Full job description
StackAdapt is hiring a Senior Information Security Analyst to join the Security Architecture team. The role involves executing security architecture processes for business initiatives, engaging with project teams to identify security implications, producing clear security requirements, supporting the Information Security Architect, and improving internal security systems and processes. The analyst will use security tools such as SIEM, EDR, CNAPP, vulnerability scanning, email and web security gateways, and AI security tools to identify and mitigate risks. The role requires 3-5 years of experience in information security, strong communication skills, familiarity with security tooling and frameworks (ISO 27001, NIST, SOC 2, CIS Controls), and an interest in AI security. The position is remote-first, open to candidates in Canada and the US, with a preference for Eastern time zones. Benefits include competitive salary, retirement plans, paid time off, health benefits, work from home reimbursements, training, and a supportive culture.
What you'll do
- Execute the security architecture process for business initiatives from initial engagement through to confirming implementation of requirements
- Engage with project teams and PMO to understand changes, identify security implications, and produce actionable security requirements
- Support the Information Security Architect with analysis, reviews, and outputs
- Develop strong knowledge of internal security systems and processes and drive improvements
- Act as a point of contact for InfoSec queries, handling requests independently and escalating when appropriate
- Use security tooling including SIEM, EDR, CNAPP, vulnerability scanning, email and web security gateways, and AI security tools to identify and analyze risk areas
- Contribute to the adoption of AI tools in InfoSec work and support AI security strategy
Requirements
- 3–5 years of experience in an Information Security role
- Understanding of project security engagement and ability to assess changes and identify security implications
- Ability to produce clear, practical security requirements for technical and non-technical teams
- Hands-on experience or familiarity with security common tooling: SIEM, EDR, vulnerability management, or similar platforms
- Comfortable working autonomously on a varied workload and managing own queue of work
- Strong communication skills with engineers, product managers, and business stakeholders
- Curious, improvement-oriented mindset with ability to question and improve processes
- Awareness of common security frameworks and standards such as ISO 27001, NIST, SOC 2, or CIS Controls
- Interest in AI as a tool for security teams and as an emerging risk area
- Understanding of risk management including risk identification and mitigation strategies
Tech stack
SIEMEDRCNAPPvulnerability scanningemail security gatewaysweb security gatewaysAI security toolsAWSGCPAzure
Benefits
Highly competitive salaryRetirement/401K/Pension Savings globallyCompetitive paid time off packages including birthdays offAccess to a comprehensive mental health care programHealth benefits from day one of employmentWork from home reimbursementsOptional global WeWork membership with hubs in London and TorontoRobust training and onboarding programSupport for personal development initiatives (conferences, courses, books etc.)Access to StackAdapt programmatic courses and certificationsParental leave programFriendly, welcoming, and supportive cultureSocial and team events