1

Phishing Simulation Jobs (NOW HIRING)

Administer security awareness and phishing simulation programs. * Analyze training results and recommend targeted educational initiatives. * Support onboarding and annual security training programs.

Cybersecurity Analyst

Seattle, WA · On-site

$90K - $100K/yr

Execute phishing simulations, including scenario design, targeting, and performance analysis * Support Cybersecurity Awareness Month and other enterprise-wide engagement initiatives * Maintain ...

Conduct realistic initial-access scenarios aligned to approved rules of engagement, including external attack surface testing, phishing simulation, identity abuse, public-facing application ...

Own enterprise Phishing Simulation and awareness programs: develop targeted campaigns, measure user behavior, and automate adaptive training enrollment. * Implement and govern DLP solutions across ...

New

Set up dynamic training campaigns and phishing simulation campaigns based on specific user group targets and criteria * Set up and configure on-demand courses through the Microsoft Defender console ...

Maintain and Administer the Security Awareness and Phishing Simulation platform. Support and assist in the development of Forensic tasks and needs. Provide Application penetration testing when ...

Familiarity with phishing simulations (e.g., Hoxhunt) and security awareness programs. * Ability to manage multiple priorities and deliver in a fast-paced environment. * Action-oriented, high-energy ...

... Phishing Simulation). • Act as the final point of escalation for complex security breaches or persistent threats that Tier 1-3 analysts cannot resolve. • Write advanced scripts (Python ...

Apply for Position

Reston, VA · On-site

$40K - $50K/yr

Set up phishing simulations to assess and improve the organization's resilience to phishing attacks. * Educate employees about phishing risks to enhance their ability to recognize and report phishing ...

Administer phishing simulation campaigns, security awareness training, user follow-up, and reporting; partner with IT and business leaders to improve user resilience against social engineering ...

Manage email security and phishing defense, including phishing investigation and triage, security awareness training, and phishing simulation programs. * Lead security incident investigations and ...

Senior Manager of Cyber Security (Clark)

Clark, NJ · On-site

$114K - $155K/yr

Own the phishing simulation program and enforce associated security policies, coordinating outcomes with HR and department management as required. * Support and manage the MSSP relationship end-to ...

Manage email security and phishing defense, including phishing investigation and triage, security awareness training, and phishing simulation programs. * Lead security incident investigations and ...

Showing results 21-40

Phishing Simulation information

See salary details

$39K

$101.3K

$144K

How much do phishing simulation jobs pay per year?

As of Aug 7, 2026, the average yearly pay for phishing simulation in the United States is $101,255.00, according to ZipRecruiter salary data. Most workers in this role earn between $78,500.00 and $129,500.00 per year, depending on experience, location, and employer.

What are some common challenges faced by professionals running phishing simulation programs, and how can they be addressed?

Professionals managing phishing simulation programs often encounter challenges such as employee resistance, maintaining engagement, and ensuring simulations stay relevant to evolving threats. To address these, it's important to communicate the purpose of simulations clearly, provide timely feedback and education, and regularly update campaigns to reflect current phishing tactics. Collaborating closely with IT, HR, and leadership teams helps foster a culture of security awareness and ensures the program's effectiveness.

What is a phishing simulation?

A phishing simulation is a cybersecurity exercise where organizations send fake phishing emails to employees to test their ability to recognize and report malicious messages. The goal is to raise awareness about phishing tactics and improve employees' responses to real threats. These simulations help identify vulnerabilities within the organization and guide future training efforts to reduce the risk of successful phishing attacks.

What is the difference between Phishing Simulation vs Security Analyst?

AspectPhishing SimulationSecurity Analyst
CredentialsCertifications like CEH, CompTIA Security+Certifications like CISSP, CISA, CEH
Work EnvironmentTypically in cybersecurity teams, focusing on training and awarenessIn IT/security departments, analyzing threats and implementing security measures
Employer & IndustryUsed by organizations to test employee awareness in cybersecurityEmployed by organizations to protect IT infrastructure and respond to security incidents

While both roles are part of cybersecurity, Phishing Simulation focuses on testing and training employees against phishing attacks, whereas Security Analysts monitor, analyze, and respond to security threats within an organization.

What are the key skills and qualifications needed to thrive as a phishing simulation specialist, and why are they important?

To thrive as a Phishing Simulation Specialist, you need a solid understanding of cybersecurity principles, social engineering tactics, and experience with security awareness training programs, usually backed by a degree in information security or related certifications like CEH or CISSP. Familiarity with phishing simulation platforms (e.g., KnowBe4, Cofense), email security systems, and data analytics tools is typically required. Strong analytical thinking, attention to detail, and effective communication are crucial soft skills for designing realistic scenarios and educating users. These skills and qualifications are essential for helping organizations identify vulnerabilities, reduce human risk, and strengthen their overall security posture.
More about Phishing Simulation jobs
What cities are hiring for Phishing Simulation jobs? Cities with the most Phishing Simulation job openings:
What states have the most Phishing Simulation jobs? States with the most job openings for Phishing Simulation jobs include:
Infographic showing various Phishing Simulation job openings in the United States as of August 2026, with employment types broken down into 87% Full Time, and 13% Contract. Highlights an 100% In-person job distribution, with an average salary of $101,255 per year, or $48.7 per hour.

IT Security Analyst

Soni Resources

Shrewsbury, NJ • On-site

$105K/yr

Full-time

Re-posted 15 days ago


Job description

IT Security Analyst
Position Summary
Our client is seeking an IT Security Analyst to serve as a key contributor to the organization's cybersecurity program. This role will be responsible for executing security initiatives, supporting compliance requirements, strengthening Microsoft 365 and Azure security, coordinating incident response activities, and driving security best practices across a complex, multi-site environment.
The IT Security Analyst will work closely with IT leadership, compliance teams, managed service providers, and security partners to maintain a strong security posture while supporting ongoing technology and business initiatives.
Key Responsibilities
Risk Management & Compliance
  • Conduct and document security risk assessments and support ongoing compliance initiatives.
  • Maintain and update information security policies, standards, and procedures.
  • Coordinate internal and external security audits and track remediation efforts.
  • Support governance committees through reporting, documentation, and follow-up activities.
  • Assist with vendor risk assessments, third-party security reviews, and security questionnaires.

Microsoft 365 Security
  • Administer and secure Microsoft 365 environments, including identity, access management, endpoint management, security monitoring, and data protection solutions.
  • Monitor security posture and implement recommended security controls.
  • Manage identity and access management initiatives, including multi-factor authentication, role-based access controls, and privileged access management.
  • Review security alerts, audit logs, data protection policies, and access controls.

Security Operations & Incident Response
  • Serve as an escalation point for security events and incidents.
  • Participate in incident investigations, containment efforts, root cause analysis, and post-incident reviews.
  • Assist with incident response planning, tabletop exercises, and security documentation.
  • Monitor emerging cybersecurity threats and vulnerabilities relevant to the organization.
  • Coordinate with external security partners to identify and address security risks.

Vulnerability Management
  • Coordinate vulnerability scanning and penetration testing activities.
  • Review assessment results and track remediation efforts through completion.
  • Escalate critical findings and collaborate with technical teams to reduce risk.
  • Support continuous improvement of vulnerability management processes.

Security Awareness & Training
  • Administer security awareness and phishing simulation programs.
  • Analyze training results and recommend targeted educational initiatives.
  • Support onboarding and annual security training programs.
  • Develop user-focused security communications and awareness materials.

Cloud Security
  • Assist with securing cloud services and infrastructure.
  • Support implementation of least-privilege access models and network segmentation.
  • Review cloud security configurations and identify opportunities for improvement.
  • Monitor cloud environments for compliance with organizational security standards.

AI Governance & Security
  • Support evaluation and security review of AI tools and platforms.
  • Participate in AI risk assessments, privacy reviews, and governance initiatives.
  • Assist with monitoring approved AI solutions for policy compliance and security risks.
  • Stay current on emerging AI threats, vulnerabilities, and regulatory developments.

Security Program Support
  • Contribute to security roadmap planning and annual security initiatives.
  • Partner with internal and external stakeholders to implement security improvements.
  • Assist with security-related projects and other duties as assigned.

Qualifications
Required
  • Bachelor's degree in Information Technology, Cybersecurity, or a related field, or equivalent experience.
  • 3-5 years of experience in cybersecurity, information security, or security operations.
  • Experience supporting Microsoft 365 security technologies, including identity management, endpoint security, data protection, and access control solutions.
  • Working knowledge of security frameworks and compliance requirements.
  • Familiarity with network security concepts, including firewalls, segmentation, DNS filtering, and access controls.
  • Experience with vulnerability management, remediation tracking, and security assessments.
  • Strong documentation, communication, and analytical skills.
  • Ability to manage multiple priorities and work independently in a fast-paced environment.

Preferred
  • Experience in healthcare, regulated industries, professional services, or multi-entity environments.
  • Experience with EDR/MDR platforms and modern endpoint security technologies.
  • Exposure to cloud security services, monitoring tools, and infrastructure security controls.
  • Experience administering security awareness and phishing simulation platforms.
  • Familiarity with industry security frameworks and compliance standards.
  • Relevant security certifications such as Security+, Microsoft security certifications, cloud security certifications, or equivalent credentials.

Compensation: $85,000 to $105,000 annually
Compensation is based on a range of factors that include relevant experience, knowledge, skills, other job-related qualifications.

Soni Resources logo

About Soni Resources

Sourced by ZipRecruiter

Soni is a premier staffing & recruitment company that is disrupting the human capital management space. Headquartered in New York, Soni has presence in 23 markets across the United States. We support each professional relationship with a cutting-edge approach, industry-leading insights, and a human touch. We are trusted to help companies and individuals tackle their challenges and capture their greatest opportunities. We are minority-owned, and diversity & inclusion is in our DNA. We are committed to creating environments where people are empowered to be their authentic selves.

Company size

11 - 50 Employees

Headquarters location

New York, NY, US