- Company Name
- Click Therapeutics, Inc.
- Job Title
- Cybersecurity Project Analyst
- Job Description
-
**Job Title:** Cybersecurity Project Analyst
**Role Summary:**
Analyze, design, implement, and monitor security measures for an organization’s information assets. Coordinate risk assessments, third‑party risk management, and compliance programs. Support incident response, audit activities, and security awareness initiatives while collaborating with engineering and operational teams.
**Expectations:**
- Manage security projects with limited supervision.
- Produce clear progress and risk reports.
- Communicate findings and recommendations to technical and non‑technical stakeholders.
**Key Responsibilities:**
- Maintain awareness of emerging threats, regulatory changes, and industry best practices.
- Identify, assess, and remediate vulnerabilities in critical assets and networks.
- Manage third‑party risk lifecycle: onboarding, due diligence, re‑assessments, mitigation.
- Monitor risk, exceptions, and compensating controls; document risk acceptance per governance policies.
- Develop and sustain risk and compliance programs aligned with NIST, ISO 27001, SOC 2, and CyberEssentials.
- Draft, update, and maintain SOPs and information security policies.
- Lead internal and external audits, supporting SOC 2, ISO 27001, and related frameworks.
- Assist incident response: triage alerts, investigate events, and document findings.
- Conduct monthly phishing simulations and analyze outcomes to enhance security awareness.
- Manage and evolve security awareness training program.
- Participate in change management ensuring security requirements and impact assessments.
- Provide security guidance to Cloud and Application engineering teams during design and implementation.
- Collaborate with cross‑functional teams in an inclusive, respectful environment.
**Required Skills:**
- 2+ years hands‑on experience in cybersecurity or information security.
- Strong verbal, written, and interpersonal communication.
- Knowledge of IT risk assessment methodologies.
- Familiarity with NIST, SOC 2, ISO 27001 frameworks.
- Experience with cloud environments (e.g., AWS) and microservices architecture.
- Understanding of compliance requirements in regulated industries such as healthcare.
- Agile Scrum methodology experience preferred.
- Ability to work independently, prioritize tasks, and manage multiple projects.
**Required Education & Certifications:**
- Bachelor’s degree in Computer Science, Cybersecurity, Information Technology, or equivalent experience.
- Professional certifications (e.g., CompTIA Security+, CISSP, CISM, CRISC, or equivalent) are preferred.