Remote Information Security Analyst Jobs
Remote information security analyst jobs are open across the U.S. in finance, healthcare, technology, and government contracting, from entry-level analyst positions at cloud-native startups to senior roles on distributed security teams. Companies hiring right now include Sumitomo Mitsui Trust Bank, UChicago Medicine, and BILL. See the openings below and apply to the ones that match your experience.
Find JobsOverview
Showing 5 of 75+ Remote Information Security Analyst jobs









Meet the Team
In today’s constantly evolving digital landscape, security is a shared responsibility. At Cisco, theSecurity and Trust Organization (STO) is central to building a secure infrastructure and fostering customer trust. As a key enabler of Cisco’s mission to be the#1 Trusted Business Partner, STO leads the innovation, training, and implementation of security and trust capabilities across all Cisco products. Reporting to Cisco’s Chief Security and Trust Officer, STO is foundational in embedding security into every aspect of Cisco’s operations.
TheCloud Assurance, Readiness& Compliance (CloudARC) team within STO is responsible for ensuring Cisco’s cloud offering portfolio demonstrates the highest levels of security assurance to our global customers while maintaining cybersecurity compliance and certifications required to access markets around the world. Our team plays a leading role in understanding customer needs for security, privacy, data protection, and customer data management. We inform, support, and collaborate with customers, Sales, Engineering, Supply Chain, Government Affairs and Legal; building industry leading trust and transparency through security and compliance.
Your Impact
TheInformation Security Engineer willplay a critical role in maintaining compliance certifications for Cisco Cloud offerings across the globe, and supporting compliance and regulatory frameworks such as SOC2, ISO27001/17/18, ENS, C5, etc. This role will be responsible for facilitating and implementing internal control assessments and external audits in collaboration with CloudARC leadership, Product Management, and Engineering.
The ideal candidate is enthused by the idea of compliance as a business enabler, has hands-on experience with multiple compliance and regulatory frameworks (e.g. SOC2, ISO27001/17/18, ENS, C5, etc.), and has solid experience assessing complex product ecosystems against cloud control frameworks. This role is ideal for the strategic problem solver who is passionate about building scalable compliance capabilities, can clearly communicate technical requirements to partners across the business ecosystem, and is driven by the opportunity to be on the forefront of customer trust.
Key Responsibilities
- Support security compliance and regulatory audits in Cisco’s cloud compliance portfolio.
- Collaborate with a team of compliance engineers to develop and execute common control strategies, ensuring consistency across audits.
- Partner with Cisco Business Units (BUs) to support the adoption and compliance with Common Cloud Controls.
- Serve as a domain expert for relevant security compliance frameworks, providing guidance and expertise to product and engineering teams.
- Conduct information security assessments over a portfolio of products and prepare reports summarizing compliance results and remediation plans.
- Work with CloudARC leaders and Product Management to develop and maintain the Product Compliance roadmaps for Cisco Cloud offerings. Superb communication skills, with the ability to collaborate effectively across technical and non-technical teams.
- 5+ years of experience in a security or compliance role.
- Bachelor’s degree in Information Security, Computer Science, or a related field. Master’s degree preferred
- Hands-on experience working with cloud platforms, particularly AWS or other major cloud environments.
- Deep expertise in regulatory compliance and security frameworks such as ISO 27001/17/18, SOC2, C5, ENS, and similar standards.
- Solid understanding of key IT security processes and services, including Secure SDLC, Identity and Access Management (IAM), Vulnerability Management, and Backup/Disaster Recovery.
- Experience partnering with auditors to drive attainment and maintenance of compliance certifications.
- Industry certifications such as CISA, CISSP, CCSK, or equivalent certifications.
- Master’s degree in Information Security, Computer Science, or related field.
- Excellent communication skills, with the ability to collaborate effectively across technical and non-technical teams.
- Proven track record in supporting delivery of compliance reports and certifications.
Why Cisco?
At Cisco, we’re revolutionizing how data and infrastructure connect and protect organizations in the AI era – and beyond. We’ve been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint.
Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you’ll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere.
We are Cisco, and our power starts with you.
Message to applicants applying to work in the U.S. and/or Canada:
The starting salary range posted for this position is $111,800.00 to $154,800.00 and reflects the projected salary range for new hires in this position in U.S. and/or Canada locations, not including incentive compensation*, equity, or benefits.
Individual pay is determined by the candidate's hiring location, market conditions, job-related skillset, experience, qualifications, education, certifications, and/or training. The full salary range for certain locations is listed below. For locations not listed below, the recruiter can share more details about compensation for the role in your location during the hiring process.
U.S. employees are offered benefits, subject to Cisco’s plan eligibility rules, which include medical, dental and vision insurance, a 401(k) plan with a Cisco matching contribution, paid parental leave, short and long-term disability coverage, and basic life insurance. Please see the Cisco careers site to discover more benefits and perks. Employees may be eligible to receive grants of Cisco restricted stock units, which vest following continued employment with Cisco for defined periods of time.
U.S. employees are eligible for paid time away as described below, subject to Cisco’s policies:
- 10 paid holidays per full calendar year, plus 1 floating holiday for non-exempt employees
- 1 paid day off for employee’s birthday, paid year-end holiday shutdown, and 4 paid days off for personal wellness determined by Cisco
- Non-exempt employees** receive 16 days of paid vacation time per full calendar year, accrued at rate of 4.92 hours per pay period for full-time employees
- Exempt employees participate in Cisco’s flexible vacation time off program, which has no defined limit on how much vacation time eligible employees may use (subject to availability and some business limitations)
- 80 hours of sick time off provided on hire date and each January 1st thereafter, and up to 80 hours of unused sick time carried forward from one calendar year to the next
- Additional paid time away may be requested to deal with critical or emergency issues for family members
- Optional 10 paid days per full calendar year to volunteer
Employees on sales plans earn performance-based incentive pay on top of their base salary, which is split between quota and non-quota components, subject to the applicable Cisco plan. For quota-based incentive pay, Cisco typically pays as follows:
- .75% of incentive target for each 1% of revenue attainment up to 50% of quota;
- 1.5% of incentive target for each 1% of attainment between 50% and 75%;
- 1% of incentive target for each 1% of attainment between 75% and 100%; and
- Once performance exceeds 100% attainment, incentive rates are at or above 1% for each 1% of attainment with no cap on incentive compensation.
The applicable full salary ranges for this position, by specific state, are listed below:
New York City Metro Area:
$142,600.00 - $213,300.00
Non-Metro New York state& Washington state:
$130,200.00 - $189,600.00
- For quota-based sales roles on Cisco’s sales plan, the ranges provided in this posting include base pay and sales target incentive compensation combined.
See All 75 Remote Information Security Analyst Jobs
Find roles that match your experience and apply in just a few clicks.
Find JobsRemote Information Security Analyst Job Market
Who's Hiring



Top Industries Hiring
- Education
- Insurance
What Employers Look For
The qualifications that appear most often in remote information security analyst jobs.
- Bachelor's degree in computer science, information security, or a related technical field
- Proficiency with SIEM platforms such as Splunk, Microsoft Sentinel, or IBM QRadar
- Hands-on experience with vulnerability scanning tools like Nessus, Qualys, or Rapid7
- Knowledge of security frameworks including NIST CSF, ISO 27001, and CIS Controls
- One or more certifications such as CompTIA Security+, CISSP, CEH, or CISM
- Experience supporting incident response, threat detection, or security operations center workflows
Tips for Your Remote Information Security Analyst Job Search
Apply early to remote roles that fit
Migrate Mate lists remote information security analyst openings from across the U.S. in one place. Check it regularly and apply to roles that match your certifications and tool experience before postings close, since remote positions often attract high application volume quickly.
Show your async communication in writing
Remote security teams depend on written handoffs, incident summaries, and ticket documentation. Treat your cover letter and any take-home assessments as proof you can communicate findings clearly without a meeting. Concise, structured writing signals you'll function well on a distributed team.
Document a home lab or personal project
Remote employers can't watch you work, so they rely on evidence. A documented vulnerability assessment, a write-up of a CTF challenge, or a personal SIEM setup gives hiring managers something concrete to evaluate your technical judgment and self-direction before an interview.
Match your tools list to remote security stacks
Remote information security analyst roles cluster around cloud environments and SaaS-heavy stacks. Make sure your application explicitly names the platforms you've worked with, such as AWS Security Hub, Microsoft Defender, Splunk, or CrowdStrike, because remote reviewers often screen resumes by tool familiarity.
Remote Information Security Analyst Jobs: Frequently Asked Questions
How do I get a remote information security analyst job?
Focus on companies with fully distributed security teams, such as cloud-first software firms, managed security service providers, and remote-first financial institutions. Remote employers screen heavily for self-direction, clear async written communication, and hands-on fluency with tools like SIEM platforms, vulnerability scanners, and ticketing systems. Certifications such as Security+, CISSP, or CEH signal credibility quickly, and a documented home lab or incident response write-up gives you an edge most applicants lack.
Which companies hire remote information security analysts?
Companies hiring remote information security analysts right now include Sumitomo Mitsui Trust Bank, UChicago Medicine, and BILL, based on current remote listings on Migrate Mate as of September 2026. Remote-first technology firms, managed security service providers, and large financial institutions with distributed teams are among the most consistent hirers of this role.
Can you get a remote information security analyst job with no experience?
Yes, but remote entry-level roles are harder to land because employers expect you to work independently from day one. Smaller remote-first companies and managed security providers occasionally hire juniors who can show a home lab, a personal vulnerability assessment project, or a relevant certification like CompTIA Security+. That evidence of self-directed learning replaces the supervised ramp-up time an in-office junior role would provide.
Do you need a degree for remote information security analyst jobs?
Not always. Many remote employers weight certifications, demonstrated skills, and real-world project work alongside or instead of a four-year degree, particularly for mid-level roles. Holding a CISSP, CISM, or CEH, combined with a portfolio of documented security assessments or incident response experience, can be competitive even without a traditional computer science or information systems degree.
Which industries hire the most remote information security analysts?
The sectors hiring the most remote information security analysts are Education and Insurance, based on current remote listings on Migrate Mate as of September 2026. These industries rely on distributed teams protecting sensitive data across multiple time zones, which makes remote information security analysts a practical and common staffing choice.
See All 75 Remote Information Security Analyst Jobs
Find roles that match your experience and apply in just a few clicks.
Find Jobs