Description
Smarsh is hiring an Information Security Analyst to evaluate the cybersecurity and third-party risk posture of clients in highly regulated industries. The role reviews vendor security assessments and documentation, conducts vulnerability scans and penetration tests, produces vulnerability and due diligence reports, advises clients, manages client engagements, and helps improve vendor risk management operations. It requires 3–5 years of Vendor Risk Management or Information Security experience, familiarity with Nessus, Metasploit, or Cobalt Strike, knowledge of TCP/IP, server administration, and cybersecurity controls, proficiency with Salesforce, Microsoft Office, and Microsoft Teams, and the ability to use and improve AI tools for compliance analysis and workflow automation.
