Full-Time

Lead Security Risk Analyst

Updated on 4/7/2025

Klaviyo

Klaviyo

1,001-5,000 employees

Marketing automation for e-commerce businesses

Compensation Overview

$140k - $210k/yr

+ Annual Cash Bonus + Variable Compensation + Equity + Sign-on Payments

Senior, Expert

Boston, MA, USA

Massachusetts Applicants: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment.

Category
Cybersecurity
IT & Security
Required Skills
Kubernetes
SQL
Tableau
AWS
Risk Management
Amazon Quicksight
Requirements
  • Experience doing security risk assessments, co-creating risk treatment strategies, and influencing risk treatment prioritization across diverse business units (Engineering, IT, Finance, Legal, etc.)
  • Thorough understanding of cloud-native web application architectures, security threats, and security best practices, especially in the context of AWS and Kubernetes
  • Experience using data visualization tools and SQL to build and operationalize security metrics (e.g. Apache Superset, Tableau, Domo, Amazon QuickSight)
  • Experience with scalable approaches to threat modeling, secure design reviews, and risk assessment methods that balance rigor and efficiency (e.g. Mozilla’s Rapid Risk Assessment)
  • Experience with security automation and process streamlining, ideally in the context of security risk management
Responsibilities
  • Lead and execute new Risk program maturity projects that introduce more rigorous, streamlined, and automated approaches to risk management
  • Partner with other departments and teams to drive mutual understanding of security risks they own and how to prioritize managing those risks in support of Klaviyo’s goals
  • Create, tune, and operationalize business relevant security metrics (KPIs, KRIs, KCIs) that demonstrably improve security outcomes across Klaviyo
  • Review new products, product features, and internal business projects to guide teams toward secure paths forward and away from accruing new security debt
  • Collaboratively define and enable teams about security policies and standards that clearly establish Klaviyo’s risk tolerance bar
Desired Qualifications
  • Experience building tools with REST APIs and Python
  • Experience with data engineering tools (e.g. dbt, Airflow, Airbyte) or data lake platforms (e.g. Snowflake, Databricks)
  • Experience with cyber risk quantification (CRQ) tools and frameworks (e.g. FAIR, RiskLens, Safe Security, etc.)

Klaviyo provides marketing automation and customer data management tools specifically designed for e-commerce businesses. Their platform allows companies to collect, store, and analyze customer data, which helps in creating personalized marketing campaigns. Businesses can use Klaviyo to implement automated marketing strategies such as email and SMS campaigns, as well as personalized product recommendations, which are essential for enhancing customer engagement and loyalty. Unlike many competitors, Klaviyo operates on a subscription-based model, where clients pay based on the number of contacts and services needed, ensuring a consistent revenue stream while allowing businesses to scale their marketing efforts. The goal of Klaviyo is to empower e-commerce businesses to build stronger relationships with their customers through data-driven insights and marketing automation.

Company Size

1,001-5,000

Company Stage

IPO

Headquarters

Boston, Massachusetts

Founded

2012

Simplify Jobs

Simplify's Take

What believers are saying

  • Klaviyo is recognized as the top SMS marketing platform for 2025.
  • The launch of Email AI streamlines content creation and personalization.
  • Shopify's $100 million investment supports Klaviyo's growth in AI-driven marketing.

What critics are saying

  • Increased competition from AI-driven platforms may erode Klaviyo's market share.
  • Data privacy regulations could impose additional compliance costs for Klaviyo.
  • Economic downturns may lead to reduced marketing budgets affecting Klaviyo's revenue.

What makes Klaviyo unique

  • Klaviyo offers seamless integration with e-commerce platforms for personalized marketing campaigns.
  • The platform's AI-driven tools enhance content creation and customer engagement.
  • Klaviyo's subscription model provides scalable marketing solutions for businesses of all sizes.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health Insurance

Dental Insurance

Vision Insurance

Health Savings Account/Flexible Spending Account

401(k) Company Match

Paid Holidays

Professional Development Budget

Growth & Insights and Company News

Headcount

6 month growth

-1%

1 year growth

-1%

2 year growth

-1%
Klaviyo
Mar 24th, 2025
Build better customer relationships with automated SMS conversations, mobile in-app messaging, and custom objects

This month, Klaviyo Inc. is proud to announce three new features designed to help marketers personalize even further, and across more channels.

Top Growth Marketing
Mar 21st, 2025
Klaviyo AI: How to Leverage It to Make Better Content

In early 2024, Klaviyo announced Email AI - their AI-powered feature that can help you streamline email content creation.

Klaviyo
Mar 11th, 2025
Introducing the K:Partners program: multiply your impact, accelerate your growth

At Klaviyo, Klaviyo Inc. is taking that to the next level with the launch of the K:Partners Program - an evolution designed to empower its partners, accelerate success, and amplify the value Klaviyo Inc. deliver together.

The Manila Times
Mar 8th, 2025
Best SMS Marketing Platforms (2025): Klaviyo Named Top SMS Marketing Service by Expert Consumers

Expert Consumers has recognized Klaviyo as the top SMS marketing platform for 2025

HR Tech Wire
Feb 26th, 2025
Klaviyo to Participate in Morgan Stanley Technology, Media & Telecom Conference

Klaviyo (NYSE: KVYO), the only CRM built for B2C brands, today announced that Andrew Bialecki, Co-Founder and CEO, will participate in a fireside chat at the Morgan Stanley Technology, Media & Telecom Conference on Tuesday, March 4, 2025 at 7:50 p.m. ET / 4:50 p.m. PT.