Information Security Analyst

1 Month ago • 1-5 Years • Cyber Security • $99,000 PA - $149,000 PA

Job Summary

Job Description

AppLovin makes technologies that help businesses connect to their ideal customers, providing end-to-end software and AI solutions. The Governance, Risk and Compliance (GRC) information security analyst supports and elevates the company's security posture. This role involves supporting the security and compliance strategy, understanding information security concepts, information risk management, and new technologies. Responsibilities include planning and designing security policies, procedures, and ongoing maintenance, as well as supporting vendor risk management, business continuity, ISO27001 certification, and data privacy programs.
Must have:
  • Coordinate cybersecurity risk assessment program with key stakeholders.
  • Manage ongoing maintenance and activities using GRC Platform.
  • Identify strengths and weaknesses in the security program.
  • Document and enforce security improvements balancing risk and operations.
  • Maintain strong oversight of third parties, vendors, and business partners.
  • Escalate weaknesses to security management and business unit leads.
  • Analyze findings, document, recommend, and report program gaps.
  • Support monitoring current and proposed security changes impacting regulations.
  • Define qualitative and quantitative metrics for security program success.
  • Act as a key participant in incident response to track occurrence and resolution.
  • Work with information security assurance, audit, and risk management leadership.
  • Attend and fully engage in information security management meetings.
  • Work across cross-functional teams like legal, privacy, and human resources.
  • Support client inquiries from Business Development teams.
  • Support the security and compliance strategy.
  • Plan and design information security policies and procedures.
  • Support the company’s Vendor Risk Management Program.
  • Support Business Continuity Planning.
  • Support ISO27001 Certification.
  • Support Data Privacy Program.
Good to have:
  • Project management experience
  • CISA certification
  • CRISC certification
  • ITIL certification
  • Bachelor’s degree in IT/Information Systems
  • Bachelor’s degree in Business Admin
  • Bachelor’s degree in Risk Management and Compliance related fields
  • Proficiency in using Excel (pivot tables, formulas)
  • Data analysis knowledge
  • Scripting knowledge
Perks:
  • Competitive total compensation package
  • Pay for performance rewards approach
  • Equity (depending on position)
  • Incentive compensation (depending on position)
  • Dental benefits
  • Vision benefits
  • Other benefits
  • Recognized as one of the Best Workplaces in the Bay Area
  • Certified Great Place to Work (2021-2024)

Job Details

About AppLovin

AppLovin makes technologies that help businesses of every size connect to their ideal customers. The company provides end-to-end software and AI solutions for businesses to reach, monetize and grow their global audiences. For more information about AppLovin, visit: www.applovin.com

.

To deliver on this mission, our global team is composed of team members with life experiences, backgrounds, and perspectives that mirror our developers and customers around the world. At AppLovin, we are intentional about the team and culture we are building, seeking candidates who are outstanding in their own right and also demonstrate their support of others.

Fortune recognizes AppLovin as one of the Best Workplaces in the Bay Area, and the company has been a Certified Great Place to Work for the last four years (2021-2024). Check out the rest of our awards HERE

.

Job Description:

The Governance, Risk and Compliance (GRC) information security analyst is a highly respected, influential and in-demand role within the business. This position has a responsibility to the business in supporting and elevating the security posture of the company. The GRC Information Security Analyst role is expected to support the security and compliance strategy as directed by the Head of Information Security in support of the Business. Consequently, the position will require an understanding of Information Security Concepts, Information Risk Management and new technologies. The GRC information security analyst is also responsible for the planning and design of information security policies, procedures and on-going maintenance thereafter. This position will support the company’s Vendor Risk Management Program, Business Continuity Planning, ISO27001 Certification, and Data Privacy Program (as needed).

In tandem with security leadership, the GRC security analyst consistently participates in the assessment and strengthening of the information security program. May act as the primary point of contact for internal and external auditors at the direction of management. The GRC security analyst monitors progress and enforces resolution of outstanding issues that may lead to non-compliance or security threats to the business. As a key member of the security team, the GRC security analyst must focus on strong risk management and corporate resiliency, and not be driven solely by compliance.

Job Responsibilities:

  • Coordinate cybersecurity risk assessment program in tandem with key stakeholders.
  • Manage the ongoing maintenance and activities using our GRC Platform.
  • Identify strengths and weaknesses in the security program as they relate to privacy, security, business resiliency and the supported compliance frameworks.
  • Document and enforce areas of security improvement that balance risk with business operations and do not diminish efficiencies or innovation.
  • Maintain strong oversight of third parties, vendors and business partners to safeguard against undue risk presented by external entities.
  • Escalate to security management and business unit leads when points of weakness are discovered.
  • Analyze findings, and document, recommend and report program gaps to security leadership as needed.
  • Support monitoring current and proposed security changes impacting regulatory, privacy and security industry best practice guidance.
  • Define qualitative and quantitative metrics to assess the success of the security program and provide regular reports to security and business leadership as needed.
  • Act as a key participant in incident response to track occurrence and resolution, with strict documentation and reporting.
  • Work in tandem with information security assurance, audit and risk management leadership to perform ongoing security assessments.
  • Attend and fully engage in information security management meetings.
  • Work across cross functional teams such as legal, privacy, human resources and others as needed.
  • Support Client based inquiries from Business Development teams.

Basic Qualifications:

  • The ideal candidate will have 1-5 years experience with IT Security Audit, Compliance and Risk Management.
  • Familiarity with regulations such as SOX, GDPR, PCI along with an understanding of IT and Cybersecurity Principles, NIST, ISO 27001 and or COBIT, COSO.
  • Previous working experience with GRC tools, proficiency in using Excel (pivot tables, formulas) with data analysis or scripting knowledge a plus.
  • Strong attention to detail, written and verbal communication skills and the ability to work cross functionally is a must.
  • Project management experience is desirable.
  • Certifications such as CISA, CRISC, ITIL are desired but not required.
  • Bachelor’s degree in any of the following: IT/Information Systems; Business Admin; Risk Management and Compliance related fields is desirable.

AppLovin provides a competitive total compensation package with a pay for performance rewards approach. Total compensation at AppLovin is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Depending on the position offered, equity, and other forms of incentive compensation (as applicable) may be provided as part of a total compensation package, in addition to dental, vision, and other benefits.

CA Base Pay Range

$99,000 - $149,000 USD

AppLovin has become aware of a scam targeting jobseekers with fake “app optimization” and similar roles. We do not ask our candidates to download apps or make any form of payment(s). AppLovin works with applicants through our Careers page and applovin.com email addresses. If you are contacted through other unofficial channels (such as WhatsApp or Telegram) or asked to download an app or make a payment, these contacts are not legitimate. Confirm the information here and contact us directly with any questions.

AppLovin is proud to be an equal opportunity employer that is committed to inclusion and diversity. All applicants will be considered for employment without attention to race, color, religion, sex, sexual orientation, gender identity, national origin, veteran or disability status, or other legally protected characteristics. Learn more about EEO rights as an applicant here

.

If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send us a request at accommodations@applovin.com.

AppLovin will consider for employment all qualified applicants with criminal histories in a manner consistent with applicable law. If you’re applying for a position in California, learn more here

.

To support an efficient and fair hiring process, we may use technology-assisted tools, including artificial intelligence (AI), to help identify and evaluate candidates. All hiring decisions are ultimately made by human reviewers.

---

Please read our Global Applicant Privacy Notice to learn more about how AppLovin processes your personal information.

!Follow Us ![LinkedIn icon](https://www.linkedin.com/company/applovin)

![X icon](https://x.com/AppLovin)

![Instagram icon](https://www.instagram.com/applovin/)

Similar Jobs

Rackspace Technology - Principal MLOps Engineer

Rackspace Technology

(Remote)
5 Months ago
GameJobs - Product Manager

GameJobs

Tel Aviv-Yafo, Tel Aviv District, Israel (On-Site)
1 Year ago
PlayStation Global - Sr. ML Software Engineer

PlayStation Global

United States (Remote)
4 Months ago
CD PROJEKT RED - Senior Rendering Engineer

CD PROJEKT RED

Boston, Massachusetts, United States (Remote)
4 Months ago
Behaviour Interactive - Senior AI Programmer

Behaviour Interactive

Montreal, Quebec, Canada (Hybrid)
1 Month ago
Varonis  - Frontend Angular Engineer - AI Security

Varonis

Herzliya, Tel Aviv District, Israel (Hybrid)
4 Months ago
Rackspace Technology - Senior Security Support Engineer

Rackspace Technology

Riyadh, Riyadh Province, Saudi Arabia (On-Site)
2 Months ago
Thales - Consultant Cybersecurity Architect

Thales

Lyon, Auvergne-Rhône-Alpes, France (Hybrid)
3 Months ago
Jane Street - Cybersecurity Analyst

Jane Street

New York, United States (On-Site)
3 Weeks ago
Aledade - Senior Security Engineer II (Engineering & Tooling)

Aledade

United States (Remote)
7 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Scale AI - AI Strategy Consultant, Frontier Tech

Scale AI

San Francisco, California, United States (Remote)
3 Months ago
Wind River - Senior DevSecOps Engineer - MTS

Wind River

India (On-Site)
1 Month ago
LeoVegas - Sportsbook Supplier Coordinator

LeoVegas

Leeds, England, United Kingdom (Hybrid)
2 Months ago
Sprinkler - Implementation Manager

Sprinkler

Gurugram, Haryana, India (On-Site)
3 Months ago
Demandbase - Senior Product Designer

Demandbase

San Francisco, California, United States (Remote)
3 Months ago
lifechruh - Generosity Impact Manager

lifechruh

Edmond, Oklahoma, United States (On-Site)
3 Months ago
Nice - SMB Account Executive

Nice

Atlanta, Georgia, United States (On-Site)
1 Month ago
Sprinkler - Principal Value Consultant

Sprinkler

London, England, United Kingdom (On-Site)
3 Months ago
HP - Firmware/Software Developer

HP

Taipei City, Taiwan (On-Site)
3 Weeks ago

Get notifed when new similar jobs are uploaded

Jobs in Palo Alto, California, United States

Toast - Emerging Markets Account Executive, Bilingual Spanish - Inside (West Coast)

Toast

Los Angeles, California, United States (Hybrid)
1 Month ago
Apple - Technical Program Manager – Human Engineering

Apple

Cupertino, California, United States (On-Site)
2 Months ago
bytedance - Research Engineer / Scientist - AI for Databases

bytedance

San Jose, California, United States (On-Site)
3 Months ago
Snap Mobile INC - Regional Sales Executive

Snap Mobile INC

Columbia, South Carolina, United States (On-Site)
1 Month ago
Decagon - Engineering Manager, Agent Software Engineering

Decagon

San Francisco, California, United States (On-Site)
1 Month ago
illumio - Sr. Software Engineer - C++/Networking

illumio

Sunnyvale, California, United States (On-Site)
2 Months ago
Apple - Silicon Validation Engineer

Apple

Irvine, California, United States (On-Site)
3 Months ago
Nexon - Dev Ops Engineer

Nexon

El Segundo, California, United States (Hybrid)
2 Months ago
Open Systems Technologies - Childcare Staff (Part-time)

Open Systems Technologies

Irvine, California, United States (On-Site)
1 Month ago
Gearbox - Lighting Artist

Gearbox

Frisco, Texas, United States (On-Site)
8 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Security Compliance Analyst - US Client

PwC

Buenos Aires, Buenos Aires, Argentina (On-Site)
3 Weeks ago
Veeam Software - Application Security Engineer

Veeam Software

California, United States (Remote)
1 Month ago
Tesla - Security Systems Field Engineer

Tesla

Brandenburg, Germany (On-Site)
6 Months ago
Patreon - Security Engineer

Patreon

United States (Hybrid)
4 Months ago
Optiv - Senior Cybersecurity Advisor

Optiv

Minneapolis, Minnesota, United States (Hybrid)
1 Year ago
Google - Software Engineer III, Infrastructure, Google Cloud Security and Privacy

Google

Sunnyvale, California, United States (On-Site)
9 Months ago
Barracuda - Cybersecurity Developer

Barracuda

Ottawa, Ontario, Canada (Hybrid)
5 Months ago
Twitch - Senior Security Engineer

Twitch

New York, New York, United States (On-Site)
1 Month ago
NXP - Embedded Systems Security Engineer

NXP

Gratkorn, Styria, Austria (On-Site)
2 Months ago
bytedance - Security Operation Engineer, Security Assurance

bytedance

Singapore (On-Site)
6 Months ago

Get notifed when new similar jobs are uploaded

About The Company

Palo Alto, California, United States (On-Site)

Berlin, Berlin, Germany (On-Site)

Herzliya, Tel Aviv District, Israel (On-Site)

Palo Alto, California, United States (On-Site)

Palo Alto, California, United States (On-Site)

Berlin, Berlin, Germany (On-Site)

Palo Alto, California, United States (On-Site)

Palo Alto, California, United States (On-Site)

Palo Alto, California, United States (On-Site)

Palo Alto, California, United States (On-Site)

View All Jobs

Get notified when new jobs are added by AppLovin

Level Up Your Career in Game Development!

Transform Your Passion into Profession with Our Comprehensive Courses for Aspiring Game Developers.

Job Common Plug