2

Part Time Soc 2 Analyst Jobs in Colorado (NOW HIRING)

Understanding of regulatory/compliance requirements (e.g., ISO 27001/27017, SOC 2, PCI, HIPAA, SOX, ... Must be within a reasonable commute and willing to work part-time in the Deloitte and/or client ...

$49K/yr

... 2.95 or higher out of a possible 4.0 as recorded on your official transcript or as computed based ... PART-TIME OR UNPAID EXPERIENCE: Credit will be given for appropriate unpaid and or part-time work.

CO · On-site

$49K/yr

... 2.95 or higher out of a possible 4.0 as recorded on your official transcript or as computed based ... PART-TIME OR UNPAID EXPERIENCE: Credit will be given for appropriate unpaid and or part-time work.

IT Help Desk Analyst I (Part-Time)

Denver, CO · On-site

$21 - $28.75/hr

Salary/Hourly Rate:25.00 The Part-time IT Help Desk Analyst I role is to ensure proper computer ... Bachelor's degree or minimum two to three years' IT experience required. * IT certifications ...

$74K/yr

... two percentages. The totalpercentages must equal at least 100 percent to qualify an applicant for ... Such study may have been performed on a full-time or part-time basis. If you cannot obtain your ...

$74K/yr

... two percentages. The totalpercentages must equal at least 100 percent to qualify an applicant for ... Such study may have been performed on a full-time or part-time basis. If you cannot obtain your ...

next page

Showing results 1-20

Part Time Soc 2 Analyst information

What is a part time SOC 2 analyst?

Part Time SOC 2 Analysts are professionals who work on a part-time basis to help organizations achieve and maintain SOC 2 compliance. They assist in evaluating, monitoring, and improving a company’s security, availability, processing integrity, confidentiality, and privacy controls, which are required for SOC 2 certification. Their responsibilities may include risk assessments, policy reviews, control testing, and preparing documentation for external audits. Part-time roles are popular in organizations with limited resources or those needing specialized expertise without a full-time commitment. These analysts play a key role in ensuring that data handling and IT systems meet industry standards for trust and security.

What does a part time SOC 2 analyst do?

As a Part Time SOC 2 Analyst, your primary responsibilities include monitoring security controls, reviewing evidence for audits, and assisting with documentation to ensure the organization meets SOC 2 requirements. You may also support internal teams during the audit process and collaborate with IT and compliance personnel to address any identified gaps or risks. This role is essential for maintaining trust with clients and partners, as it helps demonstrate a commitment to security and data privacy. Working part time, you'll need to manage your time effectively to meet audit deadlines and coordinate with full-time staff.

What are the key skills and qualifications needed to thrive as a part time SOC 2 analyst?

To thrive as a Part Time SOC 2 Analyst, you need a solid understanding of information security principles, risk assessment, and compliance frameworks, often supported by a relevant degree or certifications like CISA or CISSP. Familiarity with GRC tools, audit management software, and knowledge of SOC 2 Trust Services Criteria are typically required. Attention to detail, strong analytical thinking, and effective communication are standout soft skills for this role. These abilities are crucial to ensure organizations meet compliance requirements, mitigate risks, and maintain the trust of clients and stakeholders.

What is the difference between Part Time Soc 2 Analyst vs Part Time Security Analyst?

AspectPart Time Soc 2 AnalystPart Time Security Analyst
CertificationsSOC 2, CISSP, CISACISSP, CompTIA Security+
Work EnvironmentAuditing, compliance, risk assessmentMonitoring, threat detection, incident response
Industry UsageIT, finance, healthcareIT, cybersecurity firms, corporate security

While both roles involve security and compliance, a Part Time Soc 2 Analyst focuses on evaluating and ensuring organizations meet SOC 2 standards, primarily through audits and compliance assessments. In contrast, a Part Time Security Analyst concentrates on protecting systems from threats, monitoring security events, and responding to incidents. The roles overlap in certifications and industry usage but differ in daily responsibilities and focus areas.

Is a part time SOC 2 analyst still in demand?

Part-time SOC 2 analysts are still in demand as organizations seek to maintain compliance with security standards and manage risk. Skills in cybersecurity, audit processes, and familiarity with tools like security frameworks and reporting are valuable in this role, which often requires certifications such as CPA or CISA. The demand is driven by increasing regulatory requirements and the need for ongoing security assessments, even on a part-time basis.

What are the most commonly searched types of Soc 2 Analyst jobs in Colorado?

The most popular types of Soc 2 Analyst jobs in Colorado are:

What cities in Colorado are hiring for Part Time Soc 2 Analyst jobs?

Cities in Colorado with the most Part Time Soc 2 Analyst job openings:

Infographic showing various Part Time Soc 2 Analyst job openings in Colorado as of August 2026, with employment types broken down into 100% Part Time. Highlights an 94% In-person, and 6% Remote job distribution.

Manager - Cloud DevSecOps

Deloitte

Denver, CO • On-site

Part-time

Re-posted 26 days ago


Deloitte rating

8.2

Company rating: 8.2 out of 10

Based on 92 frontline employees who took The Breakroom Quiz

45th of 151 rated financial services


Job description

Cloud Security - DevSecOps Manager

Position Summary

Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities?  If so, Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both secure and support technology innovation required by the business. Join Deloitte's Cloud Cyber Services team and become a member of the largest group of cybersecurity professionals worldwide.

Recruiting for this role will end on 12/31/2026

Work you'll do

As a DevSecOps Security(Manager), you will lead client engagements that define, operationalize, and scale secure-by-design software delivery in cloud-agnostic environments. Responsibilities include:

  • Lead delivery of DevSecOps / Secure SDLC programs as a project manager and/or architect, overseeing onsite/offshore teams across governance, identity, application security, platform/infrastructure security, monitoring, resilience, and data protection.
  • Design and implement Secure by Design / security engagement intake workflows that streamline how engineering teams initiate governance/security processes (e.g., rationalizing questionnaires, automating routing/approvals, reducing cycle time).
  • Build or tailor controls frameworks and control mappings (e.g., aligned to NIST 800-53 and enterprise policies/standards) and translate them into actionable engineering requirements and measurable outcomes.
  • Conduct DevSecOps current-state assessments (people/process/technology), facilitate leading-practices workshops, and produce multi-year roadmaps with sequenced initiatives, resourcing, and cost estimates.
  • Define DevSecOps operating model options (team structure, service catalog, intake, RACI, governance forums) and drive executive decision-making on the target approach.
  • Embed security into CI/CD and SDLC workflows (requirements, design, build, test, deploy, operate) including security controls, evidence capture, and release/go-live governance.
  • Advance software supply chain security (e.g., dependency risk, artifact integrity, code signing, PKI/HSM considerations) and guide implementation patterns appropriate to client context.
  • Support container and runtime security assessments and backlog acceleration; help teams prioritize security work without stalling delivery.
  • Define metrics, reporting, and dashboards (e.g., delivery throughput, control compliance, intake cycle time, risk burndown, vulnerability trends) to improve transparency and accountability.
  • Function as the primary day-to-day client interface, building rapport and driving outcomes across Engineering, Security, Risk/Compliance, and Operations.
  • Assist in business development (scope, estimates, pricing, proposals) and contribute to eminence (POVs/whitepapers) and internal enablement

The team

Deloitte's Cyber Cloud team helps complex organizations more confidently pursue their growth, innovation and performance agendas through proactive management of the associated cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs into proactive Secure.Vigilant.Resilient.TM cyber risk programs. Join the team developing the future state of cyber risk solutions.

Required:

  • 6+ years of experience in technical consulting, client problem solving, and delivery leadership.
  • 2+ years designing or leading DevSecOps / Secure SDLC programs (assessment, roadmap, operating model, and implementation oversight).
  • Experience translating policy/standards into engineering-ready controls and workflows; familiarity with security control frameworks (e.g., NIST CSF and/or NIST 800-53).
  • Experience with automation/workflow platforms (e.g., ServiceNow or similar) to support security intake, governance, and evidence collection.
  • Experience with application security and modern engineering ecosystems (CI/CD concepts, containers, SDLC tooling).
  • BA/BS degree preferably in a technical field.
Additional Requirements:

  • Ability to travel up to 80%, on average, based on the work you do and the clients and industries/sectors you serve
  • Locations include: Houston, Dallas, Cleveland, Detroit, St. Louis, Pittsburgh, Boston, Charlotte, Atlanta, Miami, Memphis, Denver, Phoenix, Salt Lake City, Los Angeles, San Diego, San Franciso, Seattle.  Must be within a reasonable commute and willing to work part-time in the Deloitte and/or client offices.

Preferred:

  • Previous consulting or Big 4 experience.
  • Certifications (e.g., CCSP or comparable); familiarity with industry maturity models (e.g., OWASP SAMM, BSIMM) and/or supply chain frameworks (e.g., SLSA).
  • Experience with code signing/PKI concepts and security tooling ecosystems; experience with dashboarding/analytics (e.g., Power BI) a plus.
  • Understanding of regulatory/compliance requirements (e.g., ISO 27001/27017, SOC 2, PCI, HIPAA, SOX, GLBA, NIST 800-53).

'Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CyberES27

Qualifications:

Cloud Security - DevSecOps Manager

Position Summary

Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities?  If so, Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both secure and support technology innovation required by the business. Join Deloitte's Cloud Cyber Services team and become a member of the largest group of cybersecurity professionals worldwide.

Recruiting for this role will end on 12/31/2026

Work you'll do

As a DevSecOps Security(Manager), you will lead client engagements that define, operationalize, and scale secure-by-design software delivery in cloud-agnostic environments. Responsibilities include:

  • Lead delivery of DevSecOps / Secure SDLC programs as a project manager and/or architect, overseeing onsite/offshore teams across governance, identity, application security, platform/infrastructure security, monitoring, resilience, and data protection.
  • Design and implement Secure by Design / security engagement intake workflows that streamline how engineering teams initiate governance/security processes (e.g., rationalizing questionnaires, automating routing/approvals, reducing cycle time).
  • Build or tailor controls frameworks and control mappings (e.g., aligned to NIST 800-53 and enterprise policies/standards) and translate them into actionable engineering requirements and measurable outcomes.
  • Conduct DevSecOps current-state assessments (people/process/technology), facilitate leading-practices workshops, and produce multi-year roadmaps with sequenced initiatives, resourcing, and cost estimates.
  • Define DevSecOps operating model options (team structure, service catalog, intake, RACI, governance forums) and drive executive decision-making on the target approach.
  • Embed security into CI/CD and SDLC workflows (requirements, design, build, test, deploy, operate) including security controls, evidence capture, and release/go-live governance.
  • Advance software supply chain security (e.g., dependency risk, artifact integrity, code signing, PKI/HSM considerations) and guide implementation patterns appropriate to client context.
  • Support container and runtime security assessments and backlog acceleration; help teams prioritize security work without stalling delivery.
  • Define metrics, reporting, and dashboards (e.g., delivery throughput, control compliance, intake cycle time, risk burndown, vulnerability trends) to improve transparency and accountability.
  • Function as the primary day-to-day client interface, building rapport and driving outcomes across Engineering, Security, Risk/Compliance, and Operations.
  • Assist in business development (scope, estimates, pricing, proposals) and contribute to eminence (POVs/whitepapers) and internal enablement

The team

Deloitte's Cyber Cloud team helps complex organizations more confidently pursue their growth, innovation and performance agendas through proactive management of the associated cyber risks. Our professionals provide advisory and implementation services that integrate risk, regulatory, and technology skills to help clients transform their legacy programs into proactive Secure.Vigilant.Resilient.TM cyber risk programs. Join the team developing the future state of cyber risk solutions.

Required:

  • 6+ years of experience in technical consulting, client problem solving, and delivery leadership.
  • 2+ years designing or leading DevSecOps / Secure SDLC programs (assessment, roadmap, operating model, and implementation oversight).
  • Experience translating policy/standards into engineering-ready controls and workflows; familiarity with security control frameworks (e.g., NIST CSF and/or NIST 800-53).
  • Experience with automation/workflow platforms (e.g., ServiceNow or similar) to support security intake, governance, and evidence collection.
  • Experience with application security and modern engineering ecosystems (CI/CD concepts, containers, SDLC tooling).
  • BA/BS degree preferably in a technical field.
Additional Requirements:

  • Ability to travel up to 80%, on average, based on the work you do and the clients and industries/sectors you serve
  • Locations include: Houston, Dallas, Cleveland, Detroit, St. Louis, Pittsburgh, Boston, Charlotte, Atlanta, Miami, Memphis, Denver, Phoenix, Salt Lake City, Los Angeles, San Diego, San Franciso, Seattle.  Must be within a reasonable commute and willing to work part-time in the Deloitte and/or client offices.

Preferred:

  • Previous consulting or Big 4 experience.
  • Certifications (e.g., CCSP or comparable); familiarity with industry maturity models (e.g., OWASP SAMM, BSIMM) and/or supply chain frameworks (e.g., SLSA).
  • Experience with code signing/PKI concepts and security tooling ecosystems; experience with dashboarding/analytics (e.g., Power BI) a plus.
  • Understanding of regulatory/compliance requirements (e.g., ISO 27001/27017, SOC 2, PCI, HIPAA, SOX, GLBA, NIST 800-53).

'Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CyberES27

Education:Bachelor's DegreeEmployment Type:

What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom