Full-Time

Lead Security Risk Analyst

Confirmed live in the last 24 hours

Klaviyo

Klaviyo

1,001-5,000 employees

Marketing automation for e-commerce businesses

Data & Analytics
Consumer Software

Compensation Overview

$140k - $210kAnnually

Senior

Boston, MA, USA

Category
Cybersecurity
IT & Security
Required Skills
Kubernetes
SQL
Tableau
AWS
Amazon Quicksight
Requirements
  • Experience doing security risk assessments, co-creating risk treatment strategies, and influencing risk treatment prioritization across diverse business units (Engineering, IT, Finance, Legal, etc.)
  • Thorough understanding of cloud-native web application architectures, security threats, and security best practices, especially in the context of AWS and Kubernetes
  • Experience using data visualization tools and SQL to build and operationalize security metrics (e.g. Apache Superset, Tableau, Domo, Amazon QuickSight)
  • Experience with scalable approaches to threat modeling, secure design reviews, and risk assessment methods that balance rigor and efficiency (e.g. Mozilla’s Rapid Risk Assessment)
  • Experience with security automation and process streamlining, ideally in the context of security risk management
  • A strong bias toward evidence, logic, math, and reason when communicating risk (instead of fear, uncertainty, and doubt)
  • A strong bias toward 'guardrails, not gates' and 'paved security roads' philosophies (instead of rigid 'centralized command-and-control' thinking)
  • Excellent ability to plan, prioritize, and deliver results cross-functionally and in a timely fashion
  • Proficiency discussing complex, nuanced topics with technical & non-technical audiences alike, especially software engineering teams
  • Strong alignment with Klaviyo’s core values
Responsibilities
  • Lead and execute new Risk program maturity projects that introduce more rigorous, streamlined, and automated approaches to risk management
  • Partner with other departments and teams to drive mutual understanding of security risks they own and how to prioritize managing those risks in support of Klaviyo’s goals
  • Create, tune, and operationalize business relevant security metrics (KPIs, KRIs, KCIs) that demonstrably improve security outcomes across Klaviyo
  • Review new products, product features, and internal business projects to guide teams toward secure paths forward and away from accruing new security debt
  • Collaboratively define and enable teams about security policies and standards that clearly establish Klaviyo’s risk tolerance bar

Klaviyo offers marketing automation and customer data management tools tailored for e-commerce businesses. Their platform enables companies to collect and analyze customer information to create personalized marketing campaigns, including email and SMS outreach. Unlike competitors, Klaviyo focuses specifically on e-commerce and operates on a subscription model that scales with business needs. The company's goal is to help e-commerce businesses build stronger customer relationships and drive growth through data-driven marketing.

Company Stage

IPO

Total Funding

$757.3M

Headquarters

Boston, Massachusetts

Founded

2012

Growth & Insights
Headcount

6 month growth

3%

1 year growth

20%

2 year growth

41%
Simplify Jobs

Simplify's Take

What believers are saying

  • Klaviyo's successful IPO and substantial funding, including $1.478B, provide strong financial backing for future growth and innovation.
  • The launch of Klaviyo AI and its continuous feature expansion position the company as a leader in AI-driven marketing automation.
  • Strategic partnerships, such as with Nosto and LiftEngine, enhance Klaviyo's ecosystem and offer clients comprehensive solutions for personalized marketing.

What critics are saying

  • The competitive landscape in marketing automation is intense, with rivals like ConvertKit and Amazon's Buy With Prime posing significant threats.
  • Rapid expansion and the integration of new features may lead to operational challenges and potential service disruptions.

What makes Klaviyo unique

  • Klaviyo's deep integration with e-commerce platforms like Shopify and its focus on personalized marketing automation set it apart from broader marketing automation tools.
  • The company's robust AI suite, including features like Flows AI and review sentiment analysis, offers advanced capabilities that many competitors lack.
  • Klaviyo's Partner Programs connect businesses with expert agencies, enhancing the platform's usability and customer satisfaction.

Help us improve and share your feedback! Did you find this helpful?