Remote Information Security Engineer Jobs
Remote information security engineer jobs are open across the U.S. at remote-first firms, distributed tech teams, and organizations in sectors like financial services, healthcare, cloud computing, and government contracting. Employers hiring remotely right now include Sumitomo Mitsui Trust Bank, UChicago Medicine, and BILL. See the openings below and apply to the ones that match your experience.
Find JobsOverview
Showing 5 of 75+ Remote Information Security Engineer jobs









Meet the Team
In today’s constantly evolving digital landscape, security is a shared responsibility. At Cisco, theSecurity and Trust Organization (STO) is central to building a secure infrastructure and fostering customer trust. As a key enabler of Cisco’s mission to be the#1 Trusted Business Partner, STO leads the innovation, training, and implementation of security and trust capabilities across all Cisco products. Reporting to Cisco’s Chief Security and Trust Officer, STO is foundational in embedding security into every aspect of Cisco’s operations.
TheCloud Assurance, Readiness& Compliance (CloudARC) team within STO is responsible for ensuring Cisco’s cloud offering portfolio demonstrates the highest levels of security assurance to our global customers while maintaining cybersecurity compliance and certifications required to access markets around the world. Our team plays a leading role in understanding customer needs for security, privacy, data protection, and customer data management. We inform, support, and collaborate with customers, Sales, Engineering, Supply Chain, Government Affairs and Legal; building industry leading trust and transparency through security and compliance.
Your Impact
TheInformation Security Engineer willplay a critical role in maintaining compliance certifications for Cisco Cloud offerings across the globe, and supporting compliance and regulatory frameworks such as SOC2, ISO27001/17/18, ENS, C5, etc. This role will be responsible for facilitating and implementing internal control assessments and external audits in collaboration with CloudARC leadership, Product Management, and Engineering.
The ideal candidate is enthused by the idea of compliance as a business enabler, has hands-on experience with multiple compliance and regulatory frameworks (e.g. SOC2, ISO27001/17/18, ENS, C5, etc.), and has solid experience assessing complex product ecosystems against cloud control frameworks. This role is ideal for the strategic problem solver who is passionate about building scalable compliance capabilities, can clearly communicate technical requirements to partners across the business ecosystem, and is driven by the opportunity to be on the forefront of customer trust.
Key Responsibilities
- Support security compliance and regulatory audits in Cisco’s cloud compliance portfolio.
- Collaborate with a team of compliance engineers to develop and execute common control strategies, ensuring consistency across audits.
- Partner with Cisco Business Units (BUs) to support the adoption and compliance with Common Cloud Controls.
- Serve as a domain expert for relevant security compliance frameworks, providing guidance and expertise to product and engineering teams.
- Conduct information security assessments over a portfolio of products and prepare reports summarizing compliance results and remediation plans.
- Work with CloudARC leaders and Product Management to develop and maintain the Product Compliance roadmaps for Cisco Cloud offerings. Superb communication skills, with the ability to collaborate effectively across technical and non-technical teams.
- 5+ years of experience in a security or compliance role.
- Bachelor’s degree in Information Security, Computer Science, or a related field. Master’s degree preferred
- Hands-on experience working with cloud platforms, particularly AWS or other major cloud environments.
- Deep expertise in regulatory compliance and security frameworks such as ISO 27001/17/18, SOC2, C5, ENS, and similar standards.
- Solid understanding of key IT security processes and services, including Secure SDLC, Identity and Access Management (IAM), Vulnerability Management, and Backup/Disaster Recovery.
- Experience partnering with auditors to drive attainment and maintenance of compliance certifications.
- Industry certifications such as CISA, CISSP, CCSK, or equivalent certifications.
- Master’s degree in Information Security, Computer Science, or related field.
- Excellent communication skills, with the ability to collaborate effectively across technical and non-technical teams.
- Proven track record in supporting delivery of compliance reports and certifications.
Why Cisco?
At Cisco, we’re revolutionizing how data and infrastructure connect and protect organizations in the AI era – and beyond. We’ve been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint.
Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you’ll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere.
We are Cisco, and our power starts with you.
Message to applicants applying to work in the U.S. and/or Canada:
The starting salary range posted for this position is $111,800.00 to $154,800.00 and reflects the projected salary range for new hires in this position in U.S. and/or Canada locations, not including incentive compensation*, equity, or benefits.
Individual pay is determined by the candidate's hiring location, market conditions, job-related skillset, experience, qualifications, education, certifications, and/or training. The full salary range for certain locations is listed below. For locations not listed below, the recruiter can share more details about compensation for the role in your location during the hiring process.
U.S. employees are offered benefits, subject to Cisco’s plan eligibility rules, which include medical, dental and vision insurance, a 401(k) plan with a Cisco matching contribution, paid parental leave, short and long-term disability coverage, and basic life insurance. Please see the Cisco careers site to discover more benefits and perks. Employees may be eligible to receive grants of Cisco restricted stock units, which vest following continued employment with Cisco for defined periods of time.
U.S. employees are eligible for paid time away as described below, subject to Cisco’s policies:
- 10 paid holidays per full calendar year, plus 1 floating holiday for non-exempt employees
- 1 paid day off for employee’s birthday, paid year-end holiday shutdown, and 4 paid days off for personal wellness determined by Cisco
- Non-exempt employees** receive 16 days of paid vacation time per full calendar year, accrued at rate of 4.92 hours per pay period for full-time employees
- Exempt employees participate in Cisco’s flexible vacation time off program, which has no defined limit on how much vacation time eligible employees may use (subject to availability and some business limitations)
- 80 hours of sick time off provided on hire date and each January 1st thereafter, and up to 80 hours of unused sick time carried forward from one calendar year to the next
- Additional paid time away may be requested to deal with critical or emergency issues for family members
- Optional 10 paid days per full calendar year to volunteer
Employees on sales plans earn performance-based incentive pay on top of their base salary, which is split between quota and non-quota components, subject to the applicable Cisco plan. For quota-based incentive pay, Cisco typically pays as follows:
- .75% of incentive target for each 1% of revenue attainment up to 50% of quota;
- 1.5% of incentive target for each 1% of attainment between 50% and 75%;
- 1% of incentive target for each 1% of attainment between 75% and 100%; and
- Once performance exceeds 100% attainment, incentive rates are at or above 1% for each 1% of attainment with no cap on incentive compensation.
The applicable full salary ranges for this position, by specific state, are listed below:
New York City Metro Area:
$142,600.00 - $213,300.00
Non-Metro New York state& Washington state:
$130,200.00 - $189,600.00
- For quota-based sales roles on Cisco’s sales plan, the ranges provided in this posting include base pay and sales target incentive compensation combined.
See All 75 Remote Information Security Engineer Jobs
Find roles that match your experience and apply in just a few clicks.
Find JobsRemote Information Security Engineer Job Market
Who's Hiring



Top Industries Hiring
- Education
- Insurance
What Employers Look For
The qualifications that appear most often in remote information security engineer jobs.
- 3-5 years of experience in information security, network security, or a related discipline
- Proficiency with SIEM platforms such as Splunk, Microsoft Sentinel, or IBM QRadar
- Hands-on experience with vulnerability management tools like Tenable Nessus or Qualys
- Relevant certification such as CISSP, CompTIA Security+, CEH, or equivalent
- Working knowledge of NIST CSF, ISO 27001, or SOC 2 compliance frameworks
- Bachelor's degree in computer science, cybersecurity, information systems, or a related field
Tips for Your Remote Information Security Engineer Job Search
Apply early to remote roles that fit
Migrate Mate lists remote information security engineer openings from across the U.S. in one place, so you can find roles that match your skills and apply directly without sorting through mixed remote and on-site listings.
Show your async security communication skills
Remote security teams depend on written documentation, incident runbooks, and clear Slack or ticketing-system updates. Include writing samples or sample incident reports in your application materials to prove you communicate findings precisely without a meeting.
Demonstrate your remote tooling fluency
Call out specific tools by name: the SIEM platforms, endpoint detection and response tools, and cloud security services you've used in distributed environments. Remote hiring managers screen for this quickly because they can't assess it in person.
Build a home lab and document it publicly
A GitHub repository, write-up blog, or capture-the-flag portfolio signals self-direction, which remote employers value as much as certifications. Concrete evidence of how you set up, attacked, and defended your own environment answers the question remote teams ask: can you work without supervision?
Remote Information Security Engineer Jobs: Frequently Asked Questions
How do I get a remote information security engineer job?
Target companies built around distributed teams, because they have established workflows for remote security work and won't expect you in an office for incident response. Remote employers screen heavily for async communication skills, self-directed judgment, and hands-on proficiency with tools like SIEM platforms, endpoint detection systems, and cloud security configurations. Certifications such as CISSP, CEH, or CompTIA Security+ help, but demonstrable experience with real environments closes more doors than credentials alone.
Which companies hire remote information security engineers?
Companies hiring remote information security engineers right now include Sumitomo Mitsui Trust Bank, UChicago Medicine, and BILL, based on current remote listings on Migrate Mate as of September 2026. Remote-first software companies, cybersecurity-focused managed service providers, and distributed teams in financial services and healthcare are among the most consistent employers of information security engineers in fully remote roles.
Can you get a remote information security engineer job with no experience?
Yes, but remote entry-level information security engineer roles are harder to land because employers expect you to troubleshoot independently without an in-office mentor nearby. Remote-first cybersecurity firms and managed security service providers occasionally hire entry-level candidates who can show a home lab, a capture-the-flag portfolio, or contributions to open-source security tools. Certifications like CompTIA Security+ paired with demonstrated hands-on work substitute for professional experience more effectively than a resume alone.
Do you need a degree for remote information security engineer jobs?
Not always. Many remote employers in cybersecurity weigh practical skills, certifications, and a verifiable history of securing real environments over a four-year degree. Credentials like CISSP, CISM, or CEH alongside documented work, a home lab, or prior contract security work carry significant weight. Larger enterprises and government contractors are more likely to list a degree as a formal requirement than remote-first technology firms.
Which industries hire the most remote information security engineers?
The sectors hiring the most remote information security engineers are Education and Insurance, based on current remote listings on Migrate Mate as of September 2026. These industries rely on distributed teams protecting sensitive data across cloud environments and global infrastructure, which makes fully remote security engineering roles a natural fit.
See All 75 Remote Information Security Engineer Jobs
Find roles that match your experience and apply in just a few clicks.
Find Jobs