The Information Security Analyst plays a key role in safeguarding Porch’s digital assets and reputation against security breaches, cyber-attacks, and unauthorized access, ensuring the integrity, confidentiality, and availability of Porch Group Information Systems. As a Security Analyst, you will be responsible for maintaining and advancing security measures to protect Porch’s cloud workloads, identities, networks, endpoints, and data.
Job listings
The Director, Information Security will provide both strategic input and hands-on technical acumen across all areas of Suzy’s security program — including endpoint protection, identity and access management, data loss prevention, cloud security, and compliance implementation. This role requires a hybrid mindset: someone who can architect and manage enterprise security infrastructure while also mentoring a growing team of engineers and analysts to operationalize best practices.
As a Senior Security Analyst, Vulnerability Management at Vanta, you will take ownership of identifying, triaging, and tracking vulnerabilities across our systems, with a focus on maintaining compliance with FedRAMP’s strict continuous monitoring (ConMon) and POA&M reporting requirements. You'll partner closely with engineering, compliance, and cloud infrastructure teams to ensure we manage vulnerabilities efficiently and transparently.
We’re seeking a Security Engineer to lead security, compliance, and Authority to Operate (ATO) activities for mission-critical federal health platforms. In this role, you’ll ensure that systems are secure, accredited, and aligned with VA and federal standards—balancing compliance with modern engineering practices to deliver reliable, secure services for millions of users.
Serve as a senior technical and strategic resource within our newly created Data Security Consulting Practice and lead client engagements focused on designing and implementing enterprise data security strategies, architectures, and tooling integrations. This role blends strategic advisory responsibilities with deep technical expertise, guiding clients through the development of secure data architectures, platform enablement, and integration of leading data protection and security solutions.
This role is essential for maintaining and maturing our information security risk and technology compliance programs, including SOC 2 and ISO 27001.
Operate security controls, drive evidence collection and continuously monitor, and partner with product, engineering, and business teams to reduce risk while enabling speed. Lead SOC 2 Type II audit cycle end‑to‑end, including auditor coordination, population requests, and walkthroughs. Roll out a vendor risk management workflow integrated with procurement and Legal.
Looking for an experienced Enterprise & Application Security Architect to strengthen our global security architecture. You’ll design and guide secure application frameworks, protect our in-house systems and code, and ensure TD SYNNEX’s technology landscape remains robust, compliant, and future-ready. You’ll work with global teams (US, Europe, China), integrating security into every stage of the software development lifecycle (SDLC) and driving DevSecOps best practices across the enterprise.
The Snr. Security Awareness Content Specialist is a key contributor in helping sales and customer success managers position KnowBe4’s security awareness training library, advising on best practices for implementing large-scale learning plans. This role will develop documentation and assist in answering questions as well as get on calls with customers to assist with questions, facilitate sales, and drive usage.
Lead internal tech development and cybersecurity initiatives. Solve complex problems, architect reliable systems, and ensure the security and stability of digital platforms that support thousands of users worldwide. Take full ownership of Doneverse’s digital infrastructure — from development to security.