Security Analyst managing security and compliance programs for fintech startup. Ensuring policies and evidence stay organized and collaborate with Head of Security for execution.
Responsibilities
Triage and manage incoming security requests from entire company.
Own and manage the full vendor security assessment lifecycle (new vendors and annual reviews).
Own and build device management and provisioning process.
Troubleshoot and enhance in-office IT, wifi and physical security.
Partner with product/engineering teams to clarify which controls apply to new features, systems, or architectural changes.
Read python code to understand vulnerabilities and help validate fixes and make small bug fixes or configuration updates when appropriate.
Maintain organized, audit-ready repositories of policies, SOC reports, and control documentation.
Assist with security questionnaires from enterprise customers.
Coordinate evidence collection and organize materials for quarterly/annual audits.
Update and refine security policies to reflect current controls and organizational practices.
Track remediation of security findings from vulnerability scans, pentests, and audits.
Requirements
1-4 years of experience in GRC, security compliance, IT audit or security operations.
Familiarity with SOC 2, PCI DSS, ISO 27001, or similar security frameworks.
Ability to read and understand python code to validate security fixes.
Strong organizational and documentation skills.
Ability to own and prioritize multiple tasks open at once.
Experience with vendor assessments, access reviews, evidence collection, or audit support.
Comfort working with technical teams, asking clarifying questions, and escalating when need.
Nice to have: Payments experience.
Nice to have: Knowledge of penetration testing workflows.
Nice to have: ability to read node.
Benefits
100% of Medical, Dental and Vision premium coverage for yourself and dependents.
Enjoy regular team lunches at our San Francisco office, fostering collaboration and connection over great food.
A fun and caring environment that prioritizes transparency, growth, and ownership.
A talented, diverse, high-achieving, and humble team with diverse backgrounds and viewpoints.
Level 1 Cyber Security Analyst analyzing and escalating cyber - security alerts in log aggregation tools. Engaging in incident follow - up and basic automation in a supportive team environment.
Analista de Segurança, Saúde e Meio Ambiente na ANDRITZ gerenciando indicadores e programas de HSE. Engajando - se em auditorias e treinamentos para garantir a conformidade e segurança.
Cybersecurity Analyst with Incident Responder experience for SOC Team at NTT DATA Romania. Monitor and respond to security alerts while collaborating with clients.
Cyber Security Analyst Intern gaining hands - on experience in information security through guided participation and real - world tools. The role is part - time with remote and hybrid options from U.S. locations.
Application Security Analyst supporting vulnerability management program at Accurate Background. Focusing on developer communication and tooling operations for application security insights.
Security Compliance Analyst supporting IT Security compliance and risk management initiatives at Acosta Group. Engaging with cross - functional teams to ensure adherence to regulatory and security frameworks.
Senior Cyber Security Analyst at Peach Payments responsible for facilitating security operations in Cape Town hub. Ensuring compliance and supporting security infrastructure for digital payments across Africa.
Information Security Analyst managing information security processes at Keyloop. Ensuring compliance with industry standards and collaborating with teams for vulnerability management.
Cyber Threat Intelligence Analyst supporting IT Security team in identifying and mitigating cyber threats. Ensuring network security and protecting company secrets in high - tech environment.