Information Security Analyst
ZGF Architects · Portland, OR
$89,640–$104,579
Jul 22, 2026
Portland, OR
Jul 25, 2026
What this job asks for AI summary
A mid-level security operations role at an architecture firm, supporting day-to-day cybersecurity across seven North American offices. The work spans identity and access management, vulnerability management, incident response, and security monitoring, primarily within a Microsoft-heavy environment alongside a managed SOC provider. Suits someone with around three or more years of hands-on security experience who is comfortable both operating existing controls and helping improve them.
Mid level · 3+ years · Remote · Full-time
Pay in the description: $89,640–$104,580
“or” means any one of them counts — you don't need all of them.
Posted 6 times — it's one opening, so apply once.
We read this from the posting text with AI. Skim the description below before ruling yourself out.
How this req sits in the market our data
Most people in this occupation already list these. Still required — just not what gets you shortlisted.
What the occupation pays Median $132,021 (middle half $99,961–$167,095). This posting is about at that midpoint.
Estimated from BLS employment for this occupation and area, per-skill prevalence across our listing corpus, and published wage benchmarks — as of Jul 28, 2026. It is a model, not a headcount.
Why we read it this way (9)
The role can be based in any of seven offices (Portland OR, Seattle WA, Vancouver BC, Los Angeles CA, Denver CO, New York NY, or Washington DC), with a stated preference for Portland, OR. CBSA and state reflect the preferred location. Vancouver BC is outside the US; the role is still primarily US-based.
The Defender suite (Endpoint, Identity, Cloud Apps) is listed as a single bullet under the required M365 E5 technologies block and has been split into three separate skills for clarity.
NIST CSF, CMMC, and NIST 800-171 are listed together under 'Familiarity with security frameworks'; CMMC and NIST 800-171 are captured as alternatives since any one of these frameworks satisfies the same preference.
Scripting/automation languages are preferred but no specific language is named; PowerShell, Python, and Bash are listed as the most common substitutes in this context.
Fortinet is mentioned in the company stack narrative (not in the requirements block), so it is marked preferred.
Arctic Wolf (MSSP/SOC) is mentioned in the company stack narrative and as a preferred qualification ('experience working with managed SOC services or MSSPs'); marked preferred.
The degree requirement accepts 'equivalent professional experience' in lieu of a Bachelor's degree, so the degree requirement is set to None.
The posting self-describes the target as a 'mid-level cybersecurity professional,' consistent with the 3+ years experience gate and the scope of responsibilities.
Ignored 3 non-technology phrase(s) as skills (responsibilities/concepts, not named tools): Microsoft Defender for Endpoint, Microsoft Defender for Identity, Microsoft Defender for Cloud Apps.
Read the full posting
The employer publishes the full description on their own site — read it there ↗. Or sign in to read it here — it's free, and it also lets you track this application.