Jobs and Careers
CA
Senior Security Analyst
CantoIrelandRemotefull_timeVerifiedPosted 30 Oct 2025
About the role
<p><strong>Build Your Career at Canto – Where Innovation Meets Impact </strong></p>
<p>At Canto, we’re not just transforming digital asset management—we’re creating a workplace where talented individuals can thrive. As a leader in DAM, we empower businesses to organize, manage, and distribute their digital assets seamlessly. With <strong>4</strong><strong>,000+ customers worldwide</strong>, our success is driven by passionate people who bring creativity, collaboration, and innovation to everything they do.</p>
<p>Joining Canto means becoming part of a dynamic team where your contributions truly matter.</p>
<p>We foster a culture of continuous learning, open communication, and hands-on impact. Here, you'll have the opportunity to take on exciting challenges, develop your skills, and grow alongside a company that’s making waves in the industry. We believe in supporting our team members, valuing fresh ideas, and celebrating every success together.</p>
<p>If you're looking for a career where you can make a difference, expand your expertise, and be part of a global community, Canto is the place for you. We’re growing fast and looking for driven individuals who are ready to shape the future with us. Come build something great at Canto!</p><p><strong><span>Job Title:</span></strong><span> Senior Security Analyst</span></p>
<p><strong><span>Location:</span></strong><span> Cork, </span><span> Ireland Hybrid or Remote</span></p>
<p><strong><span>Role Overview:</span></strong><span> </span></p>
<p><span>At Canto, we’re committed to building secure, trusted, and resilient products that empower our global customers. As we expand our platform and adopt emerging technologies, we are seeking a Security Analyst to strengthen our defense posture, manage vendor and third-party risks, and advance compliance across international frameworks.</span><span> </span></p>
<p><span>This role will be instrumental in identifying and mitigating risks across both engineering and non-engineering systems (e.g., SaaS tools, vendors, AI integrations) and ensuring our programs remain audit-ready. If you’re passionate about proactive security, cross-functional collaboration, and continuous improvement, we’d love to meet you.</span><span> </span></p>
<p><strong><em><span><span>What </span><span>You’ll</span><span> Be Doing:</span></span></em></strong><em><span><span> </span></span></em><span> </span></p>
<ul>
<li><span>Own and mature Canto’s security risk management program, driving continuous improvement and accountaibility across business and technical functions.</span><span> </span></li>
</ul>
<ul>
<li><span>Identify and communicate security gaps proactively, developing and tracking remediation plans through completion.</span><span> </span></li>
</ul>
<ul>
<li><span>Lead cross-functional security initiatives, partnering with Product, IT, Engineering, Legal and Operations teams to embed security into the everyday processes. </span><span> </span></li>
</ul>
<ul>
<li><span>Lead assessments and documentation of security risks across Canto’s product ecosystem, infrastructure, and non-engineering SaaS applications. </span><span> </span></li>
</ul>
<ul>
<li><span>Perform ongoing gap analyses against frameworks such as NIST CSF, ISO 27001, SOC 2, and upcoming standards (e.g., ISO 42001, NIST RMF, EU AI Act).</span><span> </span></li>
</ul>
<ul>
<li><span>Own the vendor risk management program, including onboarding, assessments, contract security reviews, and annual re-evaluations.</span><span> </span></li>
</ul>
<ul>
<li><span>Partner with procurement, legal, and business teams to ensure vendors meet company security standards and contract obligations.</span><span> </span></li>
</ul>
<ul>
<li><span>Track vendor posture over time and drive corrective actions for high-risk or non-compliant third parties.</span><span> </span></li>
</ul>
<ul>
<li><span>Oversee access management and entitlement reviews across infrastructure, SaaS tools, and critical systems to ensure least privilege and regulatory compliance.</span><span> </span></li>
</ul>
<ul>
<li><span>Collaborate with IT to enforce device compliance, endpoint protection, and secure configuration baselines.</span><span> </span></li>
</ul>
<ul>
<li><span>Monitor and maintain security controls across systems to detect and respond to unauthorized access or policy deviations.</span><span> </span></li>
</ul>
<ul>
<li><span>Maintain audit-ready documentation for SOC 2 and ISO 27001 certifications.</span><span> </span></li>
</ul>
<ul>
<li><span>Track control effectiveness, coordinate evidence collection, and support external audit requests.</span><span> </span></li>
</ul>
<ul>
<li><span>Partner with internal teams to ensure readiness for new regulatory or framework requirements.</span><span> </span></li>
</ul>
<ul>
<li><span>Evaluate AI systems and integrations for security risks, including model inputs/outputs, data exposure, and system access.</span><span> </span></li>
</ul>
<ul>
<li><span>Support implement
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s