1

Phishing Simulation Jobs in Arizona (NOW HIRING)

Design, manage, and enforce the organization's security awareness program, including the execution of recurring phishing simulation campaigns. * Support the development, testing, and ongoing ...

Design, manage, and enforce the organization's security awareness program, including the execution of recurring phishing simulation campaigns. * Support the development, testing, and ongoing ...

Design, manage, and enforce the organization's security awareness program, including the execution of recurring phishing simulation campaigns. * Support the development, testing, and ongoing ...

Senior Manager, Cybersecurity

Scottsdale, AZ · On-site

$107K - $145K/yr

Manage the cybersecurity awareness and training program, including phishing simulations and end-user education. Promote a culture of security awareness across the organization. Cybersecurity Tools ...

Senior Manager, Cybersecurity

Scottsdale, AZ · On-site

$107K - $145K/yr

Security Awareness and Training: • Manage the cybersecurity awareness and training program, including phishing simulations and end-user education. • Promote a culture of security awareness across ...

Senior Manager, Cybersecurity

Scottsdale, AZ

$111K - $151K/yr

Security Awareness and Training: • Manage the cybersecurity awareness and training program, including phishing simulations and end-user education. • Promote a culture of security awareness across ...

Phishing Simulation information

What are some common challenges faced by professionals running phishing simulation programs, and how can they be addressed?

Professionals managing phishing simulation programs often encounter challenges such as employee resistance, maintaining engagement, and ensuring simulations stay relevant to evolving threats. To address these, it's important to communicate the purpose of simulations clearly, provide timely feedback and education, and regularly update campaigns to reflect current phishing tactics. Collaborating closely with IT, HR, and leadership teams helps foster a culture of security awareness and ensures the program's effectiveness.

What is a phishing simulation?

A phishing simulation is a cybersecurity exercise where organizations send fake phishing emails to employees to test their ability to recognize and report malicious messages. The goal is to raise awareness about phishing tactics and improve employees' responses to real threats. These simulations help identify vulnerabilities within the organization and guide future training efforts to reduce the risk of successful phishing attacks.

What is the difference between Phishing Simulation vs Security Analyst?

AspectPhishing SimulationSecurity Analyst
CredentialsCertifications like CEH, CompTIA Security+Certifications like CISSP, CISA, CEH
Work EnvironmentTypically in cybersecurity teams, focusing on training and awarenessIn IT/security departments, analyzing threats and implementing security measures
Employer & IndustryUsed by organizations to test employee awareness in cybersecurityEmployed by organizations to protect IT infrastructure and respond to security incidents

While both roles are part of cybersecurity, Phishing Simulation focuses on testing and training employees against phishing attacks, whereas Security Analysts monitor, analyze, and respond to security threats within an organization.

What are the key skills and qualifications needed to thrive as a phishing simulation specialist, and why are they important?

To thrive as a Phishing Simulation Specialist, you need a solid understanding of cybersecurity principles, social engineering tactics, and experience with security awareness training programs, usually backed by a degree in information security or related certifications like CEH or CISSP. Familiarity with phishing simulation platforms (e.g., KnowBe4, Cofense), email security systems, and data analytics tools is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for designing realistic scenarios and educating users. These skills and qualifications are essential for helping organizations identify vulnerabilities, reduce human risk, and strengthen their overall security posture.
What are popular job titles related to Phishing Simulation jobs in Arizona? For Phishing Simulation jobs in Arizona, the most frequently searched job titles are:
What job categories do people searching Phishing Simulation jobs in Arizona look for? The top searched job categories for Phishing Simulation jobs in Arizona are:
What cities in Arizona are hiring for Phishing Simulation jobs? Cities in Arizona with the most Phishing Simulation job openings:

Senior Information Security Analyst

UNIVERSITY OF AZ FOUNDATION

Tucson, AZ • On-site

$100K/yr

Full-time

Posted 14 days ago


Job description


General Position Summary:

As a Senior Information Security Analyst, you’ll have the opportunity to make a meaningful impact by fostering a security first mindset across the organization. If you’re passionate about cybersecurity, we’d love to hear from you! We are seeking a dedicated and engaging Senior Information Security Analyst to monitor, analyze, and respond to security threats and vulnerabilities within the organization. This role involves conducting risk assessments, investigating security incidents, ensuring compliance with industry standards and best practices, and leading employee security awareness initiatives and training programs. This role will play a crucial part in onboarding new employees, developing phishing awareness campaigns, facilitating one-on-one training, and collaborating with internal teams to promote a security-conscious culture. The ideal candidate will have a strong background in cybersecurity, excellent communication skills, and the ability to translate complex security topics into engaging and understandable content.


Supervisory Responsibility:

This position is not supervisory in nature.
Essential Functions/ Major Responsibilities:

  • Monitor security alerts and logs using organization’s cybersecurity tools.
  • Investigate and respond to security incidents, breaches, and vulnerabilities.
  • Perform root cause analysis and recommend corrective actions.
  • Conduct vendor security risk assessments and prepare formal reports.
  • Analyze security risks and provide recommendations for mitigation.
  • Lead security audits, compliance audits, risk assessments, and penetration testing efforts.
  • Assist with third-party risk assessments and vendor due diligence.
  • Support the development and maintenance of security policies, standards, and procedures.
  • Ensure compliance with regulatory requirements and security frameworks.

Knowledge, Skills, and Abilities:

  • Conduct information cybersecurity training sessions for new employees as part of the onboarding process.
  • Develop engaging and informative cybersecurity training materials tailored to different employee roles.
  • Provide ongoing cybersecurity awareness education through various training methods (e-learning, webinars, in-person sessions).
  • Facilitate personalized training sessions for employees who require additional cybersecurity training.
  • Act as a cybersecurity awareness resource, addressing employee inquiries and concerns related to cybersecurity.
  • Create and manage phishing simulation campaigns to assess employee awareness and response.
  • Track, analyze, and report on phishing campaign results to identify trends and areas for improvement.
  • Ensure compliance with security policies by monitoring and reporting on repeated phishing failures.
  • Review reported phish emails and follow up with submitter.
  • Support compliance audits by ensuring complete and accurate documentation.
  • Coordinate with key stakeholders to update and maintain the business continuity and disaster recovery plan.
  • Update and maintain the incident response plan.
  • Serve as the primary liaison with the University of Arizona’s Information Security Office, ensuring compliance with its cybersecurity policies

Minimum Qualifications:

  • Bachelor’s degree in computer, cybersecurity, or a related field (or equivalent experience).
  • 3+ years of experience in cybersecurity work experience required.
  • Strong understanding of information security principles, phishing threats, and social engineering tactics.
  • Experience with phishing simulation tools and security awareness platforms.
  • Excellent communication, presentation, and superb customer service.
  • Excellent problem-solving, analytical, and organizational skills.
  • High attention to detail and commitment to confidentiality and integrity.
  • Ability to work collaboratively with teams across the organization.
  • Knowledge of security compliance frameworks (e.g., NIST, ISO 27001, SOC 2) is a plus.

Preferred Qualifications:

  • Security + certificate.
  • Experience with threat protection, detection, and response tools for endpoints, email, identity, and cloud environments.
  • Ability to communicate effectively with technical IT staff.
  • Knowledge of IT architecture and operations.

The University of Arizona Foundation reserves the right to revise this job description at any time.