Search...

Security Analyst III

Kickstart logo
Kickstart

Kickstart is an early-stage venture capital firm investing in pre-seed, seed, and occasional Series A companies across Utah, Colorado, and the wider Mountain West. It backs founders building companies across sectors including AI, B2B SaaS, fintech, healthtech, marketplaces, consumer technology, and frontier technology.

Salt Lake City, USA
About Kickstart

Founded in 2008, Kickstart is a seed-stage venture capital firm headquartered in Salt Lake City, Utah, with an office in Denver, Colorado. The firm leads pre-seed and seed rounds, typically invests $500K to $4M initially, takes board seats when it leads, and is actively deploying its sixth $175M fund. Kickstart manages more than $500M across its funds and supports portfolio founders through mentorship, operating advisors, events, curated resources, customer introductions, follow-on fundraising, and hiring assistance. Its clients are primarily early-stage founders and startups based in the Mountain West, with a focus on building enduring companies across generalist technology sectors.

View jobs by Kickstart

Skills

Candidate Availability

Required and preferred rules are kept separate and reflect the wording in the original posting.

About the Role

You will conduct vendor and internal risk assessments, respond to security questionnaires, and collect audit evidence. You will identify security risks, deliver awareness training, maintain compliance metrics, partner across business functions, and improve security controls and workflows.

Requirements

  • Bachelor’s degree in information security assurance, business management, or a related field
  • 3+ years of experience in third-party risk management, GRC, or customer due diligence
  • NIST 800-53
  • ISO 27001
  • SOC 2
  • Risk management
  • Cloud application familiarity preferred
  • CRISC preferred
  • CISSP preferred
  • CISA preferred
  • SSCP preferred
  • CC preferred
  • Security+ preferred
  • CySA+ preferred
  • AWS preferred
  • GCP preferred
  • Azure preferred
  • GRC automation

Responsibilities

  • Conduct third-party vendor risk assessments and internal risk evaluations
  • Identify, document, and report vulnerabilities and control gaps
  • Respond to vendor security questionnaires and prospect security questions
  • Collect evidence for SOC 2 and ISO 27001 audits
  • Identify emerging threats and develop practical security solutions
  • Deliver security awareness training
  • Assure compliance with external regulations
  • Maintain security and compliance metrics
  • Partner with business functions to enforce security policies
  • Improve security controls and workflows

Benefits

  • Hybrid workplace with remote, office-based, or combined work options depending on role and team needs
Security Analyst III at Kickstart | JobStash