A CompTIA Security+ Certified Analyst position just opened, fully remote, and it pays $123,000 a year. If you already hold an active Security+ certification and you are ready to put it to work on real projects instead of practice exams, this is worth five minutes of your attention.
This is not an entry-level credentialing job. The organization hiring for this role expects someone who has already spent time in the field applying Security+ knowledge to actual operational problems, rather than studying for the next exam. You will be trusted with ownership over a specialty area from week one, so the ramp-up period is short and the expectations are immediate.
You will use your Security+ background to plan, run, and oversee initiatives inside your specialty area, whatever shape that takes at the company that hires you. Expect a mix of hands-on coordination and paperwork: pulling stakeholders together, setting timelines, then checking those timelines against what actually happened. When a project stalls, you are the one flagging it before it becomes a bigger problem. On a typical week you might spend Monday reviewing a risk item flagged the previous Friday, then spend the afternoon on a call with three department leads trying to get a policy update signed off before a compliance deadline.
You need three years of hands-on experience in your specialty area, a bachelor's degree, and a Security+ certification you have kept current. Employers reviewing applications for this role are not looking for theoretical familiarity. They want someone who has already sat through an incident review, an audit, or a risk assessment, and who knows what solid documentation looks like once someone else is reading it under pressure.
Specialty area covers a lot of ground in a role like this. It might mean vendor risk assessments, endpoint security operations, cloud configuration reviews, or internal policy management, depending on which team ends up hiring you. What stays constant is the certification requirement and the expectation that you can carry a project from a kickoff conversation to a documented close-out without someone walking you through every step.
Nice to have, though not required: prior exposure to a compliance framework such as NIST or ISO 27001, comfort inside a GRC or ticketing platform used to track findings, and a track record of running cross-functional projects with minimal oversight. Candidates who bring one or two of these usually move faster through the early weeks.
The role pays $123,000 a year and is structured as full-time work. This listing comes through Remoteroles, and the benefits attached to it are typical of full-time credentialed roles rather than the thinner packages you sometimes see with contract certification work. Here is what is included:
That last point matters more than it looks. Security+ renewal requires continuing education credits, and covering that cost is a real signal that the employer wants to keep you certified and current, not treat the credential as a one-time checkbox.
Take a vendor risk review as a concrete example of how the role plays out. A new supplier fails one item on a security questionnaire, nothing catastrophic on its own, but the kind of gap that needs a decision. You gather the relevant stakeholders, weigh the risk against the value of the vendor relationship, and document a mitigation plan that satisfies both the business team pushing for the contract and the compliance reviewers who will read the file a year later. That single write-up, done well, is a fair snapshot of the whole job.
The strongest candidates are usually equally comfortable in a spreadsheet and in a stakeholder meeting. Security+ gives you the technical grounding, but this job leans heavily on coordination. You are translating security priorities into language a finance director or an operations manager can act on, then translating their pushback back into something your security team can work with. If that kind of back-and-forth translation appeals to you more than pure technical deep-dives, this role will suit you.
Because the position is remote and open worldwide, teams built around it tend to work asynchronously more often than not. Meetings get scheduled around overlapping hours rather than one time zone, and a lot of coordination happens in writing, through shared documents and status updates, before it ever reaches a live call.
This kind of role also tends to be a stepping stone. Analysts who spend a few years managing a full specialty area under a live Security+ certification often move into broader risk or compliance leadership afterward, partly because the job forces you to get comfortable owning outcomes rather than just tasks.
Companies open to hiring for this role in a fully remote, worldwide setup span industries: healthcare groups protecting patient data, financial firms managing third-party risk, and mid-size tech companies without a dedicated security department large enough to split the work across five specialists. The specialty area shifts with the employer, but the underlying rhythm of the job, plan, coordinate, document, repeat, stays consistent across all of them.
Submit a resume that spells out what you have actually managed, not just what you are certified to manage, along with confirmation that your Security+ certification is current. Applications are reviewed on a rolling basis. If your background matches, expect a first conversation focused on a real project you have run rather than a rundown of exam topics.