Source Job

$92,400–$113,400/yr
UK

  • Deliver third-party security and supplier assurance, assessing risks and translating findings into actionable recommendations.
  • Lead security assurance activities, including control testing, PCI DSS assessments, and audits, driving remediation to completion.
  • Strengthen governance by improving security policies and procedures, and support teams with security risk guidance and innovative solutions.

PCI DSS ISO 27001 Stakeholder Management

20 jobs similar to Senior Security Analyst

Jobs ranked by similarity.

$115,000–$180,000/yr
US

  • Conduct third-party security assessments and evaluate vendor security controls to manage risk.
  • Build and maintain automation using Python and agentic coding tools to replace manual GRC workflows.
  • Partner with cross-functional teams including Procurement, Legal, Engineering, and Compliance on risk-informed decisions.

Affirm is a financial technology company that reinvents credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without hidden fees. It is a remote-first company with a culture focused on innovation and engineering-driven security.

$73,730–$110,230/yr
Canada

  • Conduct third-party security assessments, reviewing vendor questionnaires and evaluating security controls.
  • Build and maintain automation using Python and agentic coding tools to reduce manual GRC workflows.
  • Partner with Procurement, Legal, Engineering, and other teams on risk reviews and risk-informed decisions.

Affirm is a financial technology company that offers buy now, pay later services. The company values security as critical to its success and has a culture focused on engineering-driven risk management.

Global Unlimited PTO

  • Own and mature the compliance framework, including continuous controls monitoring, security awareness, and audit coordination.
  • Automate GRC processes using compliance platforms and AI tooling for evidence collection and risk management.
  • Develop policies, manage third-party risk, and scale customer security assurance end-to-end.

Monarch is an all-in-one personal finance platform that simplifies finances. Since 2021, they have become the top-recommended app, with a fully remote, AI-driven team focused on building a product people love.

$90,678–$114,300/yr
UK

  • Delivering assurance reviews across key fraud regulations, processes, and controls to manage risks effectively.
  • Providing clear, actionable feedback that strengthens the control environment and supports fair customer outcomes.
  • Producing high-quality, data-led reports and recommendations for stakeholders across the business.

Monzo is a digital bank on a mission to make money work for everyone, offering personal and business accounts, savings, investments, and more. It has a strong customer focus and a culture of innovation and inclusion, with a long history of creating magical customer experiences.

$75,565–$102,235/yr
UK

  • Coordinate day-to-day operational resilience activities, including identifying Important Business Services and mapping dependencies across people, processes, technology, and third parties.
  • Monitor impact tolerances, collect metrics, and flag potential breaches to stakeholders, while supporting scenario tests for severe but plausible disruptions.
  • Support ICAAP inputs, business continuity planning, and governance committees with data-driven resilience updates.

Monzo is a UK digital bank on a mission to make money work for everyone, offering personal and business accounts, savings, investments, and pensions. The company is known for its award-winning customer service and inclusive culture, with a focus on creating magical moments for customers.

Europe

  • Act as Information Security Officer for FinTech, supporting ISO 27001, SOCv2, and DORA implementation.
  • Coordinate security activities across teams, ensuring alignment with cyber security strategy and governance.
  • Track risks, gaps, and remediation, while preparing updates for security leadership.

Coinspaid Dev is the engineering brand behind the technology and infrastructure built within Coinspaid. With over 120 engineers and 11 years of industry experience, the team builds distributed systems and blockchain infrastructure across more than 20 blockchain networks.

Global

  • Lead and expand the security function across application security, security compliance, infrastructure & cloud security, and business application security.
  • Build and run the AppSec program with AI-assisted code review and integrate security into CI/CD pipelines.
  • Own ISO 27001 and SOC 2 certification, manage audits, and secure cloud and business applications.

Constructor provides an all-in-one platform for education and research using machine intelligence and data science to address educational challenges like access inequality and low engagement. The company is led by a gender-balanced board and fosters an inclusive culture, though employee size is not specified.

$115,000–$150,000/yr

  • Manage day-to-day security operational availability and supportability of a 24x7x365 infrastructure.
  • Make recommendations on enhancements to security hardware, software, and tools, and perform risk analysis.
  • Configure, implement, monitor, and support security software/systems including firewalls, VPNs, IDS/IPS, DLP, etc.

eMoney Advisor is a wealth management system that offers transparency, security, mobile access, and superior organization. We serve more than 109,000 financial professionals and support over 6 million end clients, fostering a culture that values diversity and inclusion.

South Africa

  • Design, implement, and evolve security operations practices, controls, and tools across a globally distributed environment.
  • Identify, investigate, and contain sophisticated threats, guiding remediation and improving security assurance.
  • Influence engineering teams, contribute to threat intelligence, and share security expertise with the broader community.

Our partner company is a global technology organization focused on strengthening critical infrastructure and open-source ecosystems. They operate a remote-first environment with a distributed team, emphasizing autonomy, continuous learning, and high technical standards.

$128,270–$189,230/yr
UK

  • Lead and coordinate second-line regulatory compliance and privacy oversight activities for the UK entity, serving as the operational lead for UK privacy compliance and Data Protection Officer.
  • Translate legal and regulatory requirements into compliance standards, governance routines, and oversight expectations for first-line stakeholders.
  • Prepare management reporting, governance materials, and issue summaries, and support audits and regulatory enquiries.

Affirm is reinventing credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without any hidden fees or compounding interest. They are a remote-first company with a focus on inclusive culture and competitive benefits.

UK Ireland

  • Lead complex incident response investigations end-to-end with minimal supervision.
  • Perform alert triage, phishing investigations, endpoint forensics, and data exfiltration analysis.
  • Mentor junior analysts and drive improvements to security processes.

Version 1 is a technology and transformation solutions provider trusted by global brands. With over 3,300 employees and €350m revenue, it has been recognized as a Great Place to Work for over a decade.

Europe 4w PTO

  • Lead and develop the Information Security GRC strategy, roadmap, operating model, and governance cadence.
  • Coordinate SOC 2, DORA/CySEC-related assurance, internal and external audits, and regulatory requests.
  • Build, develop, and manage the GRC team and improve GRC efficiency through automation and reusable evidence.

JustMarkets is an international FinTech company. It is a growing organization with a focus on information security and compliance.

$100,000–$110,000/yr
US

  • Lead holistic risk assessments for high-net-worth families, corporations, and non-profits.
  • Design and manage open-source monitoring plans to discover threats against executives and assets.
  • Provide ad hoc security and risk advisory on digital footprint and security best practices.

Concentric is a risk consultancy specializing in strategic security and intelligence services for private clients and corporations globally. The company is a growing team of elite professionals from military, government, and intelligence backgrounds, committed to integrity, collaboration, and excellence.

$80,208–$83,372/yr
Poland

  • Lead the design, implementation, and maintenance of Hyland's enterprise ISO governance and certification program across multiple certifications, business units, and regions.
  • Drive strategic expansion of ISO scope, including advanced certifications like TISAX and C5, and establish governance models and control ownership across teams.
  • Measure and report ISO program health through metrics, dashboards, and reporting, while providing leadership and mentorship to compliance specialists.

Hyland is the pioneer of the Content Innovation Cloud, delivering enterprise intelligence through solutions that unlock actionable insights and drive automation. Trusted by thousands of organizations worldwide, including many Fortune 100 companies, Hyland has nearly 4,000 employees and fosters an employee-centric, inclusive culture.

UK

  • Own the strategy and roadmap for fraud prevention, risk management, and account security across account creation, authentication, checkout, and payments.
  • Use data-driven decision-making to balance conversion, fraud losses, customer experience, and compliance for maximum business impact.
  • Lead cross-functional initiatives from discovery through launch, tracking metrics like fraud rates, chargebacks, and dispute win rates.

Our partner is a global, distributed product organization focused on building safer, trusted commerce experiences. They operate in a high-volume transactional environment with cross-functional teams across engineering, data, finance, and risk operations.

US

  • Lead the development and implementation of security strategies, policies, and procedures.
  • Architect secure systems and collaborate with engineering teams to integrate security throughout the software development lifecycle.
  • Conduct risk assessments, incident response, and mentor junior engineers to promote security awareness.

Gemini is a global crypto and Web3 platform founded in 2014, offering secure crypto products and services to individuals and institutions in over 70 countries. The company is publicly traded with a mission to bridge traditional finance with the emerging cryptoeconomy, fostering a diverse team that prioritizes trust and security.

Europe

  • Independently plan and conduct IT and cybersecurity risk assessments across European laboratories and IT environments.
  • Assess technical and organizational controls covering network security, IAM, endpoint security, cloud, and IT resilience.
  • Translate technical findings into clear business risks and produce high-quality reports for management.

Eurofins Scientific is an international life sciences company providing analytical testing services to make life safer and healthier. The company has grown to over 63,000 staff across a decentralized network of 950 laboratories in 60 countries, committed to diversity and sustainability.

  • Own end-to-end vulnerability lifecycle, attack surface management, and cloud security posture across AWS, Azure, and OCI.
  • Operate CTEM phases, consolidate exposure data into prioritized views, and track KPIs for stakeholder reporting.
  • Embed security into SDLC, support penetration testing, and translate technical risk clearly for business audiences.

Version 1 is a trusted technology and transformation solutions provider with partnerships including Microsoft, AWS, and Oracle. We're an award-winning, values-driven employer of 3,300+ people and a Great Place to Work in the UK and Ireland.

$200,000–$245,000/yr
US

  • Own the overall security posture, including policy, standards, and risk framework.
  • Manage ISO 27001, SOC 2, FedRAMP, and CMMC compliance programs.
  • Lead incident response, vulnerability management, and customer security assurance.

RapidFort is a cybersecurity company that helps organizations secure and optimize their software supply chain and containerized environments. As a fast-growing startup, we foster a culture of ownership and direct communication, where every team member contributes to our mission of securing cloud-native applications for regulated industries.

$115,336–$159,286/yr
US

  • Lead coordination and implementation of a comprehensive information security program, including policies, processes, and technical controls.
  • Assess security threats, evaluate emerging technologies, and develop countermeasures to protect sensitive systems and data.
  • Collaborate across teams to translate risks into practical strategies and ensure compliance with security regulations and privacy laws.

This organization protects critical technology and information systems across internal IT, e-commerce, web, and cloud environments in the healthcare sector. It fosters a mission-driven, inclusive culture with employee resource groups and career development programs.