Familiarity with cloud computing security controls
**
Betterment at Work is seeking an Information Security Analyst with at least 2 years of experience in technology operations, audit, or governance, risk, and compliance (GRC). The role involves performing risk assessments, monitoring vulnerabilities, and supporting security programs within a collaborative team environment. This position is based in New York City and offers a competitive salary and benefits.
**
Job Summary
The role operates within the Govern & Control team as an independent second line-of-defense integrated with the broader security program.
Responsibilities include performing application-level risk assessments, managing vulnerability remediation, and gathering evidence for audits.
The company offers competitive benefits including medical, dental, vision, generous parental leave, and lunch from an in-house chef.
Matching Summary
Match Score: 75
**
Betterment at Work is seeking an Information Security Analyst with at least 2 years of experience in technology operations, audit, or governance, risk, and compliance (GRC). The role involves performing risk assessments, monitoring vulnerabilities, and supporting security programs within a collaborative team environment. This position is based in New York City and offers a competitive salary and benefits.
**
Salary
Base: $115,000-$125,000; Bonus/Equity: Eligible for variable compensation incentive bonus; Benefits: Medical, dental, vision, life insurance, flexible PTO, professional development
Skills & Requirements
Must-have
2+ years experience in technology operations
Knowledge of security risk management principles
Familiarity with cloud computing security controls
Experience with logical access management processes
Ability to perform third-party due diligence
Nice-to-have
Experience using AI and automation tools
Background in public accounting or internal audit
Interest in security awareness training activities
Collaboration with engineering and compliance teams
Key Requirements
2+ years experience in technology operations, audit, or GRC
Knowledge of CIA triad and control governance frameworks
Familiarity with SaaS application security controls