2

Full Time Information Security Analyst Jobs (NOW HIRING)

Information Security Analyst

Boston, MA · On-site

$80K - $107K/yr

The Information Security Analyst is a role reporting to the Director of Information Security and focused primarily on security operations, investigations, and vulnerability follow-through, with ...

The Information Security Analyst supports the company's security operations by monitoring, investigating, and responding to security events, while helping protect information assets from unauthorized ...

The Information Security Analyst is responsible for supporting the organization's security posture by implementing, monitoring, and maintaining security controls across systems, networks, and cloud ...

The Information Security Analyst is responsible for supporting the organization's security posture by implementing, monitoring, and maintaining security controls across systems, networks, and cloud ...

Job Title - Information Security Analyst Duration - 3 Months (with a possibility of an extension) Location - Eagan , MN - 55123 Qualifications Primary Objective Perform in the delivery and ...

The Information Security Analyst supports the company's security operations by monitoring, investigating, and responding to security events, while helping protect information assets from unauthorized ...

Information Security Analyst

Boston, MA · On-site

$80K - $107K/yr

The Information Security Analyst is a role reporting to the Director of Information Security and focused primarily on security operations, investigations, and vulnerability follow-through, with ...

The Information Security Analyst is a role reporting to the Director of Information Security and focused primarily on security operations, investigations, and vulnerability follow-through, with ...

Senior Information Security Analyst is responsible for conducting comprehensive security assessments, including Federal Information Security Management Act (FISMA) reviews, to identify ...

New

Information Security Analyst

Yakima, WA · On-site

$44.70 - $47.44/hr

Information Security Analyst-J23-U29-H Regular Non-Exempt (eligible for overtime) Overview: Pay ... full-time network support including application or server hardware support; OR an equivalent ...

Showing results 41-60

Full Time Information Security Analyst information

See salary details

$40K

$96.7K

$158K

How much do full time information security analyst jobs pay per year?

As of Aug 8, 2026, the average yearly pay for full time information security analyst in the United States is $96,652.00, according to ZipRecruiter salary data. Most workers in this role earn between $73,500.00 and $114,500.00 per year, depending on experience, location, and employer.

What is the difference between Full Time Information Security Analyst vs Full Time Cybersecurity Analyst?

AspectFull Time Information Security AnalystFull Time Cybersecurity Analyst
CertificationsCompTIA Security+, CISSP (preferred), CEHCompTIA Security+, CISSP (preferred), CEH
Work EnvironmentCorporate IT departments, government agencies, financial institutionsCorporate, government, or private sector cybersecurity teams
Employer UsageUsed across industries to protect information assetsCommonly used in cybersecurity-specific roles within organizations
Search & Comparison IntentHigh overlap, both focus on security analysis and risk management

Both roles involve protecting organizational information systems, require similar certifications, and are used across various industries. The main difference lies in terminology preference; 'Cybersecurity Analyst' emphasizes a focus on cybersecurity threats and defenses, while 'Information Security Analyst' covers broader security responsibilities. Candidates should choose based on specific job descriptions and industry terminology.

What are the key skills and qualifications needed to thrive as a full time information security analyst?

To thrive as a Full Time Information Security Analyst, you need a solid understanding of cybersecurity principles, risk assessment, and incident response, usually backed by a degree in computer science or a related field. Familiarity with security tools like firewalls, intrusion detection systems (IDS), SIEM platforms, and certifications such as CISSP or CompTIA Security+ are typically required. Strong analytical thinking, attention to detail, and effective communication skills help analysts identify threats and collaborate with stakeholders. These skills and qualities are essential for safeguarding organizational data, ensuring compliance, and maintaining a secure IT environment.

What are some common challenges faced by full time information security analysts, and how can they be addressed?

Full Time Information Security Analysts often encounter challenges such as keeping up with rapidly evolving cyber threats, managing incident response under tight deadlines, and communicating complex security issues to non-technical staff. Staying current with industry trends through continuous learning and certifications helps address evolving threats. Strong collaboration with IT, management, and other departments enhances incident response and risk mitigation, while developing clear reporting and communication skills ensures that security recommendations are understood and acted upon by stakeholders.

What is an information security analyst?

Information Security Analysts are professionals responsible for protecting an organization’s computer systems and networks from cyber threats. They monitor networks for security breaches, investigate incidents, and implement security measures such as firewalls and data encryption. Analysts also assess vulnerabilities, conduct regular security audits, and develop strategies to safeguard sensitive information. Their work is crucial in ensuring the confidentiality, integrity, and availability of an organization's data.
What cities are hiring for Full Time Information Security Analyst jobs? Cities with the most Full Time Information Security Analyst job openings:
What are the most commonly searched types of Information Security Analyst jobs? The most popular types of Information Security Analyst jobs are:
What states have the most Full Time Information Security Analyst jobs? States with the most job openings for Full Time Information Security Analyst jobs include:

Information Security Analyst

NEPC, LLC

Boston, MA • On-site

$80K - $107K/yr

Full-time

Posted 17 days ago


Job description

Level: 3-5+ years of related experience
Location: Flexible (East Coast preferred). Must reside in a state where we are registered.
Role Summary:
The Information Security Analyst is a role reporting to the Director of Information Security and focused primarily on security operations, investigations, and vulnerability follow-through, with secondary responsibility for governance and operational risk coordination. The analyst works across security tools and business processes to identify issues, investigate activity, document findings, and drive remediation with IT and other stakeholders.
This role is responsible for monitoring and investigating alerts and vulnerabilities, coordinating response and remediation efforts, maintaining clear documentation, and supporting core security governance activities such as the risk register, committee records, and audit evidence. Success in this role requires strong judgment, disciplined procedure-following, clear communication, and the ability to work independently while collaborating across technical and non-technical teams.
Core Responsibilities:
  • Monitor, investigate, and triage alerts, events, vulnerabilities, and escalated helpdesk tickets across the security stack; Understanding potential impact and distinguishing meaningful threats from false positives or low-risk activity.
  • Coordinate with IT, Business Analysts, process owners, and other stakeholders to drive remediation, containment, follow-up, and closure of security and operational risk issues.
  • Document investigative steps, evidence, decisions, remediation progress, and outcomes in a clear, consistent, and repeatable manner; identify recurring issues, process gaps, and broader trends, and escalate them appropriately.
  • Support vulnerability management activities, including scan coordination, review of findings, remediation tracking, follow-up on overdue items, and validation of progress against defined timelines.
  • Maintain the risk register, including risk descriptions, owners, mitigation plans, status updates, and supporting records, and work alongside Business Analysts and process owners to identify and document operational risks, control gaps, and dependencies revealed through incidents, investigations, or project work.
  • Assist with Operational Risk Council activities by preparing materials, tracking action items, and maintaining meeting records, and organize documentation and evidence needed for audits, regulatory requests, and internal reviews.
  • Partner with the Compliance team to support security and privacy requirements related to client contractual obligations, Regulation S-P, and emerging technology use cases.
  • Support security procedures, policy updates, and awareness efforts by helping keep documentation current and identifying useful communication or training opportunities based on trends and observed issues.

Required and Preferred Qualifications:
Experience and Background
  • Requires 3-5 years of working experience in information security, IT Infrastructure, systems administration, networking, and/or technical support; additional audit, compliance, or risk-related experience is helpful.
  • Relevant certifications may include Security+, CySA+, ISC2 entry-level certifications, GSEC, or similar information security, audit, or risk-related certifications.
  • Associate's degree preferred but not required.

Skills and Knowledge
  • Working knowledge of and experience with security operations activities such as alert triage, vulnerability tracking, investigation workflows, escalation, and documentation.
  • Proficiency using security and IT tools such as endpoint protection, vulnerability management platforms, SIEM, ticketing systems, dashboards, and related technologies.
  • Strong written and verbal communication skills across teams with different technical and operational backgrounds.
  • Ability to follow procedures carefully, improve documentation where needed, and manage work with minimal supervision.
  • Sound judgment, attention to detail, and the ability to prioritize effectively when handling multiple issues.
  • Familiarity with CIS Controls, NIST, CISA publications, and related standards is helpful.

Compensation:
The base salary for this role is $80,500 - $107,500 per year with an additional annual performance bonus. Individual compensation is based on a variety of factors, including experience, education, certifications, location, responsibilities of the role, internal equity and alignment with market data.
Company Background:
NEPC, LLC is a full-service investment consulting firm based in Boston, Massachusetts. We were founded in 1986 and now have approximately 375 employees and over 400 clients. We help governments, institutions, families, and individuals preserve and grow their capital across different asset classes and market cycles. We provide a variety of consulting services such as asset allocation, performance measurement, policy formulation, investment manager research, and discretionary portfolio management. Our clients include defined benefit, defined contribution, endowments, foundations, trusts, public, corporate, Taft-Hartley, health & welfare, high net worth, insurance, and private plans.
Culture is important to us here at NEPC - our values include putting clients first, doing the right thing, bringing your whole self to work, building trust, embracing change, and having a "we before me" approach in our work. Advancing diversity and inclusion within our firm and industry is also a core initiative at NEPC. We are a strong advocate of promotion from within, so excellent potential exists for professional growth. We're a fun (but demanding) company with excellent working conditions, a very supportive, team-oriented environment, and a full benefits program to support your life and well-being. We offer a competitive salary and bonuses (when applicable).
NEPC is an Affirmative Action/Equal Opportunity Employer (July 2026)
Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.