Full-Time

Cyber Security Analyst

Rhymetec

Rhymetec

11-50 employees

Cybersecurity services for cloud, compliance, privacy

No salary listed

New York, NY, USA

Remote

Quarterly travel may be required.

Category
IT & Security (1)
Required Skills
Datadog
Microsoft Azure
SOC 2
AWS
DevOps
Google Cloud Platform
Requirements
  • Bachelor's Degree from an accredited university in a Technology or Cybersecurity field OR 4+ years of direct experience in listed areas
  • 3+ years of work experience working with technology, cybersecurity, and regulatory compliance
  • Experience in customer service and ability to develop professional relationships with customers
  • Extensive knowledge of compliance, regulatory frameworks, and implementing SOC 2, ISO27001, CMMC, HIPAA, GDPR, NIST 800-53 and other compliance frameworks
  • Strong logical security skills, with experience in cloud security
  • Understanding of cloud environments (AWS, GCP, Azure) and integrating security controls through DevOps and Infrastructure as a Service (IaaS) techniques
  • Quarterly travel may be required
Responsibilities
  • Prepare agendas and reference documents for meetings with clients
  • Assist in building and managing cyber security programs for Rhymetec’s customers based on industry standard cyber security compliance frameworks
  • Conduct meetings with clients regularly
  • Configure performance monitoring alarms in AWS, Azure, GCP, Datadog and other cloud infrastructures
  • Configure Security alarms and Intrusion Detection Systems in AWS, GCP, Azure
  • Set up supporting security applications
  • Set up mobile device management applications such as Jamf, Jumpcloud, Microsoft Endpoint manager, Hexnode, etc.
  • Configure and maintain compliance monitoring platforms
  • Conduct internal audits, risk assessments, and generate reports
  • Conduct Incident Response Tabletop exercises with clients
  • Conduct Business Continuity and Disaster recovery tabletop exercises with clients
  • Document and lead incident response process should an incident arise
  • Translate SOC 2 Type 2, ISO 27001, CMMC, GDPR, and HIPAA controls into actionable items for clients
  • Conduct employee access reviews, SaaS vendor security assessments, and gap assessments
  • Triage bug/vulnerability reports from security researchers
  • Complete security questionnaires on behalf of clients
  • Draft supporting documents for clients’ information security management systems and information security policies
  • Gather and maintain evidence of compliance for various frameworks
  • Lead engagements with auditors on behalf of clients
  • Communicate tasks to clients’ employees and educate clients on security best practices
Desired Qualifications
  • Cloud+
  • CySA+
  • CISSP
  • CISM

Rhymetec provides cybersecurity services focused on cloud security, data privacy, and compliance for SaaS businesses. It combines consulting and managed services, offering vCISO engagements, penetration testing, security assessments, cloud configuration reviews, phishing simulations with training, and compliance readiness for frameworks like SOC 2, ISO 27001, GDPR, HIPAA, and PCI DSS. The company tailors its work to each client’s infrastructure and growth stage and can deploy and manage security programs directly within the client’s environment, often partnering with firms like Drata, Picnic Corporation, and A-LIGN. Its goal is to help customers achieve and maintain security and compliance efficiently so they can focus on their core business operations.

Company Size

11-50

Company Stage

N/A

Total Funding

N/A

Headquarters

New York City, New York

Founded

2015

Simplify Jobs

Simplify's Take

What believers are saying

  • Drata's Fall 2025 AI-compliance mapping speeds Rhymetec client SOC 2 timelines.
  • Picnic's Q1 2026 vendor tools integrate with Rhymetec vCISO for SaaS efficiency.
  • A-LIGN's March 2026 FedRAMP accelerator opens government contracts for clients.

What critics are saying

  • Drata-Vanta-A-LIGN consolidation in 12-24 months eliminates Rhymetec partnerships.
  • CrowdStrike-Rapid7 AI pentesting commoditizes services with 70% cost cuts in 6-18 months.
  • SEC rules and EU NIS2 force SaaS clients to hire full-time CISOs in 12-24 months.

What makes Rhymetec unique

  • Rhymetec combines consulting and managed services unlike single-offer competitors.
  • Founder Justin Rende's 20+ years experience drives NYC-based vCISO innovation since 2015.
  • Tailored human-tech blend accelerates compliance for 1,200+ SaaS clients globally.

Help us improve and share your feedback! Did you find this helpful?

Your Connections

People at Rhymetec who can refer or advise you

Benefits

Health Insurance

Dental Insurance

Vision Insurance

PTO and Sick Time

11 paid Holidays

401K retirement option

Company paid Life Insurance

Annual Subscription to TalkSpace (online counseling & therapy service)

Summer Fridays!