Typeform Logo

Typeform

Information Security Analyst

Posted 15 Days Ago
Be an Early Applicant
Remote
Hiring Remotely in United Kingdom
Mid level
Remote
Hiring Remotely in United Kingdom
Mid level
As an Information Security Analyst at Typeform, you will shape and execute security strategies, manage compliance programs, conduct risk assessments, and work with teams to embed security practices throughout the organization. Your role includes monitoring security metrics and supporting internal audits.
The summary above was generated by AI
Who we are

Typeform is a refreshingly different form builder. We help over 150,000 businesses collect the data they need with forms, surveys, and quizzes that people enjoy. Designed to look striking and feel effortless to fill out, Typeform drives 500 million responses every year—and integrates with essential tools like Slack, Zapier, and Hubspot.

About the Team

At Typeform, security isn’t just a requirement—it’s a core part of how we build trust with our customers.
Our Information Security team plays a crucial role in ensuring our business operates securely, complies with industry standards, and supports our teams across the organization. As we scale, we’re expanding our InfoSec team to enhance our security posture, maintain compliance, and support business growth.You’ll be working closely with teams across Security, Sales, Customer Success, Legal, SRE, People, and Finance to ensure security remains a top priority in everything we do.

About the Role

As an Information Security Analyst, you will help shape and execute our security and compliance strategy.
You will support compliance frameworks such as ISO/IEC 27001, SOC 2, HIPAA, and GDPR, help manage risk, and ensure that security practices are embedded in our daily operations. You’ll have the opportunity to grow within the team, taking ownership of operational security work while contributing to strategic initiatives over time.

Things you will do:

  • Support and manage Typeform’s compliance programs, including ISO, SOC 2, and HIPAA.

  • Assist in third-party risk assessments, vendor security reviews, and customer security inquiries.

  • Work closely with Vanta (our compliance automation platform) to manage security workflows and maintain compliance frameworks.

  • Collaborate with GTM teams (Sales, CS, and Legal) to ensure security compliance in customer engagements.

  • Monitor and support operational security processes, ensuring requests from internal teams are addressed efficiently.

  • Track and report on security metrics, identifying opportunities for continuous improvement.

  • Support internal audits and assessments to maintain and expand our compliance certifications.

  • Work with cross-functional teams (R&D, IT, and People) to embed security best practices across the organization.

What you already bring to the table:

  • Experience in information security, risk management, or compliance, preferably in a SaaS environment.

  • Understanding of security frameworks such as ISO/IEC 27001, SOC 2, HIPAA, and GDPR.

  • Experience with security compliance automation tools (e.g., Vanta, Drata, or similar platforms).

  • Ability to work collaboratively with multiple teams, balancing compliance requirements with business needs.

  • Strong problem-solving skills and attention to detail.

  • Excellent communication skills with the ability to engage with stakeholders across different departments.

  • Self-driven mindset with a desire to own and improve security operations over time.

Nice to Have:

  • Previous experience in a SaaS or cloud-first organization.

  • Understanding of security in cloud environments (AWS, GCP, Azure).

  • Certifications such as CISA, CISSP, or ISO 27001 Lead Auditor/Implementer.

  • Experience with third-party vendor risk management.

  • Experience supporting sales and customer success teams with security-related requests.

*Typeform drives hundreds of millions of interactions each year, enabling conversational, human-centered experiences across the globe. We move as one team, empowering our collective efforts by valuing each individual’s unique perspective. This fosters strong bonds grounded in respect, transparency, and trust. We champion our diverse customer base by anticipating their needs and addressing their challenges with priority. Committed to excellence, we hold high expectations for ourselves and each other, continuously striving to deliver exceptional results.

We are proud to be an equal-opportunity employer. We celebrate diversity and stand firmly against discrimination and harassment of any kind—whether based on race, color, ancestry, religion, sex, national origin, sexual orientation, age, citizenship, marital status, disability, gender identity or expression, or veteran status. Everyone is welcome here.

Top Skills

AWS
Azure
GCP
Gdpr
Hipaa
Iso/Iec 27001
Risk Management
Security Compliance Automation Tools
Soc 2
Vanta
Vendor Security Reviews

Similar Jobs

4 Days Ago
Easy Apply
Remote
28 Locations
Easy Apply
Mid level
Mid level
Artificial Intelligence • Cloud • Information Technology • Machine Learning • Natural Language Processing • Software
The Information Security Compliance Analyst will manage compliance with various standards, assist with audits, respond to security queries, draft policies, and mitigate risks. They will also educate staff on security, monitor controls, and lead breach investigations.
Top Skills: Atlassian ProductsEncryption TechnologiesFirewallsHipaaHitrustIntrusion Detection/Prevention SystemsIso 27001Pci-DssSecurity Monitoring PlatformsSoc 2SplunkVulnerability Assessment Tools
6 Days Ago
Remote
United Kingdom
Senior level
Senior level
Healthtech • Logistics • Pharmaceutical
The Lead Analyst in Information Security will oversee complex Identity and Access Management initiatives, translating business requirements into technical designs primarily using SailPoint IIQ. Responsibilities include managing IAM services, ensuring compliance, improving security posture, collaborating with various business units to prioritize risk-based security initiatives, and mentoring IAM professionals.
Top Skills: Active DirectoryAdfsAnti-VirusEdrFirewallIdentity And Access ManagementOracle OamOracle OimOracle OudPing IdentityPowershellQuest Change AuditorSailpoint IdentitynowSailpoint IiqSailpoint Predictive IdentitySap Customer Data CloudSIEMVpn
9 Days Ago
Remote
Hybrid
Belfast, County Antrim, Northern Ireland, GBR
Junior
Junior
Artificial Intelligence • Cloud • Information Technology • Sales • Security • Software • Cybersecurity
The Application Security Analyst will help secure customer web applications by configuring and running dynamic security scans, troubleshooting issues, and ensuring documentation and access to applications. They will also audit applications and work closely with customers to communicate findings and necessary actions.
Top Skills: APIsBurpsuite ProCwe Top 25Owasp Top 10Owasp ZapSoftware Development Life CycleTraffic Proxying ToolsWeb Application Vulnerabilities

What you need to know about the London Tech Scene

London isn't just a hub for established businesses; it's also a nursery for innovation. Boasting one of the most recognized fintech ecosystems in Europe, attracting billions in investments each year, London's success has made it a go-to destination for startups looking to make their mark. Top U.K. companies like Hoptin, Moneybox and Marshmallow have already made the city their base — yet fintech is just the beginning. From healthtech to renewable energy to cybersecurity and beyond, the city's startups are breaking new ground across a range of industries.

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account