Security Analyst in Vendor Risk Management analyzing data-driven vulnerability detections for Vanta. Collaborating with teams to improve scanning operations and detection logic.
Responsibilities
Perform deep-dive analysis on raw scanning signals to assess the quality, accuracy, and fidelity of our vulnerability detections.
Systematically identify and analyze false positives and false negatives, working with Researchers to refine detection logic and improve signal-to-noise.
Use data analysis to draw insights about our detection coverage, classification accuracy, and overall data quality, directly impacting the product roadmap.
Collaborate with Security Researchers by providing data-driven analysis to guide new research and pinpoint high-impact areas for investigation.
Develop and monitor key performance indicators (KPIs) and dashboards related to our detection quality and scanning operations.
Work with the Engineering team to provide feedback on data models and platform capabilities needed for better analysis.
Requirements
Proven experience in a data-driven role, such as a Data Analyst, Security Data Analyst, Product Analyst, or BI Analyst.
Strong analytical skills with the ability to query, manipulate, and draw insights from large, complex datasets (e.g., SQL, Python with Pandas, or similar).
A foundational understanding of cybersecurity concepts (e.g., networking, vulnerabilities, cloud infrastructure) and a strong desire to learn more.
Excellent problem-solving skills and a meticulous attention to detail.
Experience in measuring and reporting on data quality or product performance is a significant plus.
Self-motivated and capable of working both independently and collaboratively within a team.
Strong communication skills, with the ability to translate complex data findings into clear, actionable recommendations.
Benefits
Industry-competitive salary and equity
Health plan premium reimbursement
Pension contribution
16 weeks fully paid parental leave for all new parents
Health & wellness stipend
Remote workspace stipend
Flexible work hours and location
Virtual team building activities, lunch and learns, and other company-wide events!
Cybersecurity Analyst responsible for monitoring, analyzing, and responding to security incidents in SOC. Developing detection rules and conducting threat - hunting campaigns within a hybrid work setup.
Information Security Analyst working with Optasia to enforce security controls and protect data. Collaborating on technical projects and auditing systems in a hybrid work environment.
Cyber Security Analyst investigating and responding to security events at A+E Global Media. Collaborating cross - functionally to improve detection and response processes.
Information Security Analyst handling security monitoring and incident response tasks for educational technology company. Collaborating with IT teams to enhance security measures and compliance.
Security Specialist providing comprehensive security support to USAFE - AFAFRICA operations. Drafting policies, conducting assessments, and collaborating with military leadership for force protection.
Senior Asset Security Analyst responsible for governance and security of assets at Afya. Ensuring protection of people and information while mitigating risks and complying with regulations.
Security Analyst (IAM) focusing on IAM design and governance for Whirr Crew's infrastructure. Enhancing security protocols and collaborating with various technical teams.
Cyber Security Analyst providing technical information security support at IntelePeer. Focus on Microsoft Defender administration and security compliance operations.
Security Analyst L3 responsible for security event management at Var Group. Analyzing security incidents and collaborating with teams to enhance security measures.
Security Analyst L2 at Var Group managing and analyzing security incidents for digital evolution. Focused on proactive threat hunting and continuous improvement of security processes.