This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
As a Technical Security Analyst on the Trust team, you'll be a part of a highly adaptable group of folks who dig deep into security systems and workflows. You will collaborate with Engineers, Technical Program Managers, and cross-functional teams to help protect our merchants and company while supporting Shopify's rapid pace of development. You will be an essential member of our group of security professionals and a key player in operating and refining security controls that support Shopify’s programs, platforms, and products. As a Technical Security Analyst, you’ll be leveraging your expertise in technology and security, along with your knowledge of Shopify’s products, applications and infrastructure, to understand and manage risk. You will be developing, performing, and improving technical controls that are foundational components of Shopify’s security programs.
Job Responsibility:
provide operational security guidance to ensure programs are running effectively, efficiently and without gaps
collaborate with cross functional teams and gather evidence for assessments, implementations, and use of new tools and workflows
automate and improve security workflows and tasks across the scope of our security programs
evaluate and instantiate the third parties, and build controls that balance security with speed
monitor Shopify’s current control stack and make recommendations to reduce security risk
lead and contribute to projects that build out and harden security at Shopify
contribute to the management and execution of cyclical controls within operational frameworks
collect evidence and samples to support audit activities and ensure compliance with relevant standards
supporting the development and implementation of new projects and initiatives, ensuring alignment with strategic goals
increase automation and reducing toil in existing controls, and finding new ways to protect Shopify against emerging risks
utilize data and key metrics to understand Shopify’s security program
develop and share security best practices
Requirements:
an understanding of information security fundamentals, privacy and compliance standards
an understanding of cloud technologies, containerized environments and infrastructure as code
experience working with compliance teams or auditors and familiarity with compliance programs such as SOC, PCI, or SOX
experience building or maintaining controls and security safeguards for frameworks
experience using automation to simplify security and IT practices
familiarity with AI tooling, and how to integrate it to accelerate your workflows and augment your skills
ability to create and maintain trusted relationships
excellent communication skills, including technical breakdowns