This is a remote position.
- Manage and maintain cybersecurity compliance programs, including NYDFS Cybersecurity Regulation 500, ISO 27001, and enterprise security requirements.
- Conduct vulnerability assessments, coordinate penetration testing, and drive remediation efforts across cloud and internal environments.
- Monitor and respond to security events using AWS security services, SIEM platforms, and other security tools.
- Develop and maintain incident response processes, security controls, and identity and access management (IAM) practices.
- Partner with engineering teams to integrate security into the SDLC through secure coding practices, threat modeling, and application security reviews.
- Support vendor risk assessments, client security reviews, and security documentation for audits and compliance.
- Serve as the security subject matter expert for cloud security, API security, and OWASP Top 10 best practices.
- 7+ years of experience in cybersecurity engineering or information security, preferably within SaaS, fintech, or cloud-based environments.
- Strong experience with cloud security (AWS preferred), identity and access management, logging, monitoring, and security operations.
- Experience with compliance frameworks such as NYDFS, ISO 27001, SOC 2, PCI DSS, or similar.
- Hands-on experience with SIEM platforms, vulnerability management, penetration testing, and incident response.
- Strong understanding of application security, API security, secure SDLC, and OWASP Top 10.
- Excellent communication skills with experience supporting audits, security documentation, and cross-functional collaboration.
- Professional certifications such as CISSP, CISM, or CEH are preferred.
- Awareness or knowledge of IT security best practices as defined by ISO/SOC or similar.
In addition to a competitive long-term total compensation package with salary and performance-based bonus, we have a reward philosophy that goes beyond compensation.
- Be part of a remote-first organization where flexibility is embraced.
- Work and learn alongside talented engineers and technology leaders.
- Explore opportunities to learn and grow through technical and non-technical training programs.
- Gain global exposure by working on products with international teams and clients
- Attend virtual and in-person international technology conferences to expand your knowledge and network.
- Exposure to work in an IT environment that adheres to rigorous security and compliance standards defined by ISO/ SOC.
Skills Required
- 7+ years of experience in cybersecurity engineering or information security, preferably in SaaS, fintech, or cloud-based environments
- Strong experience with cloud security, preferably AWS, identity and access management, logging, monitoring, and security operations
- Experience with compliance frameworks such as NYDFS, ISO 27001, SOC 2, PCI DSS, or similar
- Hands-on experience with SIEM platforms, vulnerability management, penetration testing, and incident response
- Strong understanding of application security, API security, secure SDLC, and OWASP Top 10
- Excellent communication skills and experience supporting audits, security documentation, and cross-functional collaboration
- Professional certification such as CISSP, CISM, or CEH
- Knowledge of IT security best practices defined by ISO, SOC, or similar standards
What We Do
Aspire is a Jordan-based technology and software engineering services provider that helps clients across the MENA region, the United States, and Europe. Its offerings include digital consulting, cloud services, quality assurance, and technology solutions, with expertise supporting financial services, healthcare, e-commerce, media, publishing, and travel organizations. Aspire also delivers digital transformation services and develops local technology talent for global clients and partners.







