CrashPlan · 17 hours ago
Information Security Analyst, GR&C
CrashPlan provides cyber-ready data resilience and governance in a single platform for organizations. They are seeking an Information Security Analyst to support risk management and compliance functions, focusing on security assessments, compliance audits, and risk remediation strategies.
Cloud StorageData StorageInformation ServicesInformation TechnologySoftware
Responsibilities
Conducting security and privacy risk assessments and security consulting engagements
Conducting information security assessments of third-party vendors
Maintaining reporting and tracking for information security and privacy risks and working closely with risk owners to remediate
Conducting periodic business continuity and disaster recovery testing
Responding to customer and prospect security questions related to CrashPlan's products and security posture
Supporting information security and privacy compliance audits and initiatives (e.g. SOC2, ISO 27001, PCI-DSS, GDPR) including day to day management of the GRC platform and continuous monitoring activities
Conducting internal audits
Managing the security training and awareness program and phishing simulations
Facilitating change management
Prioritizing risks efficiently and appropriately; challenging assumptions and methodologies
Triaging and prioritizing vulnerabilities for remediation
Developing and maintaining cross-functional partnerships, and partnering with SMEs to determine appropriate risk-based remediation strategies
Qualification
Required
Bachelor's Degree in Computer Science, Information Systems, Cybersecurity, or related discipline and/or equivalent experience
3+ years professional experience in a similar role
Knowledge of/experience working with NIST 800-53, ISO 27001, SOC2, GDPR, DPF and other relevant security and privacy frameworks
Knowledge of/experience with third Party Security, Policy management, Customer Security Assurance, and/or Security Awareness
Experience conducting data privacy and security risk assessments and impact analysis
Preferred
One or more information security or privacy certifications (e.g. CISSP, CISM, CIPP)
Experience using vulnerability scan tools and threat and vulnerability management
Experience with Azure and AWS environments
Benefits
Medical
Dental
Vision
401k match
Company
CrashPlan
CrashPlan® provides peace of mind through secure, scalable, straightforward endpoint data backup for any organization.
Funding
Current Stage
Growth StageTotal Funding
unknown2022-08-03Acquired
Recent News
SalesTech Star
2025-11-19
2025-10-27
Company data provided by crunchbase