Careers

We are a bilingual cybersecurity practice serving healthcare, government, and regulated organizations in Puerto Rico. If you want client-facing work with real ownership rather than a ticket queue, we would like to hear from you.

Hybrid · Puerto Rico Bilingual EN / ES Healthcare · Government · Regulated
Recent Roles

Recent openings

Applications for both roles closed on September 15, 2026. We keep resumes on file for future openings — send yours to jobs@cybernestsec.com — full details for each role are on LinkedIn.

Closed

Jr. Security Engineer

San Juan, PR · Hybrid Contract Entry level

Hands-on assessment and monitoring work across application, network, and cloud environments, supporting client engagements from testing through remediation.

What you will do

  • Security assessments and vulnerability reviews across application, network, and cloud environments
  • Security monitoring, documenting findings, and supporting remediation
  • Maintaining security policies and contributing to incident response
  • Collaborating on governance, compliance readiness, and risk assessment projects

What we look for

  • Foundational cybersecurity knowledge, with security engineering experience or coursework
  • Network security (firewalls, VPNs, intrusion detection) and application security (OWASP Top 10, secure coding)
  • Windows and Linux security, with common tooling such as Nmap, Burp Suite, and Metasploit
  • Bachelor's degree in computer science, information security, or equivalent experience
  • Strong technical documentation and communication skills

Nice to have

  • Progress toward Security+, CEH, or eJPT
  • Familiarity with NIST CSF, HIPAA, or PCI DSS, and exposure to red teaming or penetration testing
Applications closed September 15, 2026
Closed

Governance and Risk Consultant

Puerto Rico · Hybrid 3+ years of experience Bilingual required

For organizations where nobody owns the risk and the policies do not match how the business actually operates — this role builds the governance that closes that gap.

What you will do

  • Cybersecurity risk assessments and risk register development
  • HIPAA Security Rule analysis and safeguard evaluation
  • NIST CSF 2.0 and NIST SP 800-53 control assessments
  • Security policies, standards, and procedures aligned to actual business operations
  • Gap analysis, remediation roadmaps, and third-party and vendor risk review
  • Audit readiness, evidence collection, and executive and board-level reporting

What we look for

  • 3+ years in cybersecurity governance, risk, compliance, or IT audit
  • Working knowledge of NIST frameworks and the HIPAA Security Rule
  • Strong stakeholder interviewing and documentation skills
  • Excellent writing for regulatory and board audiences, translating technical risk into business language
  • Fluent English and Spanish — required for client-facing work

Preferred certifications

CISACRISCCISMISO 27001 LA
Applications closed September 15, 2026
Always Open

We keep recruiting

No role that fits? Send your resume anyway.

We hire across security leadership and governance, GRC and IT controls, offensive security, cloud and security operations, cybersecurity engineering, network architecture, business analysis, and AI governance. Roles open as engagements grow, and we keep strong resumes on file. Tell us what you do and where you want to take it.

Send your resume

All applications go to jobs@cybernestsec.com. Resumes are reviewed by CyberNest Secure and are not shared outside the firm without your consent. See our Legal & Policies page for how we handle personal information.

Questions before you apply?

Email us and a practitioner — not a recruiter — will answer.

jobs@cybernestsec.com