Security Analyst III

Lucid Software

Salt Lake City (UT)

On-site

USD 100,000 - 140,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Lucid Software is seeking a Security & Compliance professional to lead third-party risk management, ensure SOC 2 and ISO 27001 compliance, and support cross-functional teams. The role emphasizes translating security concepts into clear documentation and fostering collaboration across Legal, Engineering, IT, Finance, and HR.

Responsibilities include risk assessments, security questionnaires, evidence collection for audits, and driving training programs to cultivate a security-aware culture within

Qualifications

  • Bachelor’s degree in information security, business management, or related field.
  • 3+ years of third-party risk management and GRC experience.
  • Familiarity with NIST 800-53, ISO 27001, SOC 2.
  • Excellent written and verbal communication for clear documentation.
  • Strong cross-functional collaboration with non-technical and technical teams.

Responsibilities

  • Conduct third-party vendor risk assessments and internal risk evaluations; identify, document, and report on potential vulnerabilities and control gaps.
  • Respond to standard vendor security questionnaires and support internal teams in answering security-related questions from prospects.
  • Track and collect evidence for ongoing SOC 2 and ISO 27001 compliance audits.
  • Proactively identify emerging threats and collaborate with senior team members to develop security solutions.
  • Coordinate and deliver security awareness training programs to employees.
  • Assure compliance to outside regulations affecting the Company.
  • Collect and maintain security and compliance metrics for team dashboards.
  • Partner with Legal, Engineering, IT, Finance, and HR to ensure security policies are understood and followed.
  • Identify operational inefficiencies and areas for improvement in security controls.

Skills

Vendor risk management
GRC processes
SOC 2 compliance
NIST 800-53
ISO 27001
Cloud security

Education

Bachelor's degree in information security

Job description

Lucid Software is the leader in visual collaboration and work acceleration, helping teams see and build the future by turning ideas into reality. Our products, business, and workplace culture have received numerous awards, such as being named to the Forbes Cloud 100 and a Fortune Best Workplace in Technology. Lucid is a hybrid workplace, allowing employees to work remotely, from one of our offices, or a combination of the two depending on the needs of the role and team. At Lucid, we hold true to our core values of teamwork over ego, innovation in everything we do, individual empowerment, initiative, and ownership, and passion and excellence in every area. We value diverse perspectives and are dedicated to creating an environment that is respectful and inclusive for everyone.

Responsibilities
  • Conduct third-party vendor risk assessments and internal risk evaluations; identify, document, and report on potential vulnerabilities and control gaps.
  • Respond directly to standard vendor security questionnaires and support internal teams (i.e. Sales, Customer Success, etc.) in answering security-related questions from prospects.
  • Track and collect evidence for ongoing SOC 2 and ISO 27001 compliance audits.
  • Proactively identify emerging threats and associated risks to existing business processes and corporate assets, and collaborate with senior team members to develop practical security solutions.
  • Coordinate and deliver security awareness training programs to employees to foster a strong security culture.
  • Assure compliance to outside regulations affecting the Company.
  • Collect and maintain impactful security and compliance metrics for team dashboards.
  • Partner with Legal, Engineering, IT, Finance, and HR to ensure corporate security policies are understood and followed.
  • Identify operational inefficiencies and areas for improvement in our existing security controls, and help design smoother workflows.
Requirements
  • Bachelor’s degree in information security assurance, business management, or a related field.
  • 3+ years of experience with third party risk management, GRC, customer due diligence, etc.
  • Understanding of common security frameworks and principles (e.g. NIST 800-53, ISO 27001, SOC 2, etc). Strong organizational skills with the ability to manage tasks independently and meet deadlines with minimal oversight on daily routines.
  • Excellent verbal and written skills; comfortable translating security concepts into clear documentation.
  • Strong interpersonal skills with a track record of building positive relationships across non-technical teams (like Legal, HR, Finance) and technical teams (like IT and Engineering) to resolve security risks collaboratively.
Preferred Qualifications
  • Prior experience working within a modern SaaS environment or cloud-first technology company, with a basic familiarity of how cloud applications operate.
  • Prior knowledge of and skill in applying risk management principles and practices.
  • One or more preferred Certification(s): CRISC, CISSP, CISA, SSCP, CC, Security+, CySA+, etc.
  • Strong understanding of cloud environments (AWS, GCP, or Azure).
  • Experience with process improvement, efficiency enhancements, and automation of GRC and Security Assurance functions. Ability to use AI tools to enhance and enable work flows and automation.

As set forth in Lucid Software’s Equal Employment Opportunity policy,we do not discriminate on the basis of any protected group status under any applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Analyst III
Security Analyst III

Lucid Software • Raleigh (NC)

On-site
USD 90,000 - 120,000
Security Analyst III
Security Analyst III

Lucidsoftware • Salt Lake City (UT)

Hybrid
USD 90,000 - 120,000
Security Analyst III
Security Analyst III

Lucidsoftware • Raleigh (NC)

Hybrid
USD 85,000 - 120,000
Security Analyst III
Security Analyst III

Lucid • Salt Lake City (UT)

Hybrid
USD 70,000 - 100,000
Security Analyst III
Security Analyst III

Lucid • Raleigh (NC)

Hybrid
USD 80,000 - 120,000
Security Analyst
Security Analyst

Lucidsoftware • Raleigh (NC)

Hybrid
USD 70,000 - 90,000
Security Analyst
Security Analyst

Lucidsoftware • Salt Lake City (UT)

Hybrid
USD 70,000 - 110,000
Security Analyst
Security Analyst

Lucid Software • Raleigh (NC)

Hybrid
USD 65,000 - 90,000
Security Analyst
Security Analyst

Lucid • Raleigh (NC)

Hybrid
USD 70,000 - 100,000
Security Analyst
Security Analyst

Lucid • Salt Lake City (UT)

Hybrid
USD 70,000 - 100,000