Orgvue

organizational design and planning platform

InformationSecurityAnalyst

London, United Kingdom; Philadelphia, Pennsylvania, United States; The Hague, Netherlands; Toronto, Ontario, Canada; Sydney, New South Wales, Australia FULL TIME
The Brief

“Information Security Analyst at Orgvue. Skills: Information Security, Compliance, Risk Management, SaaS Security. Monitor security events. Support incident response”

Industry & Context.

organizational design and planning platform

What They're Looking For.

Must Have

Good understanding of ISO 27001 / ISO 27002 and practical ISMS implementation, Familiarity with SOC 2, CSA STAR, and common control frameworks, Good knowledge of cloud security (AWS and/or Azure), Understanding of identity and access management, encryption, logging/monitoring, and least privilege principles, Awareness of modern SaaS security risks (e. g. multi-tenancy, data isolation, API security), Familiarity with secure software development and OWASP Top 10, Understanding of DevOps, CI/CD pipelines, and infrastructure-as-code environments, Experience working with vulnerability management, scanning tools, or SIEM platforms (e. g. Datadog or equivalent), Experience supporting audits or compliance programmes (ISO 27001, SOC 2, etc. ), Experience conducting risk assessments and control evaluations, Ability to translate technical controls into clear, customer-facing language, 2–4 years’ experience in an information security or related role, Experience in a SaaS or cloud-first environment preferred, Experience working cross-functionally with engineering and product teams, Exposure to customer-facing security or compliance activities is highly valuable

Nice to Have

Exposure to AI governance, data ethics, or emerging AI regulatory requirements, Experience with Trust Centers or customer assurance functions, Cloud certifications (AWS / Azure)

What You'll Do.

Monitor security events

Support incident response

Improve monitoring capabilities

Operate vulnerability management

Track remediation activities

Conduct risk assessments

Support ISMS operation

Assist audit preparation

Produce security metrics

Embed security practices

Support secure development

Respond to questionnaires

Maintain security documentation

Articulate security controls

Support data protection

Contribute to AI practices

Deliver security awareness

Promote security culture

How You'll Work.

Team & Collaboration

Work with engineering teams; Work with infrastructure teams; Work cross-functionally with engineering and product teams

Communication Scope

Translate technical controls into clear, customer-facing language; Articulate Orgvue’s security controls and practices to non-technical audiences

Free ATS check

Applying for this Information Security Analyst role?

Most applicants get filtered before a human reads their resume. See if yours makes the cut.

ANONYMOUS · UNFILTERED

What do employees actually say about Orgvue?

Real rants from real employees. Read before you apply.

Read Company Rants →