1

Soc2 Analyst Jobs (NOW HIRING)

NIST, ISO 27001, ISO 27701, SOC2; StateRAMP and FedRAMP a plus) (Preferred) * Working knowledge of ... Strong analytical and problem-solving skills * Excellent written/verbal communication and ...

Coordinate collection and organization of evidence for internal and external audits (SOC2, ISO ... analytical activities preferred. Strong attention to detail, organizational skills, and a ...

Perform PCI, SOC2, ISO, and applicable State of Florida cybersecurity controls-related reviews to ... Maintain Third Party Risk Management Program (TPRM) and analyze SOC-2 and other reporting including ...

Perform PCI, SOC2, ISO, and applicable State of Florida cybersecurity controls-related reviews to ... Maintain Third Party Risk Management Program (TPRM) and analyze SOC-2 and other reporting including ...

... Analyst to join our team. The role manages the firm's GRC and IT risk programs, focusing on ... SOC2, HIPAA, GLBA, GDPR, CCPA, CPRA, and client Outside Counsel Guidelines; administer policy ...

IAM Audit & Compliance Analyst

$96K - $96K/yr

SOC2 * HITRUST * GDPR * PCI-DSS * NIST * IAM Governance * Access Certifications * User Access ... Root Cause Analysis Tools & Technologies * SailPoint * Active Directory * Azure AD / Entra ID

Comply with Rebus SOC2 policies and practices What You'll Bring... * Bachelor's degree in Computer Science, Business Analytics, or a related field * 3+ years of experience with SQL Server, Oracle, or ...

Comply with Rebus SOC2 policies and practices What You'll Bring... * Bachelor's degree in Computer Science, Business Analytics, or a related field * 3+ years of experience with SQL Server, Oracle, or ...

The Cybersecurity Analyst position is a Full time, Regular position. MAIN RESPONSIBILITIES ... Additionally, it ensures adherence to other regulatory standards, such as SOC2, necessitating ...

Showing results 21-40

Soc2 Analyst information

See salary details

$36.5K

$97.7K

$228.5K

How much do soc2 analyst jobs pay per year?

As of Sep 10, 2026, the average yearly pay for soc2 analyst in the United States is $97,659.00, according to ZipRecruiter salary data. Most workers in this role earn between $55,000.00 and $111,000.00 per year, depending on experience, location, and employer.

What are popular job titles related to Soc2 Analyst jobs?

For Soc2 Analyst jobs, the most frequently searched job titles are:

Infographic showing various Soc2 Analyst job openings in the United States as of August 2026, with employment types broken down into 87% Full Time, 6% Part Time, and 7% Contract. Highlights an 80% Physical, 9% Hybrid, and 11% Remote job distribution, with an average salary of $97,659 per year, or $47 per hour.

Sr Information Security Analyst -Philadelphia, PA

Philadelphia, PA • On-site

SmartIPlace
IT Services • 51 - 200 employees

Contractor

Re-posted 11 days ago


Job description

Title: Sr Information Security Analyst

Duration: 3-6 Mos C2H (without sponsorship upon conversion to FTE or at ANY time in the future)

Location: Hybrid in Philadelphia, PA(Onsite Tuesday – Thursday) 

Locals or semi-local preferred but, will consider those willing to relocate from elsewhere in the US as a VERY last resort.


Qualifications:

Required

  • 5+ years of relevant information security experience (or 3+ years in IT systems administration with 2 years security responsibilities).
  • Cloud security experience with GCP or Azure and sound knowledge of Cloud Security framework.
  • Expertise in incident response, system monitoring/analysis, and risk assessments aligned with compliance and privacy laws.
  • Experience with compliance requirements: HITRUST, PCI, NIST, HIPAA, SOC2.
  • Experience across multiple platforms: Windows, Linux/Unix, macOS; networks and endpoints.
  • Experience with vulnerability assessment and penetration testing engagements.
  • Experience with change management and project management.
  • Excellent technical writing and presentation skills; ability to translate technical risk to business impact.

Preferred

  • CCSP preferred; other certs: AZ‑500, AWS Security Specialty, GCP Professional Cloud Security Engineer.
  • Experience securing Azure, AWS, GCP in enterprise/hybrid environments.
  • Familiarity with NIST CSF, ISO 27001, CIS Benchmarks, MITRE ATT&CK.
  • Automation, scripting experience a plus.

Responsibilities:

Cloud & Enterprise Security (SME)

  • Serve as SME on security fundamentals, techniques, and technologies across Azure, AWS, GCP, and on‑prem environments.
  • Guide cloud security architecture: IAM, encryption/key management, network controls, data protection, workload hardening.
  • Implement process improvements aligned to security frameworks (NIST CSF/800‑53, ISO 27001) and business needs; optimize technology to improve customer experience.

Security Operations & Incident Response

  • Implement and monitor controls for unusual and suspicious activity across endpoints, networks, and cloud platforms.
  • Perform advanced monitoring, data/log analysis, threat hunting, and forensic investigations; contribute to SOC/IR workflows.
  • Plan, contribute to, and participate in incident plan exercises and tabletop scenarios.

Governance, Risk & Compliance (GRC)

  • Draft or revise local policies, standards, guidelines, and procedures to supplement enterprise frameworks; identify and remediate gaps based upon NIST standards.
  • Interface with internal/external auditors and examiners; maintain vendor management standards, questionnaires, and regulatory documentation (HITRUST, PCI, NIST, HIPAA, SOC2).
  • Review contracts and provide security guidance; support project scoping, costing, and cost–benefit analyses.

Stakeholder Engagement & Communication

  • Act as a liaison for the security team; clearly communicate business risk as it relates to information security.
  • Create technical documentation (reports, white papers, technical notes, implementation/configuration guides).
  • Use visual aids to convey complex topics to large, diverse audiences; communicate clearly in high‑pressure, high‑visibility situations.

Continuous Improvement

  • Recommend new security solutions and improvements that do not impede innovation.
  • Stay current with the evolving threat landscape; consistently learn and grow to remain a step ahead of attackers.

 

Technical Expertise

Cloud Security (Azure, AWS, GCP)

  • GCP: IAM, Security Command Center, Cloud Audit Logs, VPC Service Controls, CMEK/KMS, Cloud Armor, Workload Identity; container security (GKE).
  • Azure: Defender for Cloud, Microsoft Sentinel, Entra ID (Azure AD), Conditional Access, Key Vault, NSGs/Azure Firewall, storage encryption, Defender for Endpoint integration.
  • AWS: IAM roles/policies, Security Hub, GuardDuty, KMS, CloudTrail/CloudWatch, VPC security controls, AWS WAF, Secrets Manager. (experience with AWS is not required)

Additional Technologies

  • Operating Systems: Linux, Windows Server, Windows Desktop; hardening, patching, CIS Benchmarks.
  • Forensics & eDiscovery: Symantec, Purview, Proofpoint; email/file discovery; incident response.
  • Network & Perimeter: Palo Alto firewalls, URL filtering, DNS blackhole/geo‑filtering, WildFire; F5 AWAF.
  • SIEM & Logging: MS Sentinel, MDE, Elastic; Endpoint management/log forwarding. Microsoft Data Lake, CRIBL
  • Vulnerability & AppSec: Qualys, NexusIQ; OWASP‑aligned testing and remediation.
  • Endpoint: Microsoft Defender, Microsoft ATP/Defender for Endpoint.
  • Identity & MFA: Okta, Microsoft (Entra ID MFA).
  • Core Services: DNS zone management; network micro‑segmentation; zero trust‑aligned controls.
  • Secure Productivity: Securing Microsoft 365 (Exchange Online, SharePoint/OneDrive, Teams, Purview).

Smart-iPlace logo

About Smart-iPlace

Sourced by ZipRecruiter

SMART-iPLACE provides innovative staffing and consulting solutions that help our clients achieve their business objectives. We can understand and support all areas of your IT systems from back-end infrastructure to front-end personal productivity. Our goal is create innovative IT solutions that enable your business to be more agile and competitive.

Industry

It services

Company size

51 - 200 Employees

Headquarters location

Irving, TX, US

Year founded

2021

Social media