2

Cisa Remote Jobs in Boston, MA (NOW HIRING)

Senior Security Compliance Analyst

Boston, MA ยท Remote

$110K - $140K/yr

ISO 27001 Lead Auditor/Implementer, CISSP, CISM, CISA, HITRUST CCSFP, CRISC. * Experience leading ... Ability to work independently and collaboratively in a remote environment. * Familiarity with GRC ...

Manager Application Security

Westwood, MA ยท On-site +1

$133K - $190K/yr

... 1 remote in one of the following organizational hubs: Johnston, RI - Westwood OR Boston, MA ... CISA, GPEN, or equivalent Pay Transparency The salary range for this position is from $133,000 to ...

Manager Application Security

Boston, MA ยท On-site +1

$133K - $190K/yr

... 1 remote in one of the following organizational hubs: Johnston, RI - Westwood OR Boston, MA ... CISA, GPEN, or equivalent Pay Transparency The salary range for this position is from $133,000 to ...

Manager Application Security

Boston, MA ยท On-site +1

$133K - $190K/yr

... 1 remote in one of the following organizational hubs: Johnston, RI - Westwood OR Boston, MA ... CISA, GPEN, or equivalent Pay Transparency The salary range for this position is from $133,000 to ...

Manager Application Security

Westwood, MA ยท On-site +1

$133K - $190K/yr

... 1 remote in one of the following organizational hubs: Johnston, RI - Westwood OR Boston, MA ... CISA, GPEN, or equivalent Pay Transparency The salary range for this position is from $133,000 to ...

Audit Senior

Boston, MA ยท On-site +1

Remote and hybrid opportunities * Inclusive workplace, providing strong professional growth and development opportunities * The benefits of joining our team * Strong growth opportunities

Audit/Tax Manager

Boston, MA ยท On-site +1

$113K - $148K/yr

Some positions at Novogradac may be open to remote or hybrid work arrangements depending on business needs. Please discuss available options with your recruiter. Your Contributions and ...

Senior Audit Manager, Affordable Housing

Boston, MA ยท On-site +1

$125K - $228K/yr

... remote and hybrid options What's in it for you: - Working with an industry leader : Be part of a high-growth firm that is passionate for what's next. - An awesome culture: Thirty-one fundamental ...

Cisa Remote information

See Boston, MA salary details

$67.4K

$119.2K

$163K

How much do cisa remote jobs pay per year?

As of Aug 29, 2026, the average yearly pay for cisa remote in Boston, MA is $119,193.00, according to ZipRecruiter salary data. Most workers in this role earn between $102,100.00 and $134,200.00 per year, depending on experience, location, and employer.

What is a CISA remote?

CISA remote jobs refer to positions at the Cybersecurity and Infrastructure Security Agency (CISA) that allow employees to work from locations outside of traditional office environments, often from home. These roles support various cybersecurity, infrastructure protection, and emergency management missions. Remote positions can include cybersecurity analysts, IT specialists, policy advisors, and program managers, among others. Working remotely for CISA provides flexibility while contributing to national security initiatives and critical infrastructure protection.

What are the key skills and qualifications needed to thrive as a CISA remote?

To thrive as a CISA Remote, you need in-depth knowledge of information systems auditing, risk management, and compliance, typically supported by the CISA certification and relevant IT or audit experience. Familiarity with audit management software, data analytics tools, and frameworks like COBIT or ISO 27001 is highly valuable. Strong analytical thinking, self-motivation, and effective remote communication skills set top professionals apart in this role. These skills ensure accurate audits, secure systems, and successful collaboration with clients or teams across locations.

What are some common challenges faced by CISA professionals working remotely, and how can they be addressed?

CISA professionals working remotely often face challenges such as maintaining secure communication channels, ensuring the integrity of audit evidence, and collaborating effectively with onsite teams. To address these, it's important to leverage secure VPNs and encrypted communication tools, establish clear documentation protocols, and schedule regular virtual meetings with stakeholders. Building strong relationships with IT and business units can also help remote CISA professionals stay informed and maintain audit quality despite physical distance.

What is the difference between Cisa Remote vs Cisa Onsite?

AspectCisa RemoteCisa Onsite
Work EnvironmentRemote, flexible locationOn-site at client or company location
Required CredentialsSame certifications, including CISASame certifications, including CISA
Industry UsageCommon in consulting, auditing, cybersecurity firmsUsed in similar industries, often for on-site audits
Work FlexibilityHigh, with remote toolsLimited, based on location and client needs

Both Cisa Remote and Cisa Onsite roles require the CISA certification and involve information systems auditing. The main difference lies in the work environment: Cisa Remote offers flexibility and the ability to work from anywhere, while Cisa Onsite requires presence at specific locations. Your choice depends on your preference for remote work versus on-site engagement in the industry.

Are CISA professionals in demand?

CISA (Certified Information Systems Auditor) professionals are in high demand due to increasing cybersecurity threats and the need for IT audit and control expertise. Organizations seek CISA-certified individuals to ensure compliance, risk management, and security of information systems, often requiring knowledge of audit tools and frameworks. The demand is expected to grow as cybersecurity regulations become more stringent worldwide.

Is CISA still in demand?

The Certified Information Systems Auditor (CISA) certification remains highly in demand for cybersecurity and IT audit roles, as organizations prioritize information security and compliance. Professionals with CISA skills are sought after for roles involving risk management, control assessment, and security auditing, especially in environments with regulatory requirements and complex IT infrastructures.

What are the most commonly searched types of Cisa jobs in Boston, MA?

The most popular types of Cisa jobs in Boston, MA are:

Senior Security Compliance Analyst

Boston, MA โ€ข Remote

$110K - $140K/yr

Full-time

Re-posted 14 days ago


Job description

At OneStudyTeam (a Reify Health company), we specialize in speeding up clinical trials and increasing the chance of new therapies being approved with the ultimate goal of improving patient outcomes. Our cloud-based platform, StudyTeam, brings research site workflows online and enables sites, sponsors, and other key stakeholders to work together more effectively. StudyTeam is trusted by the largest global biopharmaceutical companies, used in over 6,000 research sites, and is available in over 100 countries. Join us in our mission to advance clinical research and improve patient care.

One mission. One team. That's OneStudyTeam.

We are seeking a Senior Security Compliance Analyst with expertise in Governance, Risk, and Compliance (GRC) to support and enhance our security and compliance programs within the healthcare industry. This role is critical in ensuring adherence to industry regulations, responding to customer audits, and maintaining compliance with ISO 27001, HIPAA, and other security frameworks.

The ideal candidate will be a detail-oriented compliance expert who can navigate complex regulatory environments, assist with internal/external audits, and drive continuous improvement in security governance. The ideal candidate must be able to operate independently while delivering on the following duties.

What You'll Be Working On:
  • Lead and support customer security audits, responding to security questionnaires and demonstrating compliance with security frameworks.
  • Prepare, coordinate, and manage ISO 27001 audits, including evidence collection, control implementation, and auditor engagement.
  • Ensure ongoing compliance with HIPAA, NIST CSF, and other regulatory requirements applicable to healthcare data security.
  • Develop and maintain policies, procedures, and security documentation to meet regulatory and contractual obligations.
  • Perform gap analyses and risk assessments to identify and remediate compliance risks.
  • Manage and improve security governance frameworks, ensuring alignment with industry best practices and business objectives.
  • Conduct third-party vendor risk assessments, ensuring compliance with security policies and contractual obligations.
  • Monitor security controls, ensuring effectiveness and continuous improvement in alignment with security frameworks.
  • Support security awareness training initiatives, ensuring employees understand compliance responsibilities.
  • Stay current on ISO 27001, HIPAA, NIST 800-53, and other relevant standards, translating them into actionable security controls.
  • Assist in defining security metrics and reporting on compliance status and risk posture to leadership.
  • Work closely with legal, security, IT, and business teams to align compliance requirements with security operations.
What You'll Bring to OneStudyTeam:
  • Minimum Education:
    • Minimum of a Bachelor's degree in Information Security, Computer Science, Risk Management, or related field (or equivalent experience). 
  • Minimum Experience:
    • Minimum 8+ years of progressive experience in GRC, compliance, or security audit roles. 
  • Experience in healthcare or regulated industries strongly preferred. 
  • Certifications strongly preferred: ISO 27001 Lead Auditor/Implementer, CISSP, CISM, CISA, HITRUST CCSFP, CRISC. 
  • Experience leading ISO 27001, SOC2, or HITRUST audits, including ISMS implementation and external audit coordination. 
  • Strong understanding of NIST CSF, SOC 2, GDPR, and other security frameworks.  
  • Hands-on experience with customer security audits, including responding to security questionnaires and managing security assessments. 
  • Ability to perform risk assessments, policy reviews, and compliance gap analyses. 
  • Strong written and verbal communication skills, with the ability to explain technical concepts to non-technical stakeholders. 
  • Detail-oriented with excellent organizational and project management skills.  
  • Ability to work independently and collaboratively in a remote environment. 
  • Familiarity with GRC tools (e.g., OneTrust, LogicGate, Archer, Vanta, Drata) is a plus. 

The expected pay range for this role is $110,000 - $140,000 USD per year for full time team members.

#LI-Remote

We value diversity and believe the unique contributions each of us brings drives our success. We do not discriminate on the basis of race, sex, religion, color, national origin, gender identity, age, marital status, veteran status, or disability status.

Note: OneStudyTeam is unable to sponsor work visas at this time. If you are a non-U.S. resident applicant, please note that OneStudyTeam works with a Professional Employer Organization.

As a condition of employment, you will abide by all organizational security and privacy policies.

This organization participates in E-Verify (E-Verify's Right to Work guidance can be found here).

Mandatory Employer Disclosures:
Notice to Illinois applicants: Applicants are not obligated to disclose expunged juvenile records or adjudication, arrest, or conviction.
Notice to Connecticut applicants: OneStudyTeam may require applicants to submit to a urinalysis drug test in connection with an application for employment.
Notice to Arizona, Georgia, Indiana, and North Dakota applicants: OneStudyTeam complies with applicable laws prohibiting smoking in and around places of employment.
Notice to Massachusetts applicants: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.
Notice to Rhode Island applicants: OneStudyTeam complies with Rhode Island law prohibiting smoking in enclosed areas within places of employment. OneStudyTeam is also subject to is subject to Chapters 29–38 of Title 28 of the Rhode Island General Laws.
Notice to Maryland applicants: UNDER MARYLAND LAW, AN EMPLOYER MAY NOT REQUIRE OR DEMAND, AS A CONDITION OF EMPLOYMENT, PROSPECTIVE EMPLOYMENT, OR CONTINUED EMPLOYMENT, THAT AN INDIVIDUAL SUBMIT TO OR TAKE A LIE DETECTOR OR SIMILAR TEST. AN EMPLOYER WHO VIOLATES THIS LAW IS GUILTY OF A MISDEMEANOR AND SUBJECT TO A FINE NOT EXCEEDING $100.