Security Operations Analyst III
New York, NY or US - Remote
Vimeo, Inc.
The video platform trusted by 287 million creatives, entrepreneurs, and businesses. Everything you need to create, manage, and share stunning videos.As a Security Operations Analyst III at Vimeo, you will engage in a variety of activities, either offensive, defensive, or some combination thereof, ultimately aimed at safeguarding our 300+ million users who entrust Vimeo with their content every day.
You’ll plan, carry out, and lead security initiatives to monitor and protect sensitive data and systems from infiltration and cyber-attacks.
You will likely collaborate frequently with and support developers, as well as members of the infrastructure security team, the compliance team, IT, Product, and other teams throughout the organization.
You love to solve puzzles, and are a great team player.
This role is on-call once a month.
What you'll do:
Depending on your preferences and the current needs of the team, you may either focus on just some of the following areas, or you may choose to become involved with all of them.
- You will act as the primary analyst for security incidents detected by EDR and other security monitoring solutions.
- Analyze and triage security alerts, prioritizing based on severity, potential impact, and threat intelligence
- Conduct security assessments of our systems and infrastructure to identify vulnerabilities and risks, identify risk owners, and implement mitigating controls.
- Implement and operate cloud security hardening and cloud security posture management across Google Cloud and AWS.
- Collaborate with SRE, AppSec and Information technology around vulnerability management, detection, and response.
- Automate security processes using scripting and other automation tools.
- Collaboration with the compliance and privacy team — help ensure that our company complies with industry best practices and standards
- Help strengthen our own internal processes and procedures
Skills and knowledge you should possess:
- 3+ years of experience in security operations, incident response, or vulnerability management
- 2+ years of hands-on experience with EDR platforms (CrowdStrike)
- Strong understanding of security frameworks such as NIST, MITRE ATT&CK, and incident response methodologies
- Familiarity with SIEM platforms and log analysis techniques
- Bachelor's degree in Computer Science, Information Technology, or a related field, or equivalent work experience.
- Good communication and interpersonal skills.
Bonus points (nice skills to have, but not needed):
- Knowledge of cloud security principles and tools (AWS, GCP security services)
- Experience with container security and orchestration platforms
- Experience with vulnerability management tools (Wiz, Qualys, Rapid7, etc.) and vulnerability assessment methodologies
- Knowledge of common attack vectors, malware analysis, and digital forensics principles
- Experience with scripting languages (Python, PowerShell, Bash) for automation tasks
- Relevant certifications such as CISSP, CCSP, or AWS Certified Security Specialty are a plus.
- Experience with automation tools such as Terraform, Ansible, or Chef.
- Understanding of compliance frameworks (SOC 2, HIPAA, FedRAMP)
Base Salary Range:
- NYC Metro, Bay Area, Seattle, & Los Angeles: $101,000 to $139,250
- All other US cities outside above metro areas: $90,900 to $125,325
At Vimeo, we strive to hire and nurture amazing talent across the globe. Actual salaries will vary depending on factors including but not limited to experience, specialized skills, internal alignment, and location. Base salary is just one component of Vimeo's total rewards philosophy.
We offer a wide range of benefits, perks, variable compensation and where eligible long-term incentive programs.
We also offer paid time off, generous 401k match, commuter benefits, Health Savings Account (HSA), Flexible Spending Account (FSA), fertility reimbursement, group term life insurances, wellbeing resources, and more.
#LI-MM1
About Us:
Vimeo (NASDAQ: VMEO) is the world's most innovative video experience platform. We enable anyone to create high-quality video experiences to better connect and bring ideas to life. We proudly serve our community of millions of users – from creative storytellers to globally distributed teams at the world's largest companies – whose videos receive billions of views each month. Learn more at www.vimeo.com. Vimeo is headquartered in New York City with offices around the world. At Vimeo, we believe our impact is greatest when our workforce of passionate, dedicated people, represents our diverse and global community. We’re proud to be an equal opportunity employer where diversity, equity, and inclusion is championed in how we build our products, develop our leaders, and strengthen our culture.Tags: Ansible Application security Automation AWS Bash CCSP CISSP Cloud Compliance Computer Science CrowdStrike CSPM EDR FedRAMP Forensics GCP HIPAA Incident response Log analysis Malware MITRE ATT&CK Monitoring NIST PowerShell Privacy Python Qualys Scripting Security assessment SIEM SOC SOC 2 Terraform Threat intelligence Vulnerabilities Vulnerability management
Perks/benefits: 401(k) matching Equity / stock options Fertility benefits Flexible spending account Flex vacation Health care Salary bonus
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.