Operate cybersecurity controls across corporate, cloud, and SaaS environments; support ISO 27001 and SOC 2 compliance, GRC administration, access reviews, incident response, vulnerability management, vendor risk, audit evidence, and security awareness programs. The summary above was generated by
AI NEW CAREER OPPORTUNITY
Build your career with Kraken Robotics. Make a difference to others. If innovation drives you, and you want a career that makes a difference to the world, helping humanity overcome the challenges in our oceans - safely, efficiently, and sustainably - then come join us at Kraken Robotics. Kraken Robotics is currently recruiting for a Cybersecurity Specialist . This position can be remote anywhere in Canada or US, with preference given to those candidates within the cities we have offices.
ROLES AND RESPONSIBILITES
Operate and enforce Kraken's day‑to‑day information security controls across corporate, cloud, and SaaS environments. Support Kraken's
ISO/IEC 27001
Information Security Management System (ISMS) by monitoring control operation, maintaining evidence, addressing control gaps, and updating risk register. Support SOC 2 Type II compliance by ensuring security and availability controls operate effectively and are supported by accurate, auditable evidence. Administer and maintain Kraken's GRC platform (Vanta) to support control tracking, evidence collection, remediation management, and audit activities. Enforce access control processes, including user onboarding and offboarding, privileged access reviews, and periodic access recertification. Monitor and respond to security alerts and incidents in coordination with managed detection and response (MDR) and SOC providers. Support incident response activities, including investigation, documentation, corrective actions, and post‑incident review. Validate operational security controls such as logging, monitoring, vulnerability management, backup verification, and configuration compliance. Support cybersecurity infrastructure and policy projects, including the implementation and rollout of new security tools, platforms, and control capabilities. Enforce secure system usage and data handling requirements, escalating non‑compliance and control failures as appropriate. Support third‑party security and vendor risk management activities, including review of
ISO 27001
certifications, SOC 2 reports, and related assurance artifacts. Identify gaps between documented controls and operational practice and work with internal teams to drive remediation and continuous improvement. Provide guidance to users on secure system usage and data handling requirements in line with company policy. Support the delivery of the organization's security awareness and phishing resistance program using KnowBe4, including administration of training campaigns, simulated phishing exercises, and post‑email analysis workflows, and contributing to user remediation and reporting activities.
QUALIFICATIONS AND EXPERIENCE
Post‑secondary education in Cybersecurity, Information Technology, Computer Science, or a related field, or equivalent practical experience. Experience supporting operational cybersecurity, information security programs, or compliance initiatives. Working knowledge of
ISO/IEC 27001, SOC 2
Trust Services Criteria, and common operational security controls. Experience collecting, maintaining, and validating audit‑ready security evidence. Experience working with GRC platforms (e.g., Vanta or similar) is strongly preferred. Technical security knowledge across areas such as identity and access management, endpoint security, logging and monitoring, vulnerability management, and secure system configuration. Experience operating in regulated, customer‑assessed, or compliance‑driven environments is an asset.
PREFERRED SKILLS
Strong written and verbal communication skills, with the ability to explain security requirements clearly to technical and non‑technical audiences. High attention to detail and a disciplined, evidence‑driven approach to security operations. Ability to translate security requirements into practical, enforceable operational controls. Strong organizational and time‑management skills in a multi‑priority environment. Self‑motivated with a proactive mindset and a commitment to continuous improvement. Relevant certifications (e.g., Security+, SSCP, CISSP, ISO 27001 Lead Implementer/Auditor) are considered assets. Read Full Description Similar Jobs PUMA Group Junior Specialist, Cybersecurity Operations 19 Days Ago In-Office or Remote United States Entry level Entry level Retail
- Sports Support a global 24x7x365 security operations team by monitoring systems and networks, investigating threats and incidents, responding to phishing, malware, breaches, and cyberattacks, deploying countermeasures, analyzing post-event activity, assessing vulnerabilities, and improving security protocols.
The role requires familiarity with cloud security controls, network protocols, operating systems, scripting, web technologies, penetration testing tools, and threat intelligence.
Top Skills:
Asp Bash Burp Suite Chronicle Detect Cloud Armor Data Security Posture Management Google Cloud Platform (Gcp) Google Secops Java Kql Linux macOS Metasploit Nmap PHP Powershell Security Command Center SQL Web Security Scanner Windows Wireshark Yara Federal Reserve System Senior Red Team Cybersecurity Specialist One Month Ago In-Office or Remote 10 Locations 130K-179K Annually Senior level 130K-179K Annually Senior level Fintech
- Payments
- Financial Services This role involves leading red team cybersecurity efforts to evaluate and improve the security posture of the Federal Reserve System through advanced attack simulations and vulnerability assessments.
Top Skills:
C# Go Powershell Python Hewlett Packard Enterprise Hardware Engineer A Minute Ago In-Office 63K-145K Annually Entry level 63K-145K Annually Entry level Artificial Intelligence
- Cloud
- Information Technology
- Consulting Designs and tests electrical hardware components, subsystems, integrated circuitry, and related solutions.
Performs validation testing for tolerances, form, fit, function, shock, vibration, electromagnetic interference, safety, reliability, thermal performance, and system power. Collaborates with internal and outsourced development partners to deliver reliable, cost-effective hardware products. Supports feasibility studies, design analysis, prototypes, and project team recommendations.
Top Skills:
Analyzer Tools Electrical Design Tools Electrical Hardware Electromagnetic Interference Testing Integrated Circuitry Oscilloscope What you need to know about the Colorado Tech Scene With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.
Key Facts About Colorado Tech Number of Tech Workers:
260,000; 8.5% of overall workforce (2024 CompTIA survey)
Major Tech Employers:
Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
Key Industries:
Software , artificial intelligence , aerospace , e-commerce , fintech , healthtech
Funding Landscape:
$4.9 billion in VC funding in 2024 (Pitchbook)
Notable Investors:
Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures Research Centers and Universities:
Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute