Senior Information Security Analyst I

TuSimple

  • Full Time

Join TuSimple and help change the way the world moves.  Together we're making freight transportation safer, more efficient, and more environmentally friendly.


You can apply to this role directly here: it_infosec__senior_information_security_analyst_i_0a26736e2us@ivy.greenhouse.io

*This position must sit in any state in the Pacific Standard Time Zone*


Company Overview

Join TuSimple and help change the way the world moves.  Together we're making freight transportation safer, more efficient, and more environmentally friendly.

TuSimple is a fully commercialized autonomous trucking company.   As a multi-national Artificial Intelligence Technology Company, we are at the epicenter of the Autonomous Vehicle Universe. Our breakthroughs are leading the industry in autonomous trucking.  

While inventing the framework of Autonomous Driving, our live fleet of autonomous Trucks have fully evolved land freight.    TuSimple is leading the way by hiring the most talented researchers, engineers, and scientists.  

TuSimple was founded half a decade ago with the goal of bringing the top minds in the world together to achieve the dream of a driverless truck solution. With a foundation in computer vision, algorithms, mapping, and Artificial Intelligence, TuSimple has created the first commercially viable Autonomous Freight Network. 

Opportunity Overview:

TuSimple’s Senior Information Security Analyst I is an experienced member of the Information Security office and works with stakeholders across the business to ensure the confidentiality, integrity, and availability of the organization’s systems and information. In this role the incumbent continuously monitors security technical controls and monitoring systems to ensure the business is safeguarded against internal and external threats. Additionally, the Senior Information Security Analyst I assists with/conducts routine audits, performs risk assessments, and plays a key role in incident response situations.

Acting as a champion for Information Security, the Senior Information Security Analyst I is a strong InfoSec advocate and helps promote information security awareness across the organization. The incumbent employs a proactive mindset but is also highly responsive when required to be reactive. They find gaps, solve problems, thrive under pressure, and have an unrelenting drive to achieve and maintain optimal levels of security.

Role Responsibilities

  • Researches required regulatory standards and the organization’s information systems to determine appropriate technical controls and technologies to fill security gaps.
  • Conducts routine and AdHoc security assessments of IT infrastructure, enterprise applications, and production systems.
  • Performs vulnerability scans, analysis, reporting and subsequent remediation actions.
  • Performs weekly auditing/monitoring activities for anomalous or security relevant events.
  • Monitors and tests the deployment of security infrastructure to ensure it’s full deployment and effectiveness.
  • Engineers monitoring solutions using industry tools and technologies.
  • Assists and coordinates in the management of all potential cybersecurity incidents.
  • Conducts 3rd-party vendor risks assessments.
  • Research, plan and implement solutions/technologies for data governance and data loss prevention (DLP).
  • Performs routine monitoring/auditing of data governance practices and DLP events.
  • Assists in the Installation, configuration, and deployment of cybersecurity infrastructure across workstations, servers and system platforms.
  • Effectively carries out the compliance audit strategy and programs.
  • Works with key stakeholders to identify and remediate cybersecurity risks in a timely fashion.
  • Understands and disseminates the company’s compliance policies/procedures and applicable laws/regulations.
  • Performs other duties and projects (i.e. SOX reviews) as may be necessary and assigned.
  • Develops training programs to ensure adherence with compliance standards
  • Establishes and maintains strong working relationships across the organization.

Experience & Skills Required

  • 5+ years of related working experience in a cybersecurity role, combined with a relevant undergraduate degree OR 7+ years of related working experience in a cybersecurity role.
  • Prior experience working with Security Information and Event Management (SIEM) tools or performing IT security auditing/monitoring in some capacity.
  • Prior experience working with vulnerability scanning tools.
  • Past experience with data loss prevention (DLP) technologies.
  • Past experience with Windows and Linux command line interface (CLI).
  • Strong working knowledge of operating systems and network security principles.
  • Working knowledge and experience with access control systems like Single Sign On (SSO), Active Directory and other IAM systems.
  • Working knowledge of Multifactor authentication (MFA) products. .
  • Working knowledge and or experience with data governance practices (classification, marking, auditing/monitoring)
  • Well developed skills that enable effective risk and issue detection, assessment and resolution.
  • Ability to identify, troubleshoot, and resolve issues quickly and effectively.
  • Understanding of industry standard IT compliance practices such as SOX, SOC2, HITRUST, ISO-27000, ISO-21434 or RMF.
  • Ability to conduct advanced security auditing and monitoring.
  • Ability to support audits for a publicly traded company and conduct third-party vendor risk assessments.
  • Working knowledge of scripting (Powershell, VB, VBScript, Bash etc.).
  • Understanding of and ability to use SQL or other query languages.

TuSimple Benefits

  • 100% employer-paid healthcare premiums for you and your family
  • Work visa sponsorship available
  • Breakfast, lunch, and dinner served every day
  • Full kitchens on every floor with unlimited snacks, drinks, special treats, fruits, meals, and more
  • Gym membership reimbursement
  • Learning/education budget  
  • Employer-paid life insurance
  • Employer-paid long and short disability

TuSimple is an Equal Opportunity Employer. This company does not discriminate in employment and personnel practices on the basis of race, sex, age, handicap, religion, national origin, or any other basis prohibited by applicable law. Hiring, transferring and promotion practices are performed without regard to the above-listed items.

#LI-KS1


You can apply to this role directly here: it_infosec__senior_information_security_analyst_i_0a26736e2us@ivy.greenhouse.io


Brown University, California Institute of Technology, Carnegie Mellon University, Columbia University, Cornell University, Dartmouth College, Duke University, Georgia Institute of Technology, Harvard University, Harvey Mudd College, Massachusetts Institute of Technology, North Carolina State University, Northwestern University, Princeton University, Purdue University, Rice University, Rose – Hulman Institute of Technology, Stanford University, Tufts University, University of California — Berkeley, University of California — Los Angeles, University of Illinois–Urbana-Champaign, University of Maryland–College Park, University of Massachusetts–Amherst, University of Michigan–Ann Arbor, University of Notre Dame, University of Pennsylvania, University of Southern California, University of Texas Austin, University of Washington, University of Wisconsin–Madison, Williams College, Worcester Polytechnic Institute (WPI), Yale University, MIT, CMU, Waymo, Uber, Facebook, Uber, Amazon, Cruise, Tesla, Argo AI, Baidu, DIDI, Zoox, Nutonomy, Nuro, Aptiv, Pony.Ai, Kodiak, Toyota, Nissan, GM, Ford, VW, Autonomous Car, Autonomous Driving, Robotics, Artificial Intelligence, Machine Learning, Deep learning, Perception, Prediction, Planning, Control
Your subscription could not be saved. Please try again.
Your subscription has been successful.

Receive job alerts twice per week:

We use Sendinblue as our marketing platform. By Clicking below to submit this form, you acknowledge that the information you provided will be transferred to Sendinblue for processing in accordance with their terms of use