The Opportunity:We're looking for a
Senior Security Analyst to strengthen our security operations, threat detection, and risk management program. This role reports into the Director of IT, Information & Security. You'll take the lead on incident response, vulnerability management, and security monitoring across our cloud, endpoint, and identity infrastructure, while mentoring junior analysts and driving continuous improvement of our security posture. This role is a strong fit for someone who thinks like an attacker, communicates like a partner, and enjoys turning alerts into action.
This is a
Full-Time Hybrid opportunity based in San Francisco, CA.
What you'll work on:Security Operations & Incident Response- Lead end-to-end incident response, threat hunting, and root cause analysis across SIEM, EDR (SentinelOne), and cloud security tooling.
- Develop and maintain incident response playbooks, runbooks, and tabletop exercises.
Vulnerability & Risk Management- Own the vulnerability management lifecycle, partnering with IT and Engineering to remediate scan, pen test, and audit findings.
- Maintain the risk register, conduct third-party/vendor risk assessments, and communicate technical risks to business stakeholders.
Identity, Endpoint & Compliance Oversight- Partner with IT to audit and enforce security controls across Okta (RBAC/MFA), Google Workspace (DLP/logs), JAMF, and SentinelOne.
- Drive evidence collection and remediation for compliance audits (SOC 2, ISO 27001, HIPAA, PCI DSS) while aligning policies with NIST CSF and CIS frameworks.
Security Engineering & Automation- Automate detection, response, and reporting workflows via SOAR, scripting, and APIs to improve alert quality and efficiency.
- Mentor team members and contribute to cross-functional security knowledge sharing.
AI Security & Governance- Establish guardrails and acceptable-use policies for enterprise AI tools (e.g., GenAI, Claude), mitigating shadow AI, data leakage, and third-party vendor risks alongside IT, Legal, and Compliance.
- Partner with Product and Engineering to assess and remediate AI/LLM-specific vulnerabilities, including prompt injection, model abuse, and data exposure.
- Pilot and evaluate AI-powered security capabilities (e.g., AI-assisted SIEM/EDR triage and anomaly detection) to boost response speed and operational efficiency.
What you'll have:- 8+ years of experience in security operations, leading incident response end-to-end from detection through remediation.
- Associate's or Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field, or equivalent practical experience
- Hands-on experience with SIEMs, EDR/XDR (e.g., SentinelOne), vulnerability scanners, cloud security, and core IAM concepts (SSO, MFA, RBAC).
- Working knowledge of security frameworks (SOC 2, ISO 27001, NIST, CIS) with strong analytical skills to translate technical risk to business stakeholders.
- Familiarity with emerging AI/LLM risks and an interest in evaluating AI capabilities for security use cases.
- Excellent communication skills with the ability to prioritize competing incidents and operate calmly under pressure.
Nice to have:- Hands-on experience with Okta, JAMF, or Google Workspace, alongside Infrastructure as Code (Terraform) for access/security policy management.
- Scripting experience (Python, Bash), SOAR exposure, and familiarity with CSPM tools or native cloud security platforms (AWS/GCP/Azure).
- Practical experience securing AI/ML pipelines and GenAI deployments, or operating AI-driven security tools.
- Relevant credentials such as CISSP, GCIH, GCIA, OSCP, or Security+.
Benefits:- Competitive compensation packages that reflect the value you bring. We reward our team for the impact of their work.
- Comprehensive health coverage that works for you. Choose from high-quality medical dental and vision options, including a $0 deductible PPO and a company-funded HSA, alongside employer-paid life and disability insurance.
- Generous paid time off. We provide policies that allow you to recharge along with 10 paid company holidays.
- Financial savings benefits to support your future. We support your financial well-being with HSA contributions, optional FSA and commuter benefits, and full coverage of all 401(k) account fees (employer match not currently offered).
- Paid parental leave to support your growing family. We provide up to 10 weeks of paid parental leave based on tenure, so you can focus on bonding and adjusting to life as your family grows.