Skip to main content
Jamf

Security Risk & Compliance Analyst

RemoteUnited States only
Published
Role
Security
Experience
Junior
Company size
Mid-size
$85.1k–$154.4k/yr
Check eligibility

Open to US only. Set where you work from to check your eligibility.

No BS summary

Junior security risk & compliance analyst, fully remote in the US. Needs 1+ yr in security operations/governance/risk/compliance and a 4-year CS or related degree. Must have working knowledge of operating systems, networking, cloud and security tools.

Required skills

Operating systemsNetworkingCloud technologySecurity tools

Optional skills

GRC applicationsAmazon Web Services (AWS)StateRAMPFedRAMP

Required languages

English working_proficiency

What you'll do

  • Conduct risk assessments in accordance with established methodology
  • Collaborate with team members to evaluate cyber risk and treatment plans, and follow up to ensure appropriate action is taken to mitigate risk
  • Support maintenance of security policies to ensure compliance with relevant laws, regulations, and industry standards
  • Collaborate with teams across Jamf to ensure security policies are consistently implemented
  • Participate in monitoring efforts to ensure compliance with security-related policies and procedures
  • Participate in external audits to maintain security certifications (ISO 27001, ISO 27701, SOC2 Type 2, StateRAMP)
  • Support the vendor risk management function for evaluating vendors and partners to identify potential risks
  • Review security terms in vendor and partner contracts for consistency with Jamf's standard annex
  • Support the customer assurance process for responding to security and compliance questions and questionnaires from customers, potential customers, and partners
  • Review security terms in customer contracts and collaborate with security teams to ensure control requirements are implemented
  • Support the security awareness training program
  • Support preparation of periodic reporting for Senior Management
  • Support implementation of program improvement initiatives

What they require

  • Minimum of 1 year of relevant experience (e.g. security operations, governance, risk management, compliance) (Required)
  • 4 year / Bachelor's Degree in Computer Science or related field (Required)
  • Familiarity with risk management methodologies, cybersecurity frameworks, and regulatory compliance (e.g. NIST, ISO 27001, ISO 27701, SOC2; StateRAMP and FedRAMP a plus) (Preferred)
  • Working knowledge of operating systems, networking, cloud technology, security tools
  • Experience in use of GRC applications a plus
  • Actively pursuing one or more of the following: CGRC, CISA, CISSP, CISM, CompTIA Security+
  • Knowledge or security training from ISACA

Benefits

  • Named a 2025 Best Companies to Work For by U.S. News
  • Work-life balance prioritized, open and flexible culture based on respect and trust
  • Clear career path that enables growth under supportive leadership and management
  • Opportunity to work in a small, empowered team with a culture of trust, ownership and respect
  • Commitment to an inclusive and supportive work environment; accommodations for disability or religious belief

Jamf extends the Apple experience to the workplace, helping customers automate Mac, iPad, iPhone and Apple TV deployment, management, and security for workplace, education, and healthcare use cases.

Device ManagementEnterprisejamf.com/
$85.1k–$154.4k/yr