Simplify Logo

Full-Time

Lead Security Risk Analyst

Confirmed live in the last 24 hours

Klaviyo

Klaviyo

1,001-5,000 employees

Marketing automation for e-commerce businesses

Consumer Software
Fintech

Compensation Overview

$132k - $198kAnnually

Senior

San Francisco, CA, USA

Category
Cybersecurity
IT & Security
Required Skills
Kubernetes
Python
Airflow
SQL
Tableau
AWS
REST APIs
Amazon Quicksight
Databricks
Snowflake
Requirements
  • Experience doing security risk assessments, co-creating risk treatment strategies, and influencing risk treatment prioritization across diverse business units (Engineering, IT, Finance, Legal, etc.)
  • Thorough understanding of cloud-native web application architectures, security threats, and security best practices, especially in the context of AWS and Kubernetes
  • Experience using data visualization tools and SQL to build and operationalize security metrics (e.g. Apache Superset, Tableau, Domo, Amazon QuickSight)
  • Experience with scalable approaches to threat modeling, secure design reviews, and risk assessment methods that balance rigor and efficiency (e.g. Mozilla’s Rapid Risk Assessment)
  • Experience with security automation and process streamlining, ideally in the context of security risk management
  • A strong bias toward evidence, logic, math, and reason when communicating risk (instead of fear, uncertainty, and doubt)
  • A strong bias toward “guardrails, not gates” and “paved security roads” philosophies (instead of rigid “centralized command-and-control” thinking)
  • Excellent ability to plan, prioritize, and deliver results cross-functionally and in a timely fashion
  • Proficiency discussing complex, nuanced topics with technical & non-technical audiences alike, especially software engineering teams
  • Strong alignment with Klaviyo’s core values
  • Bonus points if you have any of the following: Experience building tools with REST APIs and Python, Experience with data engineering tools (e.g. dbt, Airflow, Airbyte) or data lake platforms (e.g. Snowflake, Databricks), Experience with cyber risk quantification (CRQ) tools and frameworks (e.g. FAIR, RiskLens, Safe Security, etc.)
Responsibilities
  • Lead and execute new Risk program maturity projects that introduce more rigorous, streamlined, and automated approaches to risk management
  • Partner with other departments and teams to drive mutual understanding of security risks they own and how to prioritize managing those risks in support of Klaviyo’s goals
  • Create, tune, and operationalize business relevant security metrics (KPIs, KRIs, KCIs) that demonstrably improve security outcomes across Klaviyo
  • Review new products, product features, and internal business projects to guide teams toward secure paths forward and away from accruing new security debt
  • Collaboratively define and enable teams about security policies and standards that clearly establish Klaviyo’s risk tolerance bar

Klaviyo offers marketing automation and customer data management tools tailored for e-commerce businesses. Their platform enables companies to collect and analyze customer information to create personalized marketing campaigns, including email and SMS outreach. Unlike competitors, Klaviyo focuses on e-commerce and operates on a subscription model that allows businesses to scale their marketing efforts. The goal of Klaviyo is to help e-commerce businesses build stronger customer relationships through data-driven strategies.

Company Stage

IPO

Total Funding

$1.5B

Headquarters

Boston, Massachusetts

Founded

2012

Growth & Insights
Headcount

6 month growth

3%

1 year growth

22%

2 year growth

40%
Simplify Jobs

Simplify's Take

What believers are saying

  • Klaviyo's successful IPO and substantial funding, including $1.478B, provide strong financial backing for future growth and innovation.
  • The launch of Klaviyo AI and its continuous feature expansion position the company as a leader in AI-driven marketing automation.
  • Strategic partnerships, such as with Nosto and LiftEngine, enhance Klaviyo's ecosystem and offer clients comprehensive solutions for personalized marketing.

What critics are saying

  • The competitive landscape in marketing automation is intense, with rivals like ConvertKit and Amazon's Buy With Prime posing significant threats.
  • Rapid expansion and the integration of new features may lead to operational challenges and potential service disruptions.

What makes Klaviyo unique

  • Klaviyo's deep integration with e-commerce platforms like Shopify and its focus on personalized marketing automation set it apart from broader marketing automation tools.
  • The company's robust AI suite, including features like Flows AI and review sentiment analysis, offers advanced capabilities that many competitors lack.
  • Klaviyo's Partner Programs connect businesses with expert agencies, enhancing the platform's usability and customer satisfaction.

Help us improve and share your feedback! Did you find this helpful?