Orgvue
organizational design and planning platform
InformationSecurityAnalyst
“Information Security Analyst at Orgvue. Skills: Information Security, Compliance, Risk Management, SaaS Security. Monitor security events. Support incident response”
Industry & Context.
What They're Looking For.
Must Have
Good understanding of ISO 27001 / ISO 27002 and practical ISMS implementation, Familiarity with SOC 2, CSA STAR, and common control frameworks, Good knowledge of cloud security (AWS and/or Azure), Understanding of identity and access management, encryption, logging/monitoring, and least privilege principles, Awareness of modern SaaS security risks (e. g. multi-tenancy, data isolation, API security), Familiarity with secure software development and OWASP Top 10, Understanding of DevOps, CI/CD pipelines, and infrastructure-as-code environments, Experience working with vulnerability management, scanning tools, or SIEM platforms (e. g. Datadog or equivalent), Experience supporting audits or compliance programmes (ISO 27001, SOC 2, etc. ), Experience conducting risk assessments and control evaluations, Ability to translate technical controls into clear, customer-facing language, 2–4 years’ experience in an information security or related role, Experience in a SaaS or cloud-first environment preferred, Experience working cross-functionally with engineering and product teams, Exposure to customer-facing security or compliance activities is highly valuable
Nice to Have
Exposure to AI governance, data ethics, or emerging AI regulatory requirements, Experience with Trust Centers or customer assurance functions, Cloud certifications (AWS / Azure)
What You'll Do.
Monitor security events
Support incident response
Improve monitoring capabilities
Operate vulnerability management
Track remediation activities
Conduct risk assessments
Support ISMS operation
Assist audit preparation
Produce security metrics
Embed security practices
Support secure development
Respond to questionnaires
Maintain security documentation
Articulate security controls
Support data protection
Contribute to AI practices
Deliver security awareness
Promote security culture
How You'll Work.
Team & Collaboration
Work with engineering teams; Work with infrastructure teams; Work cross-functionally with engineering and product teams
Communication Scope
Translate technical controls into clear, customer-facing language; Articulate Orgvue’s security controls and practices to non-technical audiences
Applying for this Information Security Analyst role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
ANONYMOUS · UNFILTERED
What do employees actually say about Orgvue?
Real rants from real employees. Read before you apply.