Information Security Analyst II

2 Weeks ago • 7 Years + • Cyber Security

Job Summary

Job Description

The Information Security Analyst II safeguards Motive's information assets. Responsibilities include managing data loss prevention strategies, leading incident response, conducting cyber risk assessments, and ensuring robust security monitoring. The role requires proactive threat mitigation, experience with managed service providers, and expertise in data protection, incident response, and risk assessment, including third-party and AI-related risks. Compliance with standards like SOC 2, SOX, ISO, and PCI DSS is crucial. The ideal candidate possesses strong communication and analytical skills and a commitment to data security best practices.
Must have:
  • 7+ years in InfoSec, IT audit, compliance, risk management
  • Data Loss Prevention & CASB expertise
  • NIST CSF Framework understanding
  • Incident response lifecycle management
  • Strong communication & presentation skills
Good to have:
  • CEH, Security+, CISA certifications

Job Details

Who we are:

Motive empowers the people who run physical operations with tools to make their work safer, more productive, and more profitable. For the first time ever, safety, operations and finance teams can manage their drivers, vehicles, equipment, and fleet related spend in a single system. Combined with industry leading AI, the Motive platform gives you complete visibility and control, and significantly reduces manual workloads by automating and simplifying tasks.

Motive serves more than 120,000 customers – from Fortune 500 enterprises to small businesses – across a wide range of industries, including transportation and logistics, construction, energy, field service, manufacturing, agriculture, food and beverage, retail, and the public sector.

Visit gomotive.com to learn more.

About the Role:

We are seeking a proactive and detail-oriented Information Security Analyst to safeguard our organization's information assets. This role will be instrumental in executing Data Loss Prevention strategies, managing incident response efforts, assisting with conducting cyber risk assessments, and ensuring robust security monitoring, all while maintaining a strong focus on proactive threat mitigation. Preferred candidate would have previous managed service provider experience.

What You'll Do:

Data Protection:

  • Proactively manage and optimize Data Loss Prevention strategies and toolsets, ensuring effective protection of sensitive data across all platforms.
  • Implement and refine data access monitoring and alerting systems, identifying and investigating anomalous user behavior to prevent potential data exfiltration.
  • Champion and enforce data security best practices, contributing to the development of organizational standards and promoting a culture of data protection.

Incident Response:

  • Lead and coordinate the full incident response lifecycle, from initial detection and containment to thorough eradication and recovery, minimizing business impact.
  • Conduct in-depth analysis of security alerts and logs, leveraging advanced SIEM capabilities to identify and prioritize potential security incidents.
  • Collaborate seamlessly with cross-functional teams during incident response, ensuring efficient communication and timely resolution.
  • Provide comprehensive data analysis and reporting to support insider threat investigations, assisting in the identification and mitigation of potential internal risks.
  • Implement and refine user activity monitoring protocols, enhancing our ability to detect and respond to suspicious behavior.

Risk Assessment:

  • Maintain and enhance Motive's Cyber Risk Profile, aligning with the NIST Cybersecurity Framework (CSF) to ensure comprehensive and proactive risk management.
  • Perform detailed security risk assessments, identifying vulnerabilities and recommending appropriate mitigation strategies to reduce the organization's attack surface.
  • Develop, implement, and monitor risk mitigation plans, ensuring timely and effective remediation of identified security risks.

Third-Party Risk Assessment (Including AI):

  • Conduct third-party risk assessments, evaluating security postures and compliance with organizational standards, with a focus on data handling, access controls, and incident response capabilities.
  • Evaluate the security implications of third-party AI implementations, assessing data privacy and potential vulnerabilities introduced by AI-driven services.
  • Collaborate with legal and procurement teams to incorporate security and compliance requirements into third-party contracts, ensuring clear expectations and accountability.
  • Monitor and assess the security of third party access to company data and systems, including monitoring for unusual AI driven traffic patterns.

Compliance:

  • Maintain security controls to ensure continuous adherence to regulatory compliance standards, including SOC 2, SOX, ISO and PCI DSS.
  • Conduct security assessments and internal audits, verifying compliance with industry regulations and organizational security policies, and providing actionable recommendations for improvement.
  • Collaborate in the development and maintenance of comprehensive security policies and procedures, ensuring alignment with evolving compliance requirements and industry best practices.
  • Streamline the audit process by efficiently gathering and organizing necessary documentation and evidence, facilitating smooth and successful compliance audits.

What We're Looking For:

  • Bachelor’s degree in Computer Science, Information Technology or a related field.
  • 7+ years experience in Information Security,  IT audits, compliance and risk management.
  • Proficient in Data Loss Prevention and CASB related technologies 
  • Deep understanding of NIST CSF Framework
  • Excellent communication and presentation skills.
  • Detail-oriented with a focus on quality and compliance.
  • Someone with the highest ethical standards who can be trusted with the most wide-ranging access to sensitive information

Certifications (Preferred): 

  • CEH or equivalent 
  • Security + or equivalent 
  • CISA (Certified Information Systems Auditor) or equivalent



Creating a diverse and inclusive workplace is one of Motive's core values. We are an equal opportunity employer and welcome people of different backgrounds, experiences, abilities and perspectives. 

Please review our Candidate Privacy Notice here.

The applicant must be authorized to receive and access those commodities and technologies controlled under U.S. Export Administration Regulations. It is Motive's policy to require that employees be authorized to receive access to Motive products and technology. 

#LI-Remote

Similar Jobs

NVIDIA - Director of Business Continuity

NVIDIA

Canada (On-Site)
3 Weeks ago
Convai - Software Engineer - Cloud Production

Convai

Bengaluru, Karnataka, India (On-Site)
9 Months ago
RoofStack - Senior Cyber Security Engineer

RoofStack

İstanbul, İstanbul, Türkiye (Remote)
3 Months ago
Crunchyroll - Staff Site Reliability Engineer

Crunchyroll

Mexico City, Mexico City, Mexico (On-Site)
4 Months ago
Canva - Backend Engineer (Java), Media Platform - Global Content and Discovery

Canva

Surry Hills, New South Wales, Australia (Remote)
6 Days ago
ION - IT/Cyber Security Analyst

ION

London, England, United Kingdom (On-Site)
5 Months ago
Larian Studios - Lead Security & Network Engineer

Larian Studios

Guildford, England, United Kingdom (On-Site)
1 Month ago
PwC - Cyber Security Associate (New Graduate)

PwC

Bangkok, Bangkok, Thailand (On-Site)
1 Month ago
Company3 Method Studios - Security Compliance Assessor

Company3 Method Studios

United States (Remote)
1 Month ago
Saviynt - Account Executive

Saviynt

Kansas City, Kansas, United States (Remote)
5 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Xsolla - Incident Manager

Xsolla

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (On-Site)
5 Months ago
Immutable - Senior Site Reliability Engineer

Immutable

Sydney, New South Wales, Australia (Hybrid)
4 Months ago
Nintendo - Physical Security Specialist

Nintendo

Redmond, Washington, United States (On-Site)
10 Months ago
Anthology  Inc  - DevOps (SRE) Engineer

Anthology Inc

Brno, South Moravian Region, Czechia (On-Site)
5 Months ago
ByteDance - Senior Infrastructure Security Engineer, Security Assurance

ByteDance

Singapore (On-Site)
5 Months ago
Assystems - Security Analyst / Incident Responder L2/L3

Assystems

Gurugram, Haryana, India (On-Site)
5 Months ago
Playtika - Games R&D-Production Support Team Leader

Playtika

Poland (Hybrid)
3 Months ago
Voodoo - DPO / Product Counsel

Voodoo

Paris, Île-de-France, France (On-Site)
6 Days ago
Immutable - Senior Site Reliability Engineer

Immutable

Singapore (Hybrid)
4 Months ago
Google - Staff Software Engineer, Site Reliability Engineering, Google Cloud

Google

Warsaw, Masovian Voivodeship, Poland (On-Site)
3 Months ago

Get notifed when new similar jobs are uploaded

Jobs in Pakistan

GoMotive - Senior Software Engineer, Backend

GoMotive

Pakistan (Remote)
2 Weeks ago
GoMotive - Technical Program Manager - Risk and Compliance

GoMotive

Pakistan (Remote)
2 Weeks ago
Werplay - Game Developer (Unity3D)

Werplay

Islamabad, Islamabad Capital Territory, Pakistan (On-Site)
3 Months ago
GoMotive - Technical Program Manager

GoMotive

Pakistan (Remote)
1 Week ago
PwC - Senior Associate II - Internal Audit

PwC

Karachi, Sindh, Pakistan (On-Site)
6 Months ago
Zones - Credit Control Associate

Zones

Islamabad, Islamabad Capital Territory, Pakistan (On-Site)
1 Week ago
Werplay - Senior QA Engineer

Werplay

Islamabad, Islamabad Capital Territory, Pakistan (On-Site)
3 Months ago
GoMotive - Senior Sales Enablement Business Partner

GoMotive

Pakistan (Remote)
1 Week ago
GoMotive - Computer Vision Engineer

GoMotive

Pakistan (Remote)
2 Weeks ago
PwC - Senior Tax Associate

PwC

Karachi, Sindh, Pakistan (On-Site)
6 Months ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

Appirits - Security Engineer

Appirits

Tokyo, Japan (Hybrid)
1 Month ago
Mattel  Inc  - Manager GRC

Mattel Inc

California, United States (On-Site)
3 Months ago
PearlAbyss - Game Security Technical Support

PearlAbyss

(On-Site)
2 Months ago
Luminar Technologies - Product Security Lead

Luminar Technologies

Bengaluru, Karnataka, India (On-Site)
4 Months ago
Rackspace Technology - SOC Lead (Sentinel experience required)

Rackspace Technology

India (Remote)
2 Months ago
The Walt Disney Company - Senior Security Specialist, Third-Party Risk Management

The Walt Disney Company

Burbank, California, United States (On-Site)
1 Week ago
PwC - IN_Associate_SmartCitiesGIS _Cities_Advisory_Ahmedabad

PwC

Ahmedabad, Gujarat, India (On-Site)
4 Months ago
Penumbra - Sr Manager Cybersecurity

Penumbra

Alameda, California, United States (On-Site)
5 Months ago
ION - Security Architect, Italy

ION

Italy (Hybrid)
5 Months ago
ION - Pen Tester, Italy

ION

Italy (Hybrid)
5 Months ago

Get notifed when new similar jobs are uploaded