> Markdown version of [/jobs/ext/2589651-associate-security-analyst](https://www.wearedevelopers.com/jobs/ext/2589651-associate-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Associate Security Analyst - **Company:** Avispa Technology - **Location:** Redwood City, CA, United States - **Experience:** Experienced - **Salary:** $114,400.0 - $156,000.0 - **Contract:** Temporary contract - **Skills:** CompTIA Security+, Cyber Security, Learning Management Systems, Intrusion Detection Systems, PCI Data Security Standards, Security Software, Security Information and Event Management, Firewalls (Computer Science), Information Technology, Vulnerability Analysis - **Published:** August 2, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=98fda8ea92f83f96 ## About the Role * 3+ years of experience in information security, cybersecurity, risk management, compliance, or a related field. * Bachelor's degree in Cybersecurity, Information Security, Computer Science, Information Technology, or a related field, or equivalent professional experience. * Knowledge of information security, risk management, compliance frameworks, and industry standards, including NIST and HIPAA. * Experience supporting security audits, risk assessments, vulnerability assessments, security controls, and compliance initiatives. * Knowledge of security technologies including encryption, firewalls, intrusion detection systems, SIEM platforms, and related cybersecurity tools. * Strong analytical, problem-solving, organizational, written, and verbal communication skills with the ability to explain technical concepts to diverse audiences. * Ability to stay current with evolving cybersecurity threats, technologies, and regulatory requirements while working collaboratively across cross-functional teams. * Knowledge of ISO 27001 and PCI DSS is preferred. * Security+ or other professional cybersecurity certifications are preferred. * Experience administering or managing Learning Management Systems (LMS) is preferred. * Experience working in higher education or another highly regulated industry is preferred. ## Description * Support NIST 800-171 readiness initiatives by assisting with security assessments, implementing security controls, identifying compliance gaps, recommending corrective actions, and preparing the organization for security audits and Cybersecurity Maturity Model Certification (CMMC) requirements. * Develop, deliver, and maintain security awareness and training programs aligned with NIST standards while supporting the review, enhancement, and documentation of security policies, procedures, operational reports, and compliance activities. * Monitor security controls, evaluate risk management practices, perform risk and vulnerability assessments, maintain compliance documentation, and support continuous improvements to the organization's cybersecurity posture. * Collaborate with Research Computing, IT, Finance, Human Resources, Legal, and other cross-functional teams to integrate information security into enterprise risk management, support regulatory compliance efforts, and provide security guidance to the research community. * Stay current on emerging cybersecurity threats, technologies, regulations, and industry best practices while communicating technical information to both technical and non-technical audiences and supporting additional information security initiatives as assigned. ## Related Videos - [Software Security 101: Secure Coding Basics](https://www.wearedevelopers.com/videos/220-software-security-101-secure-coding-basics) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Reporting Active Exploits in 24 Hours: Are You Ready for the CRA?](https://www.wearedevelopers.com/videos/100248-reporting-active-exploits-in-24-hours-are-you-ready-for-the-cra) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology)