Vendor Security Analyst
Company Description
Block is one company built from many blocks, all united by the same purpose of economic empowerment. The blocks that form our foundational teams — People, Finance, Counsel, Hardware, Information Security, Platform Infrastructure Engineering, and more — provide support and guidance at the corporate level. They work across business groups and around the globe, spanning time zones and disciplines to develop inclusive People policies, forecast finances, give legal counsel, safeguard systems, nurture new initiatives, and more. Every challenge creates possibilities, and we need different perspectives to see them all. Bring yours to Block.
Job Description
We are looking for a Threat Intelligence Team member that will support the foundational teams (People, Finance, Legal, IT). To be successful, we need someone who can quickly digest new concepts, business requirements, and associated risks and can collaborate with their partner teams and with the security team to identify what risks we should accept, which we should mitigate, how, and why. This means broad security knowledge, an ability to gain technical depth quickly when necessary, and the soft skills (collaboration, ability to communicate security risks to non-engineers) and leadership required to effectively collaborate across many teams at once.
Qualifications
The Threat Intelligence and Operations Team at Block is designed as a pre-breach/preventative intelligence and vulnerability research resource for Block. Through the discovery of key intelligence requirements across the ecosystem, the Threat Intel team can deliver highly specialized information to all identified stakeholders. Additionally the team will support the vendor security review process and the security vulnerability management process through careful data risk analysis, security reviews, targeted research, reverse engineering and malware analysis.
You will:
- Work directly with foundational teams to audit Block’s SaaS / IaaS / PaaS business systems
- Perform vendor risk assessment for third-party solutions that address security threats
- Collaborate on security policies, requirements, and guidelines to address Workforce security risk
- Communicate, document, prioritize, and drive security remediation to completion
- Influence secure designs and roadmaps for effective risk management
- Help mature the Vendor Security review process with a strong emphasis on automation
- Work with key stakeholder teams to share Workforce related trends to ensure continuity across multiple workstreams
- Work with a dynamic, fast-paced, and geographically-distributed team of experts
You should have:
- Strong knowledge of risk countermeasures and compensating controls
- Knowledge of vendor security review processes, procedures and relevant tools
- Facility with empathetic interpersonal interactions via video conference
- A thoughtful approach to technical analysis and ability to quickly assess new platforms
- Five years of demonstrated security & risk management experience working in a technology-focused company
Ideal candidate would have:
- Experience working in a remote team environment
- Curiosity and interest in learning new technologies
- Passion to enable everyone to participate and thrive in the economy
Additional Information
Block takes a market-based approach to pay, and pay may vary depending on your location. U.S. locations are categorized into one of four zones based on a cost of labor index for that geographic area. The successful candidate’s starting pay will be determined based on job-related skills, experience, qualifications, work location, and market conditions. These ranges may be modified in the future.
Zone A: USD $152,100 - USD $185,900
Zone B: USD $144,500 - USD $176,700
Zone C: USD $136,900 - USD $167,300
Zone D: USD $129,300 - USD $158,100
To find a location’s zone designation, please refer to this resource. If a location of interest is not listed, please speak with a recruiter for additional information.
Benefits include the following:
- Healthcare coverage
- Retirement Plans including company match
- Employee Stock Purchase Program
- Wellness programs, including access to mental health, 1:1 financial planners, and a monthly wellness allowance
- Paid parental and caregiving leave
- Paid time off
- Learning and Development resources
- Paid Life insurance, AD&D. and disability benefits
- Perks such as WFH reimbursements and free access to caregiving, legal, and discounted resources
This role is also eligible to participate in Block's equity plan subject to the terms of the applicable plans and policies, and may be eligible for a sign-on bonus. Sales roles may be eligible to participate in a commission plan subject to the terms of the applicable plans and policies. Pay and benefits are subject to change at any time, consistent with the terms of any applicable compensation or benefit plans.
We’re working to build a more inclusive economy where our customers have equal access to opportunity, and we strive to live by these same values in building our workplace. Block is a proud equal opportunity employer. We work hard to evaluate all employees and job applicants consistently, without regard to race, color, religion, gender, national origin, age, disability, veteran status, pregnancy, gender expression or identity, sexual orientation, citizenship, or any other legally protected class.
We believe in being fair, and are committed to an inclusive interview experience, including providing reasonable accommodations to disabled applicants throughout the recruitment process. We encourage applicants to share any needed accommodations with their recruiter, who will treat these requests as confidentially as possible. Want to learn more about what we’re doing to build a workplace that is fair and square? Check out our I+D page.
Additionally, we consider qualified applicants with criminal histories for employment on our team, assessing candidates in a manner consistent with the requirements of the San Francisco Fair Chance Ordinance.
Block, Inc. (NYSE: SQ) is a global technology company with a focus on financial services. Made up of Square, Cash App, Spiral, TIDAL, and TBD, we build tools to help more people access the economy. Square helps sellers run and grow their businesses with its integrated ecosystem of commerce solutions, business software, and banking services. With Cash App, anyone can easily send, spend, or invest their money in stocks or Bitcoin. Spiral (formerly Square Crypto) builds and funds free, open-source Bitcoin projects. Artists use TIDAL to help them succeed as entrepreneurs and connect more deeply with fans. TBD is building an open developer platform to make it easier to access Bitcoin and other blockchain technologies without having to go through an institution.