and financial planning support
- Tuition reimbursement and professional development
- Wellness programs, including an onsite gym
- Flexible work hours
- Employee Business Networks
- Free coffee at our onsite café
- Hybrid work environment (3 days/week onsite)
- Distance-based relocation assistance available
- Develop and implement enterprise cybersecurity strategies aligned with business objectives, regulatory requirements, and industry best practices.
- Ensure compliance with cybersecurity frameworks and regulations including NERC CIP, NIST frameworks, CIS controls, FERC regulations, and SOC1/SOC2 requirements.
- Implement enterprise security controls across cloud, infrastructure, applications, AI/ML environments, and regulated operational technology (OT) systems.
- Conduct cloud security assessments across AWS and Azure environments, including IAM, CSPM, CIEM, container security, and configuration management.
- Integrate security controls throughout CI/CD pipelines and Dev Sec Ops processes, including automated vulnerability scanning, Infrastructure-as-Code (IaC) validation, and policy enforcement.
- Assess and secure AI/ML systems, Generative AI applications, and Large Language Model (LLM) integrations through governance, access controls, data protection, prompt security, and AI threat modeling.
- Perform vulnerability assessments, network security assessments, configuration reviews, compliance validation, risk assessments, and remediation tracking across enterprise and cloud environments.
- Support enterprise security monitoring, logging, threat detection, incident response, and audit evidence collection using SIEM, EDR/XDR, CNAPP, DSPM, vulnerability management, and related security platforms.
- Collaborate with cloud, infrastructure, application development, enterprise architecture, IAM, network, compliance, and business teams to integrate security into system design and operational processes.
- Identify, assess, prioritize, and communicate cybersecurity risks while developing effective mitigation strategies.
- Develop and maintain security policies, standards, governance documentation, compliance reporting, and security best practices.
- Monitor emerging cybersecurity threats, AI security risks, industry trends, and regulatory changes to continuously enhance the organization’s security posture.
- Provide technical mentorship, and cross-functional guidance while…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).