Information Security Analyst II

1 Month ago • 7 Years +

Job Summary

Job Description

As an Information Security Analyst II at Motive, you will be responsible for protecting information assets by implementing data loss prevention strategies, managing incident response, performing cyber risk assessments, and ensuring robust security monitoring. Your responsibilities will include managing and optimizing Data Loss Prevention strategies, leading incident response, performing risk assessments, conducting third-party risk assessments, and ensuring compliance with regulatory standards. You will collaborate with cross-functional teams, analyze security logs, and develop security policies and procedures. This role requires a detail-oriented individual with excellent communication skills and a strong understanding of cybersecurity frameworks.
Must have:
  • 7+ years of experience in Information Security, IT audits, and risk management.
  • Proficiency in Data Loss Prevention and CASB related technologies.
  • Deep understanding of NIST CSF Framework.
  • Excellent communication and presentation skills.
  • Detail-oriented with a focus on quality and compliance.
Good to have:
  • CEH or equivalent certification
  • Security + or equivalent certification
  • CISA (Certified Information Systems Auditor) or equivalent certification

Job Details

Who we are:

Motive empowers the people who run physical operations with tools to make their work safer, more productive, and more profitable. For the first time ever, safety, operations and finance teams can manage their drivers, vehicles, equipment, and fleet related spend in a single system. Combined with industry leading AI, the Motive platform gives you complete visibility and control, and significantly reduces manual workloads by automating and simplifying tasks.

Motive serves more than 120,000 customers – from Fortune 500 enterprises to small businesses – across a wide range of industries, including transportation and logistics, construction, energy, field service, manufacturing, agriculture, food and beverage, retail, and the public sector.

Visit gomotive.com to learn more.

About the Role:

We are seeking a proactive and detail-oriented Information Security Analyst to safeguard our organization's information assets. This role will be instrumental in executing Data Loss Prevention strategies, managing incident response efforts, assisting with conducting cyber risk assessments, and ensuring robust security monitoring, all while maintaining a strong focus on proactive threat mitigation. Preferred candidate would have previous managed service provider experience.

What You'll Do:

Data Protection:

  • Proactively manage and optimize Data Loss Prevention strategies and toolsets, ensuring effective protection of sensitive data across all platforms.
  • Implement and refine data access monitoring and alerting systems, identifying and investigating anomalous user behavior to prevent potential data exfiltration.
  • Champion and enforce data security best practices, contributing to the development of organizational standards and promoting a culture of data protection.

Incident Response:

  • Lead and coordinate the full incident response lifecycle, from initial detection and containment to thorough eradication and recovery, minimizing business impact.
  • Conduct in-depth analysis of security alerts and logs, leveraging advanced SIEM capabilities to identify and prioritize potential security incidents.
  • Collaborate seamlessly with cross-functional teams during incident response, ensuring efficient communication and timely resolution.
  • Provide comprehensive data analysis and reporting to support insider threat investigations, assisting in the identification and mitigation of potential internal risks.
  • Implement and refine user activity monitoring protocols, enhancing our ability to detect and respond to suspicious behavior.

Risk Assessment:

  • Maintain and enhance Motive's Cyber Risk Profile, aligning with the NIST Cybersecurity Framework (CSF) to ensure comprehensive and proactive risk management.
  • Perform detailed security risk assessments, identifying vulnerabilities and recommending appropriate mitigation strategies to reduce the organization's attack surface.
  • Develop, implement, and monitor risk mitigation plans, ensuring timely and effective remediation of identified security risks.

Third-Party Risk Assessment (Including AI):

  • Conduct third-party risk assessments, evaluating security postures and compliance with organizational standards, with a focus on data handling, access controls, and incident response capabilities.
  • Evaluate the security implications of third-party AI implementations, assessing data privacy and potential vulnerabilities introduced by AI-driven services.
  • Collaborate with legal and procurement teams to incorporate security and compliance requirements into third-party contracts, ensuring clear expectations and accountability.
  • Monitor and assess the security of third party access to company data and systems, including monitoring for unusual AI driven traffic patterns.

Compliance:

  • Maintain security controls to ensure continuous adherence to regulatory compliance standards, including SOC 2, SOX, ISO and PCI DSS.
  • Conduct security assessments and internal audits, verifying compliance with industry regulations and organizational security policies, and providing actionable recommendations for improvement.
  • Collaborate in the development and maintenance of comprehensive security policies and procedures, ensuring alignment with evolving compliance requirements and industry best practices.
  • Streamline the audit process by efficiently gathering and organizing necessary documentation and evidence, facilitating smooth and successful compliance audits.

What We're Looking For:

  • Bachelor’s degree in Computer Science, Information Technology or a related field.
  • 7+ years experience in Information Security,  IT audits, compliance and risk management.
  • Proficient in Data Loss Prevention and CASB related technologies 
  • Deep understanding of NIST CSF Framework
  • Excellent communication and presentation skills.
  • Detail-oriented with a focus on quality and compliance.
  • Someone with the highest ethical standards who can be trusted with the most wide-ranging access to sensitive information

Certifications (Preferred): 

  • CEH or equivalent 
  • Security + or equivalent 
  • CISA (Certified Information Systems Auditor) or equivalent



Creating a diverse and inclusive workplace is one of Motive's core values. We are an equal opportunity employer and welcome people of different backgrounds, experiences, abilities and perspectives. 

Please review our Candidate Privacy Notice here .

UK Candidate Privacy Notice here.

The applicant must be authorized to receive and access those commodities and technologies controlled under U.S. Export Administration Regulations. It is Motive's policy to require that employees be authorized to receive access to Motive products and technology. 

#LI-Remote

Similar Jobs

Anthology  Inc  - DevOps (SRE) Engineer

Anthology Inc

Brno, South Moravian Region, Czechia (On-Site)
7 Months ago
AI Dash - Senior Engineering Manager - Devops

AI Dash

Bengaluru, Karnataka, India (Hybrid)
5 Days ago
Opendoor - Staff SWE

Opendoor

San Francisco, California, United States (On-Site)
1 Week ago
Reddit - Senior Site Reliability Engineer

Reddit

Amsterdam, North Holland, Netherlands (On-Site)
2 Weeks ago
Palo Alto Networks - Principal Consultant, Proactive Services (Unit 42)

Palo Alto Networks

Drenthe, Netherlands (Remote)
1 Week ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

GoDaddy - Backend Senior Software Engineer- Commerce Risk

GoDaddy

Colombia (Remote)
6 Days ago
PowerSchool - Cloud Operations Engineer 1

PowerSchool

Bengaluru, Karnataka, India (On-Site)
7 Months ago
entrata - DevOps Engineer

entrata

Pune, Maharashtra, India (Hybrid)
2 Months ago
GoDaddy - Backend Senior Software Engineer

GoDaddy

Colombia (Remote)
4 Days ago
Optiv - Sr. SOAR Engineer - Phantom

Optiv

Kansas City, Missouri, United States (Remote)
2 Weeks ago
Play Perfect - Director of Compliance

Play Perfect

New Brunswick, New Jersey, United States (On-Site)
2 Weeks ago
IMC - Information Security Engineer

IMC

Sydney, New South Wales, Australia (On-Site)
1 Month ago
Saviynt - Sr. Director (Application Access Governance) -  Governance Risk & Compliance

Saviynt

Atlanta, Georgia, United States (Hybrid)
7 Months ago
TransUnion - Africa Head of Corporate Communications

TransUnion

Johannesburg, Gauteng, South Africa (Hybrid)
1 Week ago
OneLocal - Senior DevOps Engineer

OneLocal

(Remote)
1 Month ago

Get notifed when new similar jobs are uploaded

Jobs in Worldwide

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!

Similar Category Jobs

Looks like we're out of matches

Set up an alert and we'll send you similar jobs the moment they appear!