Information Security Analyst

CongaBoston, MA
5hHybrid

About The Position

Conga is seeking an Information Security Analyst to help shape and maintain a robust information security program. In this role, you’ll work closely with stakeholders across the company to identify and remediate security issues, promote awareness, and ensure compliance with legal, regulatory, and customer requirements. You’ll be part of the Security & Compliance Team, but also operate independently, managing alerts, vulnerabilities, incident response, and risk assessments. Your day-to-day will involve hands-on security operations, cross-functional collaboration, and continuous improvement of security practices.

Requirements

  • Bachelor’s Degree in Computer Science, Cybersecurity, Engineering, or other relevant subject areas OR equivalent experience.
  • 3-4 years of experience in information security, preferably with a focus on IT and product security.
  • Foundational knowledge of cloud security principles (AWS, Azure, GCP), DevSecOps practices, and secure software development lifecycle (SDLC).
  • Hands-on experience with AI system architecture and endpoints, including model deployment and response mechanisms, paired with a strong foundation in AI governance, data protection, and mitigation of AI-related security risks.
  • Hands-on experience with application security and vulnerability management practices.
  • Foundational knowledge of at least one or more security/compliance frameworks such as ISO 27001, ISO 27701, SOC, PCI, HIPAA, etc.
  • Understanding of privacy frameworks such as GDPR, CCPA, CPRA, etc.
  • Strong communication and interpersonal skills. You’re not just comfortable engaging in collaborative discussions, but initiating them, too, communicating clearly and concisely while leveraging strong listening skills to gather accurate information and resolve issues efficiently.
  • Cross-Functional Collaboration. You know how to build strong relationships across Cloud Ops, Engineering and IT teams. teams. You communicate priorities and goals clearly, helping both technical and non-technical stakeholders stay aligned and moving in the same direction.
  • Detail oriented. Consistently ensures accuracy in security assessments, documentation, and incident response processes, minimizing risk and maintaining high standards of compliance.
  • Self‑starter. You take a proactive approach, independently identifying and addressing work‑related tasks to ensure continuous progress and timely delivery.

Nice To Haves

  • SaaS industry experience
  • CISSP or other security certifications

Responsibilities

  • managing alerts
  • vulnerabilities
  • incident response
  • risk assessments
  • hands-on security operations
  • cross-functional collaboration
  • continuous improvement of security practices

Benefits

  • flexible work options
  • medical and dental insurance
© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service