2

Remote Information Security Analyst Jobs in California

Comfort working cross-functionally and gathering information or evidence from technical and non ... Visit our PinFlex page to learn more about our working model. #LI-REMOTE At Pinterest we believe ...

Security Engineer II

Dublin, CA ยท On-site +1

$124K - $212K/yr

... root cause analysis. Collaborate with the Information Security Governance and Technical ... However, this role can perform duties effectively using a combination of in-office and remote work ...

$95K - $96K/yr

Remote (Canada) Hours: 40 hours per week, Monday to Friday Employment type: Full Time Salary: 85 ... control owners, Information Security, Internal Audit, and external auditors to support SOX ...

Senior GRC Analyst

San Francisco, CA ยท On-site +1

$183K - $205K/yr

Partner cross-functionally (e.g., Security, Legal, Engineering, Sales, IT) to implement scalable ... A data-informed mindset, with the ability to use analytics to assess GRC performance and maturity.

Security Engineer

Hawthorne, CA ยท On-site +1

$150K - $180K/yr

Information drives our business and we must protect the confidentiality, integrity, and ... Hybrid or remote work will not be considered. * Ability to pass Air Force background check for Cape ...

Showing results 21-40

Remote Information Security Analyst information

What does a remote information security analyst do?

A Remote Information Security Analyst is responsible for protecting an organization's computer systems and networks from cyber threats while working from a remote location. They monitor security systems, analyze potential vulnerabilities, respond to security incidents, and implement strategies to safeguard sensitive data. Their duties also include staying up-to-date with the latest cybersecurity trends and compliance requirements, conducting risk assessments, and training staff on best security practices. This role is crucial for ensuring that company information remains secure, especially with the increasing prevalence of remote work.

What are the key skills and qualifications needed to thrive as a remote information security analyst, and why are they important?

To thrive as a Remote Information Security Analyst, you need a solid understanding of cybersecurity principles, risk assessment, and incident response, typically supported by a degree in computer science or related field and relevant certifications like CISSP or CompTIA Security+. Familiarity with security tools such as SIEM platforms, firewalls, intrusion detection systems, and VPNs is highly valued. Strong analytical thinking, attention to detail, and clear communication skills help in interpreting threats, documenting findings, and collaborating with remote teams. These skills are critical to effectively protect organizational assets, ensure compliance, and respond quickly to evolving security threats in a distributed work environment.

What are some common challenges faced by remote information security analysts, and how can they be managed effectively?

Remote Information Security Analysts often face challenges such as maintaining secure communication channels, staying updated on evolving threats, and collaborating with cross-functional teams across different time zones. To manage these, it's important to use reliable VPNs and encrypted communication tools, participate in regular virtual security briefings, and establish clear protocols for incident response. Staying proactive in communication and leveraging collaborative platforms can help ensure that security objectives are met without compromising efficiency or response times.

What is the difference between Remote Information Security Analyst vs Remote Cybersecurity Specialist?

AspectRemote Information Security AnalystRemote Cybersecurity Specialist
CertificationsCompTIA Security+, CISSP, CISACompTIA Security+, CISSP, CEH
Work EnvironmentCorporate, government, or consulting firmsTech companies, security firms, or consulting
Employer UsageCommon in organizations with IT security teamsOften in specialized security firms or departments
Search IntentJob roles focusing on security analysis and monitoringHands-on security testing and threat mitigation

While both roles focus on cybersecurity, Remote Information Security Analysts primarily analyze and monitor security systems, whereas Remote Cybersecurity Specialists often perform active security testing and threat mitigation. The roles overlap but differ in daily tasks and focus areas.

Can a remote information security analyst work from home?

Yes, many remote information security analysts work from home, as the role often involves tasks such as monitoring networks, analyzing security threats, and managing security tools that can be performed remotely. Strong communication skills and familiarity with remote collaboration tools are important for success in a home-based environment.

Can a remote information security analyst work remotely?

Yes, many information security analyst roles are remote, allowing professionals to perform tasks such as monitoring security systems, analyzing threats, and implementing security measures from any location. Remote work often requires strong communication skills, familiarity with security tools, and relevant certifications like CISSP or CompTIA Security+.

What are the most commonly searched types of Information Security Analyst jobs in California?

The most popular types of Information Security Analyst jobs in California are:

What are popular job titles related to Remote Information Security Analyst jobs in California?

For Remote Information Security Analyst jobs in California, the most frequently searched job titles are:

What job categories do people searching Remote Information Security Analyst jobs in California look for?

The top searched job categories for Remote Information Security Analyst jobs in California are:

What cities in California are hiring for Remote Information Security Analyst jobs?

Cities in California with the most Remote Information Security Analyst job openings:

Infographic showing various Remote Information Security Analyst job openings in California as of August 2026, with employment types broken down into 1% As Needed, 69% Full Time, 25% Part Time, and 5% Contract. Highlights an 92% Physical, 3% Hybrid, and 5% Remote job distribution.

Security GRC Analyst

Pinterest

San Francisco, CA โ€ข On-site, Remote

Full-time

Posted 4 days ago


Key responsibilities

  • Support and maintain Pinterest's security governance and assurance programs, including risk management, policy governance, and control testing.

  • Partner with stakeholders to identify, document, assess, and monitor security risks, and support audit activities such as SOC 2 Type 2.

  • Prepare reports, dashboards, and presentations for leadership on risk, compliance, audit, and awareness program status.


Job description

Pinterest's Security team (Pinfosec) is seeking an IC14 Security Engineer -ย  Security Governance, Risk & Compliance (GRC Senior Analyst) to support and strengthen our security governance and assurance programs. This role is ideal for someone who is detail-oriented, collaborative, and motivated by building scalable security processes that help the business manage risk effectively.

Reporting to the Interim Head of Security Governance, Risk & Compliance, this individual contributor will partner closely with Security, Engineering, IT, Legal, Internal Audit, and other cross-functional stakeholders to help maintain and improve Pinterest's security control environment. The role will contribute to core GRC activities including risk management, policy governance, control testing, audit support, awareness tracking, and internal risk assessments.

What you'll do:

  • Administer and maintain the security risk register, including tracking identified risks, updates, remediation activities, owners, and reporting outputs.
  • Partner with stakeholders across Security and the business to identify, document, assess, and monitor security risks.
  • Draft, review, update, and manage the lifecycle of security policies, standards, and supporting procedures.
  • Support the planning, coordination, evidence collection, and follow-up activities for Pinterest's annual SOC 2 Type 2 audit.
  • Track and report on security awareness training metrics, completion rates, exceptions, and follow-up actions.
  • Execute security control testing activities aligned to CIS Controls and document testing outcomes, findings, and remediation recommendations.
  • Conduct and support risk assessments in partnership with internal Security colleagues and relevant business stakeholders.
  • Help monitor control effectiveness and identify opportunities to improve process maturity, consistency, and evidence quality.
  • Prepare dashboards, reports, and presentations for leadership on risk, compliance, audit, and awareness program status.
  • Support remediation tracking for control gaps, audit findings, and risk treatment actions.
  • Contribute to the continuous improvement of Pinterest's GRC framework, documentation, and operating rhythms.
  • Maintain strong working relationships with internal partners to promote a practical, business-aligned approach to security governance and compliance.

What we are looking for:

  • 4+ years experience in security governance, risk, compliance, audit, or security assurance roles.
  • Working knowledge of core security and compliance frameworks such as SOC 2, CIS Controls, ISO 27001, NIST CSF, or similar.
  • Experience supporting audits, assessments, or control testing programs in a technology or SaaS environment.
  • Ability to write clear, practical, and actionable security policies, standards, and process documentation.
  • Experience maintaining risk registers and supporting formal risk assessment processes.
  • Strong organizational skills with the ability to manage multiple workstreams and deadlines with attention to detail.
  • Comfort working cross-functionally and gathering information or evidence from technical and non-technical stakeholders.
  • Strong written and verbal communication skills, including the ability to summarize risk and compliance issues clearly.
  • A pragmatic, collaborative mindset and a desire to help teams meet security requirements in a scalable way.
  • Bachelor's degree in a relevant field such as Computer Information systems or Cybersecurity, or equivalent experience.

Preferred qualifications:ย 

  • Experience supporting SOC 2 Type 2 audits in a cloud-based or high-growth technology environment.
  • Familiarity with security awareness program administration and reporting.
  • Experience performing or coordinating control testing mapped to recognized frameworks such as CIS Controls.
  • Knowledge of common enterprise security domains, including identity and access management, logging and monitoring, vulnerability management, endpoint security, and third-party risk.
  • Relevant certifications such as Security+, CISA, CRISC, CISSP, or similar are a plus.

In-Office Requirement Statement:

  • We let the type of work you do guide the collaboration style. That means we're not always working in an office, but we continue to gather for key moments of collaboration and connection.
  • This role will need to be in the office for in-person collaboration 1-2 times/quarter and therefore can be situated anywhere in the country.ย 

Relocation Statement:

  • This position is not eligible for relocation assistance. Visit our PinFlex page to learn more about our working model.


#LI-REMOTE