Cybersecurity Project Analyst

🇺🇸 United States - Remote
🔒 Cybersecurity🔵 Mid-level

Job description

Who We Are:

Click Therapeutics, Inc., develops, validates, and commercializes software as prescription medical treatments for people with unmet medical needs. As a leading innovator of Digital Therapeutics™, Click delivers accessible, clinically proven, FDA-regulated prescription treatments to the smartphone in your hand. Click’s treatments are defined by a commitment to applying technical and scientific rigor and patient-centric design to the development process. This results in uniquely engaging experiences that achieve compelling clinical outcomes for patients seeking new treatment options. Click Therapeutics continuously expands and refines its platform with novel cognitive, behavioral and neuromodulatory mechanisms of action and advanced data-driven tools such as artificial intelligence and machine learning. The digital therapeutics under development on Click’s platform address diverse areas of therapeutic need, including indications in psychiatry, neurology, oncology, immunology, and cardiometabolic diseases. Consistently named a best place to work, Click fosters an inclusive, diverse workforce of innovators, clinicians, scientists, researchers, designers, technologists, engineers and more, united in a common mission to provide patients everywhere access to safe and effective prescription digital therapeutics. For more information, visit www.clicktherapeutics.com and connect with us on LinkedIn.

About the Role:

We’re looking for a Cybersecurity Project Analyst to join our team at Click Therapeutics, Inc. In this role, you’ll be a key player in our information security program, working alongside the Cyber Team, engineers, and senior security experts. Your main responsibilities will include helping to design, test, implement, and monitor the security measures that protect our company.

This position is based out of Click’s headquarters located in Tribeca, NYC, at the center of one of the fastest-growing digital health communities. We have a hybrid working model that consists of at least 3 days in office each week.

Responsibilities:

  • Maintain awareness of emerging cybersecurity threats, regulatory requirements, and industry best practices across Information Security, Application Development, GRC to help drive organizational change.
  • Identify and assess vulnerabilities in critical assets, customer network, and systems; coordinate and manage remediation activities to closure.
  • Maintain and mature the Third-Party Risk Management lifecycle, including onboarding, due diligence, re-assessments, and risk mitigation.
  • Monitor and track risk, risk exceptions and compensating controls; ensure risk acceptance processes are documented and approved in accordance with governance policies.
  • Develop, implement, and maintain risk and compliance programs aligned with NIST, ISO 27001, SOC 2, and CyberEssentials frameworks.
  • Create, update, and maintain standard operating procedures (SOPs) and information security policies (ISPs) to ensure alignment with organizational posture and compliance requirements.
  • Lead internal and external audits and support compliance efforts, including SOC 2, ISO-27001, and other regulatory frameworks.
  • Assist with incident response activities, including triaging alerts, and investigating security events to system and network security alerts.
  • Lead monthly phishing simulation campaigns and analyze results to strengthen the organization’s security awareness.
  • Manage and enhance the Security Awareness Training program, ensuring engagement and ongoing relevance to emerging threats and best practices.
  • Participate in the change management process, ensuring that security requirements and impact assessments are properly addressed.
  • Collaborate with the Cloud and Application engineering teams to provide security-focused guidance during the design and implementation phases.
  • Work as part of a cross-functional team of engineers and analysts, contributing in a respectful, inclusive, and collaborative environment.
  • Manage projects under minimal supervision and create progress reports.

Qualifications:

  • 1+ years of hands-on experience in cybersecurity, information security, or a related field.
  • Strong eagerness to learn, take initiative, and engage with new and evolving tasks.
  • Effective verbal, written, and interpersonal communication skills.
  • Foundational knowledge and understanding of IT risk assessments of potential and current information security risk.
  • BS degree in Computer Science, Cyber Security or related field or equivalent work experience.

Preferred Qualifications:

  • Experience working with cloud-based environments and microservices architecture, including configuration, operation, and maintenance (e.g., AWS).
  • Familiarity with compliance and risk management requirements in regulated industries such as healthcare, or related industries.
  • Working knowledge of common security frameworks (e.g., NIST, SOC 2, ISO27001)
  • Familiarity withdeveloping within an agile scrum planning methodology
  • Relevant certifications such as CC, SEC+, CISA, CISM.

Compensation:

The base salary range for this position is between: $85,000 - $110,000. The final base salary will be dependent upon skills, experience and location. In addition to the base salary, Click Therapeutics offers an annual performance-based cash bonus and a generous equity package.

Benefits:

The role includes great benefits and is an excellent wealth-building opportunity at a fast-growing pre-IPO company in a nascent and extremely exciting space.

Competitive Salary with Annual Review | Cash Bonus | Stock Options | 5% 401(k) matching | Medical | Dental | Vision | Life Insurance | Voluntary Benefits | Unlimited PTO | Uber One | Nectar Rewards | One Medical | Fertility Support | Fitness Reimbursement | Bike Membership | Professional Development Stipend | DoorDash and Catered Lunches | Parent Benefits | LinkedIn Learning | Gemini Enterprise Stack | Industrious Workspaces | Commuter Subsidies | Flexible Work Arrangement | Choice of Mac or Windows | Sponsored Company Events | Office Snacks and Beverages | Much More…

Equal Employment Opportunity:

Click Therapeutics is committed to equal opportunity in the terms and conditions of employment for all employees and job applicants without regard to race, color, religion, sex, sexual orientation, age, gender identity or gender expression, national origin, disability or veteran status. Click Therapeutics also complies with all applicable national, state and local laws governing nondiscrimination in employment as well as employment eligibility verification requirements of the Immigration and Nationality Act. All applicants must have authorization to work for Click Therapeutics in the U.S. In certain circumstances it may be advantageous to Click Therapeutics to support the application(s) for temporary visa classification and/or sponsor applications for permanent residence so that a foreign national colleague can accept or remain in a work assignment in the U. S. For certain classes of temporary visas, the resulting work authorization may be specific to Click Therapeutics and the specific job and/or work site. Click Therapeutics may at its business discretion decide to or refrain from obtaining, maintaining and/or extending the temporary visa status and/or sponsoring a colleague for permanent residency and /or employment eligibility, considering factors such as availability of qualified U.S. workers and the colleague’s long-term prospects for securing lawful permanent residence, among other reasons. Employment applicants requiring immigration sponsorship must disclose, when initial application for employment is made, whether or not they are legally authorized to work for Click Therapeutics in the U.S. and, if so, whether that authorization permits them to work in the job they seek. In no case should Click Therapeutics support of a colleague’s temporary visa application or sponsorship of a colleague for permanent residence be construed to guarantee success of that application or amend or otherwise invalidate the “at-will” employment relationship between the colleague and Click Therapeutics.

Recruitment Phishing Scams:

Fake job advertisements and offers are increasingly appearing on the internet. If you have encountered a job posting or have been approached with a job offer that you suspect may be fraudulent, we strongly recommend you do not respond and report it to the Federal Trade Commission and the FBI at https://www.ic3.gov/Home/ComplaintChoice.

Please be mindful of the following:

  • Click Therapeutics will only reach out to you through an “@clicktherapeutics.com” email address.

  • Other than your email address or telephone number, which you may provide via a job application portal, Click Therapeutics will never ask you to provide personally identifiable information about yourself (such as a Social Security Number or Driver’s License Number) via a messaging application (like that used on the LinkedIn platform or Microsoft Teams).

  • Click Therapeutics will conduct interviews face-to-face over Zoom.

  • All job postings will be listed on the Click Therapeutics official career page.

Share this job:
Please let Click Therapeutics know you found this job on Remote First Jobs 🙏

Benefits of using Remote First Jobs

Discover Hidden Jobs

Unique jobs you won't find on other job boards.

Advanced Filters

Filter by category, benefits, seniority, and more.

Priority Job Alerts

Get timely alerts for new job openings every day.

Manage Your Job Hunt

Save jobs you like and keep a simple list of your applications.

Search remote, work from home, 100% online jobs

We help you connect with top remote-first companies.

Search jobs

Hiring remote talent? Post a job

Frequently Asked Questions

What makes Remote First Jobs different from other job boards?

Unlike other job boards that only show jobs from companies that pay to post, we actively scan over 20,000 companies to find remote positions. This means you get access to thousands more jobs, including ones from companies that don't typically post on traditional job boards. Our platform is dedicated to fully remote positions, focusing on companies that have adopted remote work as their standard practice.

How often are new jobs added?

New jobs are constantly being added as our system checks company websites every day. We process thousands of jobs daily to ensure you have access to the most up-to-date remote job listings. Our algorithms scan over 20,000 different sources daily, adding jobs to the board the moment they appear.

Can I trust the job listings on Remote First Jobs?

Yes! We verify all job listings and companies to ensure they're legitimate. Our system automatically filters out spam, junk, and fake jobs to ensure you only see real remote opportunities.

Can I suggest companies to be added to your search?

Yes! We're always looking to expand our listings and appreciate suggestions from our community. If you know of companies offering remote positions that should be included in our search, please let us know. We actively work to increase our coverage of remote job opportunities.

How do I apply for jobs?

When you find a job you're interested in, simply click the 'Apply Now' button on the job listing. This will take you directly to the company's application page. We kindly ask you to mention that you found the position through Remote First Jobs when applying, as it helps us grow and improve our service 🙏

Apply