Information Security Analyst II

1 Month ago • 7 Years + • Cyber Security

Job Summary

Job Description

The Information Security Analyst II safeguards Motive's information assets. Responsibilities include managing data loss prevention strategies, leading incident response, conducting cyber risk assessments, and ensuring robust security monitoring. The role requires proactive threat mitigation, experience with managed service providers, and expertise in data protection, incident response, and risk assessment, including third-party and AI-related risks. Compliance with standards like SOC 2, SOX, ISO, and PCI DSS is crucial. The ideal candidate possesses strong communication and analytical skills and a commitment to data security best practices.
Must have:
  • 7+ years in InfoSec, IT audit, compliance, risk management
  • Data Loss Prevention & CASB expertise
  • NIST CSF Framework understanding
  • Incident response lifecycle management
  • Strong communication & presentation skills
Good to have:
  • CEH, Security+, CISA certifications

Job Details

Who we are:

Motive empowers the people who run physical operations with tools to make their work safer, more productive, and more profitable. For the first time ever, safety, operations and finance teams can manage their drivers, vehicles, equipment, and fleet related spend in a single system. Combined with industry leading AI, the Motive platform gives you complete visibility and control, and significantly reduces manual workloads by automating and simplifying tasks.

Motive serves more than 120,000 customers – from Fortune 500 enterprises to small businesses – across a wide range of industries, including transportation and logistics, construction, energy, field service, manufacturing, agriculture, food and beverage, retail, and the public sector.

Visit gomotive.com to learn more.

About the Role:

We are seeking a proactive and detail-oriented Information Security Analyst to safeguard our organization's information assets. This role will be instrumental in executing Data Loss Prevention strategies, managing incident response efforts, assisting with conducting cyber risk assessments, and ensuring robust security monitoring, all while maintaining a strong focus on proactive threat mitigation. Preferred candidate would have previous managed service provider experience.

What You'll Do:

Data Protection:

  • Proactively manage and optimize Data Loss Prevention strategies and toolsets, ensuring effective protection of sensitive data across all platforms.
  • Implement and refine data access monitoring and alerting systems, identifying and investigating anomalous user behavior to prevent potential data exfiltration.
  • Champion and enforce data security best practices, contributing to the development of organizational standards and promoting a culture of data protection.

Incident Response:

  • Lead and coordinate the full incident response lifecycle, from initial detection and containment to thorough eradication and recovery, minimizing business impact.
  • Conduct in-depth analysis of security alerts and logs, leveraging advanced SIEM capabilities to identify and prioritize potential security incidents.
  • Collaborate seamlessly with cross-functional teams during incident response, ensuring efficient communication and timely resolution.
  • Provide comprehensive data analysis and reporting to support insider threat investigations, assisting in the identification and mitigation of potential internal risks.
  • Implement and refine user activity monitoring protocols, enhancing our ability to detect and respond to suspicious behavior.

Risk Assessment:

  • Maintain and enhance Motive's Cyber Risk Profile, aligning with the NIST Cybersecurity Framework (CSF) to ensure comprehensive and proactive risk management.
  • Perform detailed security risk assessments, identifying vulnerabilities and recommending appropriate mitigation strategies to reduce the organization's attack surface.
  • Develop, implement, and monitor risk mitigation plans, ensuring timely and effective remediation of identified security risks.

Third-Party Risk Assessment (Including AI):

  • Conduct third-party risk assessments, evaluating security postures and compliance with organizational standards, with a focus on data handling, access controls, and incident response capabilities.
  • Evaluate the security implications of third-party AI implementations, assessing data privacy and potential vulnerabilities introduced by AI-driven services.
  • Collaborate with legal and procurement teams to incorporate security and compliance requirements into third-party contracts, ensuring clear expectations and accountability.
  • Monitor and assess the security of third party access to company data and systems, including monitoring for unusual AI driven traffic patterns.

Compliance:

  • Maintain security controls to ensure continuous adherence to regulatory compliance standards, including SOC 2, SOX, ISO and PCI DSS.
  • Conduct security assessments and internal audits, verifying compliance with industry regulations and organizational security policies, and providing actionable recommendations for improvement.
  • Collaborate in the development and maintenance of comprehensive security policies and procedures, ensuring alignment with evolving compliance requirements and industry best practices.
  • Streamline the audit process by efficiently gathering and organizing necessary documentation and evidence, facilitating smooth and successful compliance audits.

What We're Looking For:

  • Bachelor’s degree in Computer Science, Information Technology or a related field.
  • 7+ years experience in Information Security,  IT audits, compliance and risk management.
  • Proficient in Data Loss Prevention and CASB related technologies 
  • Deep understanding of NIST CSF Framework
  • Excellent communication and presentation skills.
  • Detail-oriented with a focus on quality and compliance.
  • Someone with the highest ethical standards who can be trusted with the most wide-ranging access to sensitive information

Certifications (Preferred): 

  • CEH or equivalent 
  • Security + or equivalent 
  • CISA (Certified Information Systems Auditor) or equivalent



Creating a diverse and inclusive workplace is one of Motive's core values. We are an equal opportunity employer and welcome people of different backgrounds, experiences, abilities and perspectives. 

Please review our Candidate Privacy Notice here.

The applicant must be authorized to receive and access those commodities and technologies controlled under U.S. Export Administration Regulations. It is Motive's policy to require that employees be authorized to receive access to Motive products and technology. 

#LI-Remote

Similar Jobs

Mozilla - Staff Security Engineer

Mozilla

(Remote)
5 Hours ago
Epic Games - Senior BCP/DR Specialist

Epic Games

Cary, North Carolina, United States (On-Site)
1 Month ago
People Can Fly - Live Operations Technician

People Can Fly

Yonkers, New York, United States (Remote)
1 Month ago
Saviynt - Senior Product Manager - Integrations

Saviynt

Bengaluru, Karnataka, India (Hybrid)
6 Months ago
Google - Strategic Security Consultant

Google

Toronto, Ontario, Canada (On-Site)
2 Weeks ago
Google - Customer Engineer, Google Cloud Security

Google

Taipei City, Taiwan (On-Site)
2 Days ago
PwC - Project Manager Security Testing

PwC

Amsterdam, North Holland, Netherlands (On-Site)
3 Months ago
Google - Senior Software Engineer, Security/Privacy

Google

Kirkland, Washington, United States (On-Site)
1 Week ago
Google - Customer Engineer, Security, Google Cloud

Google

Bengaluru, Karnataka, India (On-Site)
2 Weeks ago
Varonis  - Cloud Security Researcher

Varonis

Herzliya, Tel Aviv District, Israel (On-Site)
6 Months ago

Get notifed when new similar jobs are uploaded

Similar Skill Jobs

Google - Operations Analyst, Pre-Sales Operations

Google

Singapore (On-Site)
2 Days ago
Xsolla - Incident Manager

Xsolla

Kuala Lumpur, Federal Territory Of Kuala Lumpur, Malaysia (On-Site)
6 Months ago
Falcon X - Senior Cloud Security Engineer

Falcon X

Bengaluru, Karnataka, India (On-Site)
1 Day ago
Fluence - Cybersecurity Engineer (m/f/d)

Fluence

Erlangen, Bavaria, Germany (Hybrid)
6 Months ago
Patreon - Intelligence & Investigation Analyst

Patreon

California, United States (Hybrid)
3 Weeks ago
ByteDance - Site Reliability Engineer

ByteDance

San Jose, California, United States (On-Site)
1 Month ago
NVIDIA - Senior Site Reliability Engineer - AI Research Clusters

NVIDIA

Austin, Texas, United States (Hybrid)
2 Months ago
Google - Staff Software Engineer, Site Reliability Engineering

Google

Poland (On-Site)
2 Days ago
London stock Exchange - Lead Cloud Site Reliability Engineer

London stock Exchange

St. Louis, Missouri, United States (On-Site)
23 Hours ago

Get notifed when new similar jobs are uploaded

Jobs in Pakistan

GoMotive - Senior Employer Relations Business Partner

GoMotive

Islamabad, Islamabad Capital Territory, Pakistan (Hybrid)
1 Day ago
zones carrers  - Marketing Campaigns Manager

zones carrers

Islamabad, Islamabad Capital Territory, Pakistan (On-Site)
1 Week ago
Game District - Game Developer

Game District

Lahore, Punjab, Pakistan (On-Site)
1 Month ago
tecHouse Games - CG Artist (Post-production)

tecHouse Games

Lahore, Punjab, Pakistan (On-Site)
3 Years ago
zones carrers  - Account Executive

zones carrers

Islamabad, Islamabad Capital Territory, Pakistan (On-Site)
1 Month ago
Fragg games - Game Data Designer

Fragg games

Lahore, Punjab, Pakistan (On-Site)
1 Day ago
Zones - Senior D365 F&O Developer

Zones

Islamabad, Islamabad Capital Territory, Pakistan (On-Site)
6 Months ago
Gala games - Senior Back End Engineer

Gala games

Pakistan (On-Site)
1 Month ago
Biestas - Game Designer

Biestas

Lahore, Punjab, Pakistan (On-Site)
1 Day ago

Get notifed when new similar jobs are uploaded

Cyber Security Jobs

PwC - Consultant expérimenté cybersécurité | CDI | H/F

PwC

Neuilly-sur-Seine, Île-de-France, France (On-Site)
7 Months ago
Fortis Games - Senior Cloud Security Engineer

Fortis Games

Hungary (On-Site)
2 Months ago
Google - Staff Information Security Engineer, Product Security Engineering, Cloud CISO

Google

Dublin, County Dublin, Ireland (On-Site)
1 Week ago
The Walt Disney Company - Security & Content Protection Specialist

The Walt Disney Company

Burbank, California, United States (On-Site)
2 Weeks ago
Google - Senior Software Engineer, Android Security

Google

Sydney, New South Wales, Australia (On-Site)
2 Weeks ago
Netflix - Software Engineer (L5) - Security Platforms Engineering

Netflix

United States (Remote)
2 Weeks ago
Saviynt - Account Executive

Saviynt

Kansas City, Kansas, United States (Remote)
6 Months ago
PwC - ETIC, Cybersecurity Risk Technology Associate

PwC

Cairo, Cairo Governorate, Egypt (On-Site)
7 Months ago
Immutable - Application Security Engineer

Immutable

Sydney, New South Wales, Australia (Hybrid)
2 Months ago
Google - Security Analyst, Detection Response

Google

Dublin, County Dublin, Ireland (On-Site)
2 Weeks ago

Get notifed when new similar jobs are uploaded