Security Analyst
AuctaneAbout the role
About us
At Auctane, we are united by a passion to help businesses deliver — whatever their size, wherever they are, and however they operate. We make it possible for businesses to meet the ever-changing requirements of their industry and customer expectations. Auctane products enable hundreds of thousands of businesses to annually mail and ship billions of items — over $200 billion worth — to recipients around the globe.
The Auctane family of mailing and shipping software products includes ShipStation, Stamps.com, ShipStation API, Endicia, Metapack, GlobalPost, Packlink, and Return Rabbit. Our partners include Amazon, UPS, USPS, eBay, BigCommerce, Shopify, WooCommerce, and Walmart.
Our values
Win as One. Delight Customers. Deliver Great Outcomes.
About the role
The mission of this role is to be a key contributor to the day to day operational InfoSec management. The role will be responsible for leading the detection and response of cyber security threats/incidents, as well as managing the vulnerability management process.
This role will play a key part in shaping the processes and ways of working to best ensure Auctane identifies and responds to threats and cyber attacks.
The role sits within the InfoSec team which is part of the larger R&D Tech function who work at scale, pace and with the latest architecture patterns and tech. This entry-level role offers a great opportunity for individuals to build a career in cyber security.
This position is hybrid (3 days per week in office) and is located in Austin, Texas.
Travel Requirements: Up to 10% travel required.
About the team
We have a flat and open engineering culture where data, & evidence beats opinion and hierarchy, backed by honest and frank discussions. We passionately believe in forming autonomous, cross functional teams who are empowered to deliver our ambitious strategy.
What will you be doing?
- Working to review and enrich playbooks and see opportunities for automation efficiencies in our Security detection and response capabilities.
- Liaising with the Engineering teams on incident response, vulnerability management and remediation actions
- Responsible for providing technical expertise in the support of security incidents using a plethora of leading security tools, coupled with continuous learning and training
- Working with AWS & GCP Cloud-native security tooling such as GuardDuty, Security Hub, GCP Security Command Center to ensure a level of protection & monitoring of threats in Auctane Public Cloud environments.
- Following up on regular security reviews, vulnerability, risk assessments and audits utilising our CSMP tool Wiz and Endpoint vulnerability tool Crowdstrike.
- Building relationships with all staff to promote “Security by Design” throughout the Engineering Teams and wider business.
- Being part of the internal Infosec / cyber security incident process - investigate suspected attacks and help manage security incidents, including providing post-mortem analysis, identify causes, develop solutions and preventive measures
- Responding swiftly to new and emerging security threats and vulnerabilities, investigate suspected attacks and be an integral part of the Information security incident process
- Learning and training, to enhance knowledge of Security Orchestration and Automation.
What are we looking for?
- Previous experience working in an Incident Response style role
- 1+ year in a IT/Security Analyst role preferred but not required
- Comfortable building scripts and tools to automate tasks
- Knowledge of cloud security practices (AWS, GCP)
- Awareness of MITRE ATT&CK framework in a Detect and Respond environment
- Entry level Experience of security tooling and technologies, including:
- EDR (Crowdstrike)
- Email Protection (email - Abnormal)
- Google Workspace
- Identify Providers (OKTA)
- GCP/AWS native security (Guard Duty, Security Hub)
- Technical knowledge of vulnerabilities, threats, attack methods and infection vectors with Cloud Environments.
- Cloud Security Posture Management (CSPM) tool.
- Involvement in the Scoping and coordination of 3rd Party Pen Test
- Able to balance the demands of delivering high quality and demanding timescales.
- Hold yourself accountable to delivering on your commitments.
- Have a can-do attitude and demonstrate a passion for new technology and learning.
What will make you stand out?
- Knowledge of vulnerabilities, threats, attack methods and infection vectors with SDLC
- Experi
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s