Jobs and Careers
ST
Information Security Analyst
StackAdaptUnited States, United StatesRemotefull_timeVerifiedPosted 10 Jun 2024
About the role
StackAdapt is a self-serve advertising platform that specializes in multi-channel solutions including native, display, video, connected TV, audio, in-game, and digital out-of-home ads. We empower hundreds of digitally-focused companies to deliver outcomes and exceptional campaign performance everyday. StackAdapt was founded with a vision to be more than an advertising platform, it’s a hub of innovation, imagination and creativity.
As an Information Security Analyst, you will play a vital role in keeping StackAdapt’s systems and information secure by ensuring that StackAdapt’s digital assets are protected from unauthorised access. You will be responsible for monitoring, analyzing, and responding to security events and incidents within the organization.
You will investigate and respond to security incidents, conduct root cause analysis, and implement corrective actions to prevent recurrence. In addition, you will gather, analyze, and disseminate threat intelligence to relevant stakeholders, ensuring the organization stays ahead of emerging threats.
You will collaborate with members of the Information Security Team and wider Engineering team for the investigation and resolution of information security events / incidents to ensure that these are managed in a timely and effective manner.
StackAdapt is a ‘Remote First’ company, therefore we are open to candidates located anywhere in North America for this position.
As an Information Security Analyst, you will play a vital role in keeping StackAdapt’s systems and information secure by ensuring that StackAdapt’s digital assets are protected from unauthorised access. You will be responsible for monitoring, analyzing, and responding to security events and incidents within the organization.
You will investigate and respond to security incidents, conduct root cause analysis, and implement corrective actions to prevent recurrence. In addition, you will gather, analyze, and disseminate threat intelligence to relevant stakeholders, ensuring the organization stays ahead of emerging threats.
You will collaborate with members of the Information Security Team and wider Engineering team for the investigation and resolution of information security events / incidents to ensure that these are managed in a timely and effective manner.
StackAdapt is a ‘Remote First’ company, therefore we are open to candidates located anywhere in North America for this position.
What you'll be doing:
- Performing threat hunting activities in order to identify malicious activity, as well as identifying and mitigating risks before cyber incidents occur.
- Analyzing logs and alerts from a wide range of sources in order to identify evidence of malicious activity, including logs and alerts generated from user endpoints, cloud-based resources, email logs, internet traffic, etc.
- Regularly assessing security threat feeds to stay informed on emerging threats and vulnerabilities, as well as continually assessing the level of risk posed to StackAdapt.
- Documenting key activities, procedures, response plans and playbooks, as well as disseminating key procedural information to other members of the Information Security Team.
- Preparing and delivering security awareness training material for staff with varying backgrounds and domain knowledge.
- Supporting incident response activities by conducting technical investigations under direction from the Cyber Incident Response Lead.
- Providing specialist advice and guidance to internal teams on technical and forensic matters.
- Providing assurance about internal security controls and mechanisms to clients.
- Performing risk assessments of our third party suppliers, including assessing the maturity level of security controls and mechanisms operated by third party suppliers.
- Supporting StackAdapt’s continuous efforts to meet compliance requirements, for example detailing and evidencing key security controls and mechanisms to external auditors.
What we're looking for:
- Experience analyzing logs and alerts from a wide range of sources in order to identify evidence of malicious activity.
- Experience working effectively in cross-functional teams with both business and technical stakeholders. Experience working in incident response, digital forensics and/or security operations.
- Skilled in examining Window, Linux, and MacOS hosts for indicators of compromise (IOCs), including forensic acquisition and analysis of data from endpoints.
- Strong communication skills and an ability to influence senior stakeholders, as well as an ability to communicate information to audiences with varying backgrounds and domain knowledge.
- Knowledge of different cyber security solutions and toolsets is beneficial (e.g. SIEM, EDR, SOAR, vulnerability scanning, email security gateways, internet proxies / gateways, etc.).
- Exposure to the simulation real-world cyber attacks (i.e. ‘Red Teaming’ exercises) is beneficial.
- Experience with cloud computing services is beneficial (e.g. AWS, Azure, GCP, etc.).
- Experience creating, maintaining and delivering training and awareness material.
We'll be reaching out to applicants that have:
- 2+ years working in a related field.
- A Bachelor’s degree (or higher) in Computer Science or a related field; or a combination of relevant education, experience, and training.
- Strong communication skills, both written and verbal.
- Strong organisational and time management skills, as well as an ability to meet deadlines.
- Strong analytical and evaluation skills.
- An ability to conduct research into IT security issues using security tools and solutions.
- An ability to work comfortably in fast-paced environments, subject to frequent change and/or unpredictability.
- Security / IT Audit Certif
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s