At TreviPay, we believe loyalty begins at the payment. We are seeking a Senior Information Security Analyst with deep experience in both security operations and audit/compliance execution.
Requirements
- Monitor and triage security alerts from SIEM, EDR, IDS/IPS, CSPM, and other telemetry sources;
- Conduct incident investigations and document findings, scope, root cause, and remediation actions;
- Lead or support incident response activities including containment, eradication, and recovery;
- Develop, maintain, and tune detection logic, alerting, and response playbooks and runbooks;
- Maintain, administer, and optimize security tools and platforms;
- Partner with IT and Engineering teams to remediate vulnerabilities, harden configurations, and improve overall security controls;
- Support and lead audit readiness for PCI DSS and ISO/IEC 27001;
- Coordinate evidence collection and manage auditor interactions;
- Perform gap assessments and track remediation efforts;
- Maintain ISMS documentation, policies, and procedures;
- Assist with risk assessments and continuous compliance activities;
Benefits
- Competitive salary
- Paid parental leave
- Generous paid time off
- Medical, dental, vision, FSA, Life/AD&D, long and short term disability
- 401K matching
- Employee referral program