Senior Security Risk Analyst

Klaviyo • Boston, MA

Company

Klaviyo

Location

Boston, MA

Type

Full Time

Job Description

At Klaviyo, we value the unique backgrounds, experiences and perspectives each Klaviyo (we call ourselves Klaviyos) brings to our workplace each and every day. We believe everyone deserves a fair shot at success and appreciate the experiences each person brings beyond the traditional job requirements. If you’re a close but not exact match with the description, we hope you’ll still consider applying. Want to learn more about life at Klaviyo? Visit careers.klaviyo.com to see how we empower creators to own their own destiny.

Klaviyo is building a world where creators are empowered to own their destiny. In support of this, our Security Risk & Trust team is focused on empowering our fellow Klaviyos to securely deliver value to and foster trust with our customers. We do this by building and leading highly efficient and effective security governance, risk management, compliance, and trust programs.

We’re seeking a highly motivated and collaborative Senior Security Risk Analyst who will help us accelerate our evolution in these key programs. Partnering closely with our Engineering, IT, Security, Leadership, and other teams, you’ll build tools and processes that foster a culture of disciplined risk decision making, informed by an evidence-based understanding of our assets, weaknesses, threats, and safeguards. You will help evolve our risk management practices to be transparent and centered around quantitative risk models. With a knack for communicating nuanced security topics to technical and non-technical audiences, you’ll help grow security consciousness across all of Klaviyo to the betterment of our customers.


What you’ll be doing

  • Enhance existing risk management tools and processes to create a data driven, seamless, and excellent user experience for risk / asset owners
  • Consult with partner teams to proactively identify potential risks and co-create controls and mitigation plans with them
  • Streamline and automate third-party risk assessments, speeding up time-to-completion and enabling continuous re-assessments at scale 
  • Mentor junior team members to help them reach their full potential and achieve their development goals
  • Contribute to Risk & Trust operations, such as performing third-party risk assessments, user access reviews, facilitating internal and external audits (SOC 2 Type II, ISO 27001, SOX ITGCs, etc.), continuously monitoring controls, responding to customer security questionnaires, fulfilling employees’ security service requests, etc.
    • Then build and implement tooling that automates repetitive toil to free up our team’s time

We’d love to hear from you if you have:

  • Experience designing, building, or implementing security controls, especially in AWS
  • Experience doing security risk assessments, architecture reviews, or threat modeling
  • Knowledge of security best practices for SaaS, IaaS, IAM, networks, or containers
  • Excellent ability to plan, prioritize, and execute work cross functionally and on time
  • Proficiency discussing complex, nuanced topics with technical & non-technical audiences alike
  • Strong alignment with Klaviyo’s core values

Bonus points if you have any of the following:

  • Experience with data query languages, writing code, or integrating with web APIs
  • Experience implementing FAIR or cyber risk quantification (CRQ) processes or tools
  • Experience with business intelligence or data analytics platforms (Tableau, Domo, etc.)

Get to Know Klaviyo

Klaviyo is a world-leading marketing automation platform dedicated to accelerating revenue and customer connection for online businesses. Klaviyo makes it easy to store, access, analyze and use transactional and behavioral data to power highly-targeted customer and prospect communications. The company's hybrid customer-data and marketing-platform model allows companies to grow by fostering direct relationships with customers, without giving up their valuable data to popular big-tech ad platforms. Over 265,000 innovative companies like Unilever, Custom Ink, Living Proof and Huckberry sell more with Klaviyo. Learn more at www.klaviyo.com.

If you are a California, Colorado, Rhode Island, Washington, New York City, or Jersey City resident and this role is a remote role, you can receive additional information about the compensation and benefits for this role, which we will provide upon request. Requests can be submitted here. Additional information regarding benefits can be found at klaviyorewards.com.

Klaviyo is committed to diversity and to a policy of equal employment opportunity and non-discrimination. We do not discriminate on the basis of race, color, religion, national origin, age, sex, marital status, ancestry, physical or mental disability, veteran status, gender identity, sexual orientation or any other characteristic protected by applicable law.

Apply Now

Date Posted

03/04/2023

Views

0

Back to Job Listings ❤️Add To Job List Company Info View Company Reviews
Positive
Subjectivity Score: 0.9

Similar Jobs

Senior Network Engineer - InterSystems

Views in the last 30 days - 0

InterSystems is seeking a Senior Network Engineer to support the deployment and maintenance of network infrastructure for their HealthShare and IRIS p...

View Details

Platform Owner - Network Reliability - Takeda

Views in the last 30 days - 0

Takeda is seeking a Platform Owner for Network Reliability Engineering to join their Global Network Platform team The role involves developing framewo...

View Details

Senior Software Engineer (Full Stack, Platform) - WHOOP

Views in the last 30 days - 0

WHOOP is seeking a Senior Software Engineer to join their Platform team in Boston MA The role involves driving largescale architecture projects collab...

View Details

Senior Sensor Algorithm Engineer - WHOOP

Views in the last 30 days - 0

WHOOP is seeking a Senior Sensor Algorithms Engineer to develop algorithms that transform raw sensor data into meaningful physiological insights The r...

View Details

SOC Analyst - InterSystems

Views in the last 30 days - 0

InterSystems is seeking a security operations analyst to join their expanding SOC and security team The role involves enhancing analytic capabilities ...

View Details

Senior Technology Governance Analyst - Geode Capital Management

Views in the last 30 days - 0

Geode is hiring for a Senior Technology Governance Analyst position in Boston Massachusetts The role involves developing and implementing IT governanc...

View Details