Senior Cyber Security Analyst at Rhymetec
New York, NY
—
Aug 1, 2026
New York, NY
Sep 24, 2026
What this job asks for AI summary
This is a client-facing security and compliance analyst role at a managed security services firm, supporting Security Program Managers in delivering compliance programs across frameworks such as SOC 2, ISO 27001, HIPAA, and GDPR. Day-to-day work includes configuring compliance platforms, completing security questionnaires, liaising with auditors, and running tabletop exercises for incident response and business continuity. The role suits someone with a generalist cybersecurity and compliance background, particularly in cloud environments.
Mid level · 4+ years · Remote · Full-time
Advertised as Senior, but the requirements read as Mid.
“or” means any one of them counts — you don't need all of them.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Roughly 13,000 people nationally plausibly meet what this posting asks for (information security analysts). range 7,800–19,600
Applicant volume Heavy — This req sits in a large pool with little in its requirements to thin it, and auto-apply tools fire at everything in the occupation. Applying early and leading with the rare skills below is what gets read.
What the occupation pays Median $132,021 (middle half $99,961–$167,095).
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Aug 2, 2026. It is a model, not a headcount.
Why we read it this way (6)
The degree requirement is waivable: the posting accepts 5+ years of direct experience in lieu of a Bachelor's degree, so no hard degree gate applies.
The 4+ years of experience requirement is stated as a hard gate in the Qualifications section; the 5+ years figure applies only to the degree-substitution path.
SOC 2, ISO 27001, HIPAA, GDPR, and CCPA compliance frameworks are listed as 'preferred experience' in the Qualifications section.
Cloud environments (AWS, GCP, Azure) appear in the Qualifications section with firm language ('Understanding of…'), making them a hard gate on cloud knowledge; AWS is listed as the primary with GCP and Azure as named alternatives.
Certifications (Cloud+, CySA+, CISSP, CSSP, CISM, CRISC) are explicitly labeled 'Preferred Certification(s)' and are not a hard gate.
The alt SOC 15-1211 (Computer Systems Analysts) is noted because a significant portion of the role involves compliance program design and client advisory work, which overlaps with systems analysis; however, the security-analysis framing is primary.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.