Senior Security Analyst

Valon Mortgage

United States

Hybrid

USD 120,000 - 160,000

Full time

7 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Remote options
Health insurance
Parental leave
PTO & holidays

Job summary

Valon Mortgage is seeking a Sr. Security Analyst to join our growing security team. You will work closely with the Head of Security GRC to protect our systems, data, and cloud infrastructure across the organization.

You will implement frameworks (SOC 2, NIST CSF, CIS), support audits, manage risk registers, and build AI-assisted GRC workflows to scale security and compliance across functions. Maintain security metrics, KPIs, and collaborate with cross-functional teams to reduce risk and

Qualifications

  • Experience in security compliance, risk management and security program management.
  • Strong collaboration and communication skills across technical and non-technical stakeholders.
  • Hands-on with AI-assisted workflows and GRC tooling.

Responsibilities

  • Implement and maintain compliance with frameworks (SOC 2, NIST CSF, CIS) and regulatory requirements.
  • Support internal and external security audits and exams, including evidence gathering and remediation tracking.
  • Build AI-assisted GRC workflows to scale security and compliance across functions.
  • Maintain security risk register, risk assessments, and remediation processes.
  • Manage security governance projects and assist with other project management efforts.
  • Monitor security metrics, KPIs and reporting.
  • Support customer security due diligence processes.
  • Review, manage, and monitor security policies for compliance.
  • Facilitate remediation for security and compliance issues across stakeholders.
  • Manage vendor security risk assessments.
  • Support on-call and operational security activities including monitoring, incident management, and security training.

Skills

Security governance
Risk management
Regulatory compliance
Security program mgmt
Audits & controls
AI tooling in GRC
Cloud security
Security monitoring
Incident management
Vendor risk assessments

Education

Bachelor's degree in CS/InfoSec

Job description

  • We are seeking a motivated Sr. Security Analyst to join our growing team! As a key security member working closely with the Head of Security GRC and the Security team at Valon, you will play a critical role in ensuring the security of our organization’s systems, cloud infrastructure, products and data
  • This position requires a strong foundation in security risk and compliance principles, hands‑on experience leveraging AI-assisted processes to strengthen GRC functions and operational activities, an automation first mindset, and a proactive approach to problem-solving. You will collaborate with cross‑functional teams to protect our most critical assets and uphold trust with our customers and stakeholders
  • Implement and maintain compliance with frameworks (SOC 2, NIST CSF, CIS) and regulatory requirements (NYDFS, GLBA, Safeguards, CCPA and related)
  • Support internal and external security audits and exams, including evidence gathering and remediation tracking
  • Build AI assisted GRC workflows for scaling GRC and security functions
  • Maintain and manage security risk register, risk assessments, and remediation processes
  • Manage security governance and compliance projects, and assist with other project management efforts
  • Manage security metrics, KPIs and reporting
  • Support customer security due diligence processes
  • Review, manage, and monitor security policies for compliance
  • Facilitate remediation for security and compliance issues across stakeholders
  • Manage vendor security risk assessments
  • Support on-call and operational security activities including security monitoring, incident management, general security reviews, security awareness and training, and other tasks
Benefits
  • Compensation: You’ll receive a highly competitive compensation package with room to grow.
  • Time Away: We offer a generous PTO program, sick time, and company holidays.
  • Flexible Work: Remote, hybrid, or in-office. We’ve got it all and aim for you to work where it works. Where possible, we offer geographic flexibility.
  • Health Benefits: Health, dental, and vision insurance are all company-sponsored to keep you healthy and strong.
  • Parental Leave: Birthing and non-birthing parents receive 12 weeks of fully paid time to welcome a new child.

Experience or exposure to startup environments is a plusProven experience in a security analyst related role, with a focus on security compliance, risk management, security issue management, and/or security program managementBasic knowledge of cloud security and public cloud environmentsStrong organization and project management skillsSelf-starter that can work autonomously, be agile, and balance multiple projects and operational effortsExcellent communication and collaboration skills, with the ability to explain security concepts to technical and non-technical stakeholdersExperience or exposure to financial services or tech organizations is a plusExperience maintaining a security risk register and issue management processesExperience developing, automating, and scaling security and GRC processes leveraging AI tools / agentic capabilitiesExperience with security and compliance frameworks and requirements (OWASP, SOC 2, NIST CSF / 800-53, ISO 27001/2, CIS, NYDFS, CCPA or others.)Bachelor’s degree in Computer Science, Information Security, Technology, or a related fieldExperience with operational activities including issue management, security reviews, control monitoring, incident management, and reportingExperience with security compliance frameworks and risk assessmentsHand-on experience with AI tooling and assisted workflowsMinimum of 5+ years as a security analyst or security program manager with relevant responsibilities and backgroundRelevant security certifications based on career experience (CompTIA Security+, CC, SSCP or related), or seasoned career level (CISSP, CISM, CRISC or related)

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security Analyst
Senior Security Analyst

Apply • New York (NY), Northern (KY)

Hybrid
USD 115,000 - 145,000
Equity stake
401k plan
Health benefits
+4
Senior Security Analyst - AI-Driven GRC & Compliance
Senior Security Analyst - AI-Driven GRC & Compliance

Apply • New York (NY), Northern (KY)

Hybrid
USD 115,000 - 145,000
Equity stake
401k plan
Health benefits
+4
GRC Analyst
GRC Analyst

Fireworks AI • San Mateo (CA)

On-site
USD 110,000 - 170,000
Senior Security Analyst - Remote, AI-GRC & Compliance
Senior Security Analyst - Remote, AI-GRC & Compliance

Valon Technologies • San Francisco (CA)

On-site
USD 115,000 - 145,000
Equity
401(k)
Health insurance
+2
Senior Security Analyst - AI-Driven GRC & Risk Management
Senior Security Analyst - AI-Driven GRC & Risk Management

Valon Mortgage • United States

Hybrid
USD 120,000 - 160,000
Remote options
Health insurance
Parental leave
+1
Information Security Analyst - GRC & Operations
Information Security Analyst - GRC & Operations

WHSmith North America • Las Vegas (NV)

Hybrid
USD 70,000 - 110,000
Senior Cybersecurity Risk & Governance Analyst
Senior Cybersecurity Risk & Governance Analyst

mTrade, LLC. • Oxford (MS)

On-site
USD 110,000 - 160,000
Senior Cybersecurity Risk & Governance Analyst
Senior Cybersecurity Risk & Governance Analyst

Mortgage-Trade-Holding-Company,-LL • Oxford (MS)

On-site
USD 110,000 - 150,000
Manager Security Compliance and Risk Management
Manager Security Compliance and Risk Management

RELX • Raleigh (NC)

On-site
USD 118,000 - 220,000
Annual incentive bonus
Information Security Analyst
Information Security Analyst

Cisive • Maryland

Hybrid
USD 80,000 - 110,000