or apply directly on Halcyon's site. We never take the application ourselves.
Is this posting real?
- This role has been open
- 5 days Halcyon's roles stay open a median of 45 days
- Reposted
- No
- Salary listed
- Yes 100% of Halcyon's roles list one
- Ghost-job risk at Halcyon
- high 6 stale, 0 reposted of 10 open
- Hiring momentum
- 15 roles opened in the last 90 days ↑ up vs. the prior 90 days
- Last confirmed on the employer's board
- 2026-09-17
Measured from postings appearing on and disappearing from Halcyon's own greenhouse board since 2026-08-03. Full hiring picture for Halcyon.
About this role
As a Senior Information Security Specialist at Halcyon, you will enhance the company's cybersecurity and GRC programs by managing third-party risks, supporting compliance initiatives, and improving internal security processes. Your role involves coordinating security testing, developing policies, and preparing for incident responses, all while collaborating with various teams to ensure security measures are effectively implemented across the organization.
- benefits
- 4/5
- freshness
- 5/5
- career value
- 4/5
- role clarity
- 4/5
- pay transparency
- 5/5
Scored from the posting itself — how clearly the role is described, how much it says about pay and benefits, and how recently it was listed. Not a judgement of Halcyon as an employer.
What you need
- 5+ years of experience in information security, GRC, or IT risk management
- Strong understanding of cybersecurity concepts, controls, and risk frameworks
- Demonstrated experience with third-party risk management processes and tooling
- Proven ability to coordinate security testing and vulnerability management efforts
- Excellent communication, documentation, and cross-functional collaboration skills
- Ability to assess and implement technical and administrative controls across cloud and hybrid environments
Nice to have
- Hands-on participation in incident response or disaster recovery exercises
- Experience with compliance platforms (e.g., Drata, Vanta)
- Knowledge of security frameworks beyond SOC 2 and ISO 27001, such as NIST 800-53 or CIS Controls
- Familiarity with secure software development practices or DevSecOps principles
- Background in auditing or supporting third-party security assessments
What you get
- Comprehensive healthcare (medical, dental, and vision) with premiums paid in full for employees and dependents
- Short and long-term disability coverage, basic life and AD&D insurance plans
- Medical and dependent care FSA options
- 401k plan with a generous employer contribution
- Flexible PTO policy
- Parental leave
Worth weighing
- No specific mention of remote work challenges or team dynamics in a fully distributed environment
- Salary range provided, but actual compensation may vary based on multiple factors
- Benefits subject to change at the company's discretion
Summarised from Halcyon's posting. Read the full original.
Listed by Halcyon on their greenhouse job board, last confirmed open on 2026-09-17. PitchMeAI is not the employer.
More roles at Halcyon
- Senior Deal Desk LeadRemote, US
- Enterprise Account Executive, SoutheastRemote, US