> Markdown version of [/jobs/ext/564966-it-security-analyst](https://www.wearedevelopers.com/jobs/ext/564966-it-security-analyst). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # IT Security Analyst - **Company:** Avispa Technology - **Location:** Redwood City, CA, United States - **Experience:** Experienced - **Salary:** $114,400.0 - $156,000.0 - **Contract:** Temporary contract - **Skills:** CompTIA Security+, Cyber Security, System Configuration, Learning Management Systems, Intrusion Detection Systems, PCI Data Security Standards, Security Information and Event Management, Software Vulnerability Management, Cyber Threat Analysis, Firewalls (Computer Science), Vulnerability Analysis - **Published:** June 13, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=aaaf7a2e8df48a91 ## About the Role Do you have experience in Vulnerability management?, Do you have a Bachelor's degree?, * 3 years of experience in information security, cybersecurity governance, risk management, compliance, or related fields. * Bachelor's degree or equivalent combination of education and relevant experience. * Experience supporting information security, risk management, compliance initiatives, or cybersecurity programs. * Knowledge of cybersecurity frameworks and regulations, particularly NIST standards and HIPAA requirements. * Experience participating in security audits, risk assessments, vulnerability assessments, or compliance reviews. * Understanding of security technologies, including encryption, firewalls, intrusion detection systems, SIEM platforms, and related security tools. * Experience collaborating within cybersecurity, information security, assurance, or related technical teams. * Knowledge of ISO 27001 and PCI DSS frameworks is preferred. * Professional cybersecurity certifications, such as CompTIA Security+ or other relevant certifications, are preferred. * Experience configuring or administering Learning Management Systems (LMS), including course creation and management, is preferred. * Experience working within higher education or other highly regulated industries is preferred. ## Description A leading university is seeking an IT Security Analyst to join the Cybersecurity Governance, Risk, and Compliance (GRC) team. This role will support the university's research community by helping strengthen cybersecurity controls, preparing for security audits, and advancing compliance initiatives focused on NIST 800-171 and Cybersecurity Maturity Model Certification (CMMC) requirements. The ideal candidate brings experience in information security, risk management, and compliance, along with strong analytical skills and the ability to collaborate across technical and non-technical teams to promote a culture of security awareness and regulatory readiness., * Support the execution of the university's NIST readiness initiatives by assisting with security assessments, identifying compliance gaps, implementing security controls aligned with NIST 800-171 standards, and contributing to preparations for CMMC and other security audits and regulatory requirements. * Collaborate with the university's IT groups, Research Computing, and cross-functional partners, including Finance, Human Resources, and Legal, to integrate cybersecurity practices into broader organizational risk management efforts while supporting the review and enhancement of security policies, procedures, and best practices. * Develop and deliver security awareness and training programs aligned with NIST frameworks to promote security knowledge, responsibility, and compliance throughout the organization, including support for learning management activities where applicable. * Monitor and evaluate the effectiveness of security controls and risk management practices through participation in risk assessments, vulnerability assessments, audit support activities, documentation management, and operational reporting. * Stay current on emerging cybersecurity threats, industry trends, evolving regulations, and security frameworks while supporting additional initiatives that strengthen the university's overall information security posture. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Enterprise Linux as Container Images](https://www.wearedevelopers.com/videos/1610-enterprise-linux-as-container-images) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Beyond Chat: AI Workflows That Actually Investigate Alerts (So You Don't Have To Know Everything)](https://www.wearedevelopers.com/videos/100308-beyond-chat-ai-workflows-that-actually-investigate-alerts-so-you-don-t-have-to-know-everything) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Best Paying Jobs in Technology](https://www.wearedevelopers.com/magazine/256-best-paying-jobs-in-technology) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)