Security Analyst
Plaid
Security Risk Assessment ManagerWe believe that the way people interact with their finances will drastically improve in the next few years. We're dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaid's network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Seattle, Washington D.C., Raleigh, London, and Amsterdam.The Security Governance, Risk, and Compliance (GRC) team is part of Plaid's security organization, focused on enabling the business by proactively managing information security risks and maintaining effective controls. Our mission is to reduce the likelihood and impact of security risks while operating a robust assurance program that builds trust with our customers, consumers, and data partners. We partner closely across the company to ensure Plaid's platform remains secure, resilient, and aligned with industry and regulatory expectations.Third-party ecosystem risk is a core part of how we keep Plaid safe—we vet the security of both the vendors we rely on and the customers and partners who connect to our platform, so trust runs in both directions.Role:You will run security risk assessments for Plaid's third parties end-to-end—from intake and questionnaire through risk rating, findings, and tracked exceptions.You will assess the security posture of customers and partners onboarding to the platform with the same rigor we apply to vendors.You will keep the third-party risk lifecycle moving—risk tiering, reassessment cadence, remediation follow-through, and a clean, current risk register.You will help mature the program—questionnaires, tiering criteria, intake, and runbooks—so reviews get faster and more consistent as volume grows, drawing on how you've improved third-party risk programs before.You will report on ecosystem risk to Security and cross-functional stakeholders, and operate as an AI power user to raise your own throughput.Responsibilities:Run Vendor Security Risk Assessments: Triage inbound vendor requests, run security reviews scaled to risk tier, rate the risk, and document findings and exceptions. Your assessments keep Plaid from inheriting a vendor's security gaps and give Procurement, Privacy, and Legal a clear risk signal before contracts are signed.Vet Customer and Partner Security Posture: Review the security practices of customers and partners onboarding to the platform, applying the same standards you use for vendors. Your reviews make sure who connects to Plaid meets the bar before they touch data—protecting consumers and the ecosystem.Keep the Third-Party Risk Lifecycle Current: Maintain risk tiering, drive reassessments on cadence, chase remediation to closure, and keep the risk register accurate. Your follow-through keeps third-party risk a live, trustworthy picture rather than a point-in-time checkbox.Mature the Program: Improve questionnaires, tiering criteria, intake, runbooks, and tooling as review volume grows—bringing patterns from third-party risk programs you've matured before. Your work moves the function from ad hoc toward fast, consistent, and scalable.Report on Ecosystem Risk: Track assessment cycle times, backlog, open exceptions, and reassessment coverage, and report program health to stakeholders. Your reporting gives leadership real visibility into where third-party risk concentrates.Scale Through AI and Tooling: Build and scale AI-assisted workflows for assessment review, questionnaire analysis, and reporting—and share what works. Your approach sets how the team uses AI to handle more reviews without adding headcount.Qualifications:Must-haves4+ years of experience in vendor risk managementThird-party and vendor security risk assessment: Experience running security risk assessments of third parties—reviewing questionnaires, SOC 2 and ISO reports, and security documentation, and translating them into a defensible risk rating.Familiarity with the third-party risk lifecycle: intake, tiering, exceptions and risk acceptance, remediation tracking, and periodic reassessment.Security and compliance knowledge: Working knowledge of SOC 2, ISO 27001, NIST CSF, and common control domains (access control, encryption, incident response, BC/DR).Ability to read a control environment and tell a real gap from an acceptable compensating control.Program maturation and operational execution: Experience maturing a third-party or vendor risk program—improving how it works (tiering criteria, questionnaires, workflow, automation), not just executing an existing one.Track record running assessments at volume without dropping rigor.Strong analytical and documentation skills: clear findings, clean tracking, and defensible risk decisions others can follow.Communication and cross-functional effectiveness: Clear written and verbal communication—able to explain a security risk to Procurement, Legal, or a customer without overstating or hand-waving.Comfortable working across Security, Legal, Procurement, and GTM as the third-party risk point of contact.AI fluency and tooling: Demonstrated ability to apply AI tooling to assessment review, questionnaire analysis, and reporting to materially increase throughput—and to share what works with the team.Nice-to-haveA third-party-risk or audit credential (CTPRP, CISA, or CISSP), or hands-on ownership of a TPRM platform (e.g. OneTrust, ProcessUnity, Whistic, SecurityScorecard) beyond using it as an end user.Our mission at Plaid is to unlock financial freedom for everyone. To support that mission, we seek to build a diverse team of driven individuals who care deeply about making the financial ecosystem more equitable. We recognize that strong qualifications can come from both prior work experiences and lived experiences. We encourage you to apply to a role even if your experience doesn't fully match the job description. We are always looking for team members that will bring something unique to Plaid!Plaid is proud to be an equal opportunity employer and values diversity at our company. We do not discriminate based on race, color, national origin, ethnicity, religion or religious belief, sex (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender, gender identity, gender expression, transgender status, sexual stereotypes, age, military or veteran status, disability, or other applicable legally protected characteristics. We also consider qualified applicants with criminal histories, consistent with applicable federal, state, and local laws. Plaid is committed to providing reasonable accommodations for candidates with disabilities in our recruiting process. If you need any assistance with your application or interviews due to a disability, please let us know at View email address on click.appcast.io review our Candidate Privacy Notice here.Additional compensation in the form(s) of equity and/or commission are dependent on the position offered. Plaid provides a comprehensive benefit plan, including medical, dental, vision, and 401(k). Pay is based on factors such as (but not limited to) scope and responsibilities of the position, candidate's work experience and skillset, and location. Pay and benefits are subject to change at any time, consistent with the terms of any applicable compensation or benefit plans.
- ...Security AnalystIn this role, you will work collaboratively with the Cybersecurity GRC team along with stakeholders across the business to assess, review, verify, and audit technology controls related to GRC Compliance. The GRC Compliance Specialist will be responsible...Suggested
- ...SOC 2 - Junior Security AnalystLocation: Hybrid – local - Seattle, WARole Description – Junior Security AnalystOutline of the Role:We are looking to hire a dynamic Junior Security Analyst to monitor technology systems for security incidents, review incident data and support...SuggestedWork at officeLocal area
$75.7k
...Security AnalystUW Information Technology (UW-IT) has an outstanding opportunity for Security Analyst to join their team.About this OpportunityReporting to Technology Manager, the Security Analyst serves as a technical security professional, supporting secure research...SuggestedFull timeTemporary workWork at officeDay shift$55.2k - $126k
Security Cooperation Analyst The Opportunity: Are you searching for a position where you can use your program analysis skills to make a difference? A program requires a significant investment of limited resources across multiple projects. With that level of complexity,...SuggestedFull timeContract workPart timeWork at officeLocal areaRemote work- ...organization’s needs. Take a shot at us for your IT requirements and experience a radical change. Job Description Participate in security planning and analyst activities. Performs security assessments and security attestations. Participates in security investigations and...Suggested
$120k - $140k
...Join to apply for the Consultant - Endpoint Security Analyst role at Kalles Group Join to apply for the Consultant - Endpoint Security Analyst role at Kalles Group This range is provided by Kalles Group. Your actual pay will be based on your skills and...Full timeRemote workFlexible hours- The University of Washington's Information Technology unit seeks a Security Analyst to implement and manage security controls across research computing and cloud environments. You will assess risks, drive best practices, and support compliance initiatives in a hybrid work...
- A software development company based in Bellevue is looking for a skilled Mobile Security Analyst to participate in security assessments and perform thorough analysis of vulnerabilities across applications. The ideal candidate will have substantial experience handling...
$100k
...We are seeking a highly skilled individual to join our team as a Threat Hunter / SOC Analyst. In this role, you will play a critical role in enhancing our operational security by conducting manual threat detection operations and proactively hunting for potential threats...Permanent employmentWork at officeRelocation- ...Client- Lululemon Location- Seattle, WA Hybrid 3 days need local Security Analyst / Engineer Job Summary We are seeking an experienced Security Analyst / Engineer to support the security posture of the Salesforce Service Cloud (SFSC) platform. The role...Temporary workLocal area
$117.2k - $176.7k
...the right place! Agentforce is the future of AI, and you are the future of Salesforce. The Experience Enterprise Security is looking for a Senior Analyst to support our Business Information Security Officers (BISOs) in their day-to-day work with Enterprise business unit...$148k - $203.5k
Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building the trusted... ...customers so they can effectively manage their risk. As a Senior level analyst of Customer Assurance, you will support prioritizing and...Work experience placementLocal areaWorldwideFlexible hours$129k - $171k
...networking technology to the military in months, not years. ABOUT THE TEAM Anduril's Detection and Response team is looking for a Security Operations Analyst to be the watchtower for Anduril's critical defense technologies. As a SecOps Analyst on the detection and response team,...Full timeWork experience placementImmediate start- ...class benefits are uniquely designed to support you and your family in staying well, growing professionally, and achieving financial security. We take care of you, so you can focus on delivering our Mission of caring for everyone, especially the most vulnerable in our...Remote jobMinimum wageLocal areaShift work
- Nscale, a GPU cloud provider for AI, seeks a Security Analyst to join their operations team in Seattle. You will triage alerts across endpoints, identities, SaaS, cloud, and network, investigate suspicious activity, and escalate high‑risk events to the appropriate owners...
$80k - $105k
Information Security Analyst At JH Kelly , we’re seeking a proactive, detail-oriented, and results-driven analyst to join our IT team and strengthen our security posture across the organization. If you thrive in a fast-paced environment, excel at identifying and driving...Work at office$1,600 per month
Profession Information Security City Washington DC USA The role of the Information Security Analyst is to protect and secure our organizations sensitive information and systems from potential cyber threats As an Information Security Analyst you will be responsible for...Full time- Salesforce is seeking a Senior Analyst within Enterprise Security to support BISOs, manage risk, and keep engagements with business units credible and well-documented. You will help track risks, prepare stakeholder materials, and coordinate cross-team efforts to safeguard...
$1,100 per month
Information Security Analyst vacancy in Washington USA Information Security Analyst - Washington, USA We are seeking a skilled Information Security Analyst to join our team in Washington. The ideal candidate will have a strong understanding of security protocols and technologies...Contract workVisa sponsorship$135k - $155k
...solutions with the ingenuity of the world's largest community of security researchers to continuously discover, validate, prioritize, and... ...the software development lifecycle. As a Product Security Analyst, you will join HackerOne's Technical Services organization and...ApprenticeshipLocal areaRemote workFlexible hoursShift workWeekend work- NextGen Federal Systems is seeking an Information Security Analyst to join our work supporting our DHS customer in Washington, DC. The ISA will report to the ISSM and provide security and compliance duties to assigned systems stakeholders. Duties include but are not limited...Work at office
- Prestige Greeters in Washington, USA is seeking an Information Security Analyst on a contract basis. The role focuses on protecting company data by monitoring security systems and performing risk assessments. No prior experience is required; fluent English is essential...Contract workRelocationVisa sponsorship
- Providence Enterprise Information Services is hiring a professional to manage moderately complex IT projects within a large healthcare system. The role involves requirements analysis, system implementation, and guiding project teams to stay on schedule while aligning with...
- Cisco’s Global Monitoring Center Analyst role puts you at the forefront of identifying and responding to events that could affect Cisco... ...incidents, and collaborate with partners to ensure a safe and secure environment for Cisconians. Responsibilities include monitoring...
- Providence is seeking a skilled Enterprise Information Services professional in Renton, WA. The role requires a Bachelor’s degree or equivalent, Epic accreditation within 90 days, and at least four years of industry experience. You will manage small to mid-size projects...
$80k - $105k
A leading construction firm in Seattle seeks an Information Security Analyst to enhance its security posture. The ideal candidate will have 3-6+ years of experience in information security, focusing on vulnerability management, auditing, and risk assessment. Responsibilities...$145k - $192.5k
...Bank of America, you can build a successful career with opportunities to learn, grow, and make an impact. Join us! The Sr. Cloud Security Analyst is responsible for designing, implementing, and managing security controls across multi-cloud environments, to ensure the...Work at officeFlexible hoursShift workDay shift- ...Job Description Job Description Role: Information Security Analyst Location: Bellevue, WA - On-Site 4 days per week Pay Rate: $50-57/hr W-2 Duration: 12 Month Contract Interview Process: 3-Steps Benefits: Medical, Dental, Vision, 401k Qualifications...Contract workWork experience placement
- ...class benefits are uniquely designed to support you and your family in staying well, growing professionally, and achieving financial security. We take care of you, so you can focus on delivering our Mission of caring for everyone, especially the most vulnerable in our...Minimum wageLocal areaRemote workShift work
$117.2k - $176.7k
...Salesforce leadership has the information needed to make strategic, risk-based decisions. The GCC team is a division within the Product Security Organization, and you'll play a pivotal role in partnering with engineering to translate complex mandates into actionable controls...Full time
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Analyst. Be the first to apply!
- security analyst Seattle, WA
- work from home security analyst Seattle, WA
- information security compliance analyst Seattle, WA
- junior security analyst Seattle, WA
- cloud security analyst Seattle, WA
- security operations analyst Seattle, WA
- rate analyst Seattle, WA
- information security analyst Seattle, WA
- bond analyst Seattle, WA
- entry level information security analyst Seattle, WA


