{"schemaVersion":"jobsearcher.job.v1","id":"ba4fb8648e4fb4e6576fdec8","url":"https://jobsearcher.com/jobs/ba4fb8648e4fb4e6576fdec8","canonicalUrl":"https://jobsearcher.com/jobs/ba4fb8648e4fb4e6576fdec8","title":"Senior Security Analyst","description":"About CoLab\nAt CoLab, we help mechanical engineering teams bring life-changing products to market years sooner.\nWe build AI for engineers designing cars, medical devices, and jet engines. Products this complex aren't sketched and sent to production. Teams spend months on iterations, reviews, and tests, predicting how every part performs before anything is built. CoLab is where those reviews happen, and we capture the rationale behind every change. Other tools show what changed between versions. Only CoLab knows why. That's how our AI helps manufacturers like Bobcat, Triumph Motorcycles, and GE Appliances make better decisions, eliminate rework cycles, and get to market faster.\nProudly based in St. John's, Newfoundland, CoLab started with one customer in 2018. Since then we've raised a $72M Series C, been named the 57th fastest growing company in North America by Deloitte (Fast 500™), signed multi-year AI partnerships with companies like Bombardier, and grown to a team of 250+.\nAbout the Role\nSecurity at CoLab isn't a compliance exercise. It's a core part of earning and maintaining the trust of some of the world's largest engineering organizations.\nAs a Senior Security Analyst, you'll help shape the future of our enterprise security program. You'll be a key member of our Blue Team, responsible for protecting CoLab's cloud infrastructure, corporate systems, and customer data while continuously improving how we detect, investigate, and respond to threats.\nThis is a hands-on technical role reporting to our CISO. You'll spend time investigating alerts, leading incident response efforts, refining detection capabilities, improving security controls, and helping teams make sound security decisions before problems emerge.\nYou won't be handed a mature playbook and asked to follow it. You'll help build it. If you enjoy solving complex security problems, taking ownership, and balancing strong technical judgment with practical business decisions, you'll likely find this role rewarding.\nOur Ideal Candidate\nYou're the type of person who sees an alert and wants to understand the full story—not just close the ticket.\nYou can move comfortably between technical investigation, risk discussions, and stakeholder communication. During an incident, you're calm, methodical, and focused on facts. Afterward, you're just as interested in improving systems and processes to prevent it from happening again.\nYou'll thrive here if you enjoy:\nSolving difficult security problems with incomplete information\nTaking ownership of outcomes, not just tasks\nLearning continuously as technologies and threats evolve\nWorking closely with Security, Technology, and Product teams\nBalancing strong security practices with business realities\nJob Responsibilities\nLead investigation and response activities for security incidents, suspicious activity, and emerging threats\nDesign, implement, and improve security monitoring, detection, and response capabilities across our AWS environment\nDevelop and maintain effective detection rules, alerting strategies, and investigation procedures\nConduct post-incident reviews to identify root causes, lessons learned, and preventative measures\nIdentify security exposures, vulnerabilities, misconfigurations, and non-compliance risks and communicate recommendations clearly\nPerform security assessments of third-party vendors, services, and technologies\nPartner with Technology and Product teams to design secure solutions and strengthen existing controls\nSupport vulnerability management, threat modeling, and endpoint security initiatives\nCreate and maintain security documentation, standards, and operational procedures\nContribute to security awareness efforts and provide guidance on secure business practices\nStay current on evolving threats, attacker techniques, and defensive technologies\nAuthorizes/approves user access to CoLab\nCoordinates with relevant CoLab AI teams for program functions wholly or partially implemented at the corporate level (i.e., general security training)\nDevelops and maintains an accurate and up-to-date System Security Plan (SSP)Package for the FedRAMP-designated system\nDistributes copies of SSP Package elements to relevant team members, on a need-to-know basis\nDesignates key personnel as responsible for core program functions (i.e., incident handling, disaster recovery, etc.)\nReceives operational alerts, updates, and status reports from team members and critical system components\nOversees the Continuous Monitoring Program for CoLab\nReports the security and privacy state of CoLab to external entities (i.e., CustomerAgencies, FedRAMP Program Management Office (PMO), Third Party AssessmentOrganizations (3PAOs)\nQualifications\nRequired:\nUS Citizenship, living in the USA\n5+ years of experience in security operations, security engineering, or a similar cybersecurity role\nStrong experience with security monitoring, incident response, threat detection, and forensic investigations\nDeep understanding of network security, application security, infrastructure hardening, and vulnerability management\nExperience deploying, managing, and automating security solutions in cloud environments\nStrong knowledge of AWS architecture, security services, and cloud security best practices\nExperience working with macOS, Linux, and Windows environments\nStrong understanding of log collection, analysis, and security event investigation\nExperience developing and maintaining security procedures and operational processes\nAbility to communicate technical risks and recommendations clearly to both technical and non-technical audiences\nExperience supporting compliance initiatives such as SOC 2, ISO 27001, GDPR, FedRAMP or PIPEDA\nNice to Have\nExperience with threat modelling programs\nExperience building security automation workflows\nExperience assessing third-party vendors and SaaS platforms\nSecurity certifications such as CISSP, GCIH, GSEC, Security+, AWS Certified Security – Specialty, or AWS Certified Solutions Architect\nThe Extra Details\nThis is a full-time, permanent position with a competitive compensation package that includes stock options\nComprehensive health and benefits coverage\nUnlimited paid vacation\n401K matching\nThis role can be performed remotely from anywhere in the United States of America\nEquity Note\nFrequently cited statistics show that people who identify with historically marginalized groups are likely to apply to jobs only if they meet 100% of the qualifications. We encourage you to help us break that statistic and apply even if you don't meet every single qualification—your potential is what matters most to us.","company":"Colab Software","rawCompany":"colab software","city":"Austin","state":"TX","isRemote":false,"isActive":false,"createdAt":"2026-08-05T16:12:57.675Z","occupations":[{"code":"15-1212.00","title":"Information Security Analysts","slug":"information-security-analysts"},{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"13-1199.07","title":"Security Management Specialists","slug":"security-management-specialists"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"513210","title":"Software Publishers","slug":"software-publishers"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Senior Security Analyst","description":"About CoLab\nAt CoLab, we help mechanical engineering teams bring life-changing products to market years sooner.\nWe build AI for engineers designing cars, medical devices, and jet engines. Products this complex aren't sketched and sent to production. Teams spend months on iterations, reviews, and tests, predicting how every part performs before anything is built. CoLab is where those reviews happen, and we capture the rationale behind every change. Other tools show what changed between versions. Only CoLab knows why. That's how our AI helps manufacturers like Bobcat, Triumph Motorcycles, and GE Appliances make better decisions, eliminate rework cycles, and get to market faster.\nProudly based in St. John's, Newfoundland, CoLab started with one customer in 2018. Since then we've raised a $72M Series C, been named the 57th fastest growing company in North America by Deloitte (Fast 500™), signed multi-year AI partnerships with companies like Bombardier, and grown to a team of 250+.\nAbout the Role\nSecurity at CoLab isn't a compliance exercise. It's a core part of earning and maintaining the trust of some of the world's largest engineering organizations.\nAs a Senior Security Analyst, you'll help shape the future of our enterprise security program. You'll be a key member of our Blue Team, responsible for protecting CoLab's cloud infrastructure, corporate systems, and customer data while continuously improving how we detect, investigate, and respond to threats.\nThis is a hands-on technical role reporting to our CISO. You'll spend time investigating alerts, leading incident response efforts, refining detection capabilities, improving security controls, and helping teams make sound security decisions before problems emerge.\nYou won't be handed a mature playbook and asked to follow it. You'll help build it. If you enjoy solving complex security problems, taking ownership, and balancing strong technical judgment with practical business decisions, you'll likely find this role rewarding.\nOur Ideal Candidate\nYou're the type of person who sees an alert and wants to understand the full story—not just close the ticket.\nYou can move comfortably between technical investigation, risk discussions, and stakeholder communication. During an incident, you're calm, methodical, and focused on facts. Afterward, you're just as interested in improving systems and processes to prevent it from happening again.\nYou'll thrive here if you enjoy:\nSolving difficult security problems with incomplete information\nTaking ownership of outcomes, not just tasks\nLearning continuously as technologies and threats evolve\nWorking closely with Security, Technology, and Product teams\nBalancing strong security practices with business realities\nJob Responsibilities\nLead investigation and response activities for security incidents, suspicious activity, and emerging threats\nDesign, implement, and improve security monitoring, detection, and response capabilities across our AWS environment\nDevelop and maintain effective detection rules, alerting strategies, and investigation procedures\nConduct post-incident reviews to identify root causes, lessons learned, and preventative measures\nIdentify security exposures, vulnerabilities, misconfigurations, and non-compliance risks and communicate recommendations clearly\nPerform security assessments of third-party vendors, services, and technologies\nPartner with Technology and Product teams to design secure solutions and strengthen existing controls\nSupport vulnerability management, threat modeling, and endpoint security initiatives\nCreate and maintain security documentation, standards, and operational procedures\nContribute to security awareness efforts and provide guidance on secure business practices\nStay current on evolving threats, attacker techniques, and defensive technologies\nAuthorizes/approves user access to CoLab\nCoordinates with relevant CoLab AI teams for program functions wholly or partially implemented at the corporate level (i.e., general security training)\nDevelops and maintains an accurate and up-to-date System Security Plan (SSP)Package for the FedRAMP-designated system\nDistributes copies of SSP Package elements to relevant team members, on a need-to-know basis\nDesignates key personnel as responsible for core program functions (i.e., incident handling, disaster recovery, etc.)\nReceives operational alerts, updates, and status reports from team members and critical system components\nOversees the Continuous Monitoring Program for CoLab\nReports the security and privacy state of CoLab to external entities (i.e., CustomerAgencies, FedRAMP Program Management Office (PMO), Third Party AssessmentOrganizations (3PAOs)\nQualifications\nRequired:\nUS Citizenship, living in the USA\n5+ years of experience in security operations, security engineering, or a similar cybersecurity role\nStrong experience with security monitoring, incident response, threat detection, and forensic investigations\nDeep understanding of network security, application security, infrastructure hardening, and vulnerability management\nExperience deploying, managing, and automating security solutions in cloud environments\nStrong knowledge of AWS architecture, security services, and cloud security best practices\nExperience working with macOS, Linux, and Windows environments\nStrong understanding of log collection, analysis, and security event investigation\nExperience developing and maintaining security procedures and operational processes\nAbility to communicate technical risks and recommendations clearly to both technical and non-technical audiences\nExperience supporting compliance initiatives such as SOC 2, ISO 27001, GDPR, FedRAMP or PIPEDA\nNice to Have\nExperience with threat modelling programs\nExperience building security automation workflows\nExperience assessing third-party vendors and SaaS platforms\nSecurity certifications such as CISSP, GCIH, GSEC, Security+, AWS Certified Security – Specialty, or AWS Certified Solutions Architect\nThe Extra Details\nThis is a full-time, permanent position with a competitive compensation package that includes stock options\nComprehensive health and benefits coverage\nUnlimited paid vacation\n401K matching\nThis role can be performed remotely from anywhere in the United States of America\nEquity Note\nFrequently cited statistics show that people who identify with historically marginalized groups are likely to apply to jobs only if they meet 100% of the qualifications. We encourage you to help us break that statistic and apply even if you don't meet every single qualification—your potential is what matters most to us.","datePosted":"2026-08-05T16:12:57.675Z","dateModified":"2026-08-05T16:12:57.675Z","hiringOrganization":{"@type":"Organization","name":"Colab Software","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Austin","addressRegion":"TX","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"ba4fb8648e4fb4e6576fdec8"},"url":"https://jobsearcher.com/jobs/ba4fb8648e4fb4e6576fdec8"}}