Benevity is looking for a Security Analyst to join our Information Security team in a generalist role spanning security operations, application security, and security enablement. In this position, you will own the triage and investigation of security alerts, partner with engineering teams to fix vulnerabilities, and help build resources that strengthen our overall defense. Working independently on day-to-day operations while collaborating with senior analysts, you will leverage AI tools to accelerate workflows while exploring AI-related product risks. We are seeking a curious, analytical, and continuous learner who thrives on solving puzzles and empowering others to build a safer digital world.
What you'll do- Triage, validate, and investigate alerts across core security tooling (EDR, SIEM, IDS/IPS, CSPM, MDR) to establish scope and determine escalation
- Maintain clear documentation, write incident response playbooks, and participate in an on-call rotation
- Conduct threat intelligence research and contribute to post-incident reviews to drive preventive control improvements
- Analyze SAST, SCA, and DAST findings, providing engineering teams with actionable exploitation context for remediation
- Assist with threat modeling and architectural reviews to catch security risks early in product design
- Leverage AI tools for faster triage and investigation while practicing safe data handling and validating outputs
- Identify AI-specific product risks, including prompt injection, insecure tool use, and third-party model exposure
- Track vulnerability remediation lifecycles, monitor SLA compliance, and report on recurring security patterns
- Partner with engineering and fraud teams on joint investigations, security enablement content, and self-serve resources
- Track and report on key security metrics, trends, and process developments
What you'll bring- 3+ years of experience in security operations, information security, or a closely related technical role
- Hands-on experience with security tooling across categories such as EDR, SIEM, CSPM, WAF, cloud-native logging, and SAST or SCA
- Solid working knowledge of networking, operating systems, and cloud fundamentals
- Practical experience using AI tooling in a technical context with a thoughtful view on its strengths and limitations
- Scripting proficiency in Python, PowerShell, or Bash, paired with an interest in automating repetitive tasks
- Familiarity with security frameworks such as MITRE ATT&CK and NIST CSF
- Strong analytical and problem-solving skills with a puzzle-solving mindset and a drive for verifiable answers
- Clear, inclusive written and verbal communication skills, capable of translating technical concepts for non-specialists
- A curious, continuous-learning approach and a collaborative desire to support teammates
- Experience in SaaS, cloud-native, containerized, or API-driven environments, or relevant certifications (e.g., Security+, CySA+, GCIH)