Senior Security Analyst

ThoughtSpot
ThoughtSpot

IT · Full-time

Chicago, IL, USA

Posted on Sep 21, 2026

About the Role:

ThoughtSpot is the Data & AI platform turning enterprise data into actionable advantage. As a Gartner Magic Quadrant leader serving over 1,000 global customers, we revolutionized BI by enabling users to search their data naturally. With Spotter, our AI analyst that reasons over governed enterprise data, we’re replacing rigid, legacy reporting with real-time, AI-augmented intelligence. As our largest enterprise customers standardize on ThoughtSpot Analytics, we are committed to earning and keeping their trust by ensuring our platform meets the highest standards of security, compliance, and operational resilience.

We are looking for a Senior Security Analyst to serve as a key technical resource for our customers and internal teams. In this role, you will bridge the gap between information security, customer success, sales engineering, and more, helping our strategic customers evaluate, adopt, and maintain confidence in ThoughtSpot’s security and data protection posture. You’ll collaborate directly with customers, while working closely with Engineering, Product, Support, and Customer Success and being hands on in security initiatives, to answer complex security inquiries, validate compliance needs, and ensure our deployments adhere to strict enterprise security standards.

What You'll Do

  • Customer Security Enablement: Act as a trusted technical security resource for prospects and existing enterprise customers, leading technical security reviews, architecture evaluations, and security questionnaires (RFPs/SIGs).
  • Cross-Functional Collaboration: Partner directly with Sales Engineering, Customer Success, and Engineering teams to clarify ThoughtSpot’s security model, data protection policies, and compliance frameworks (SOC 2, ISO 27001, HIPAA, GDPR).
  • Trust & Governance Enablement: Maintain and enhance our customer-facing security documentation, trust center materials, and technical whitepapers to streamline security evaluations.
  • Risk & Incident Collaboration: Collaborate with Support, Engineering and Information Security teams to triage, investigate, and communicate enterprise security or privacy inquiries proactively.

What You Bring

  • Security & GRC Experience: 4+ years of hands-on experience in Information Security and Governance, Risk, and Compliance (GRC), with SaaS and cloud services environment.
  • Field Sales & RFP Alignment: Proven experience partnering with sales teams to respond to customer security inquiries, manage security/compliance questionnaires, and RFPs.
  • Customer Audits & Assessments: 3+ years of experience directly working with customers, performing security audits, and facilitating security assessments.
  • Technical Domain Knowledge: Solid understanding of security domains and cloud concepts (AWS/GCP/Azure), encryption, identity & access management (SSO, SAML, RBAC), vulnerability management, and change management.
  • AI & LLM Security: Familiarity with emerging security, data privacy, and governance considerations for AI, Large Language Models (LLMs), and generative data systems (e.g., OWASP Top 10 for LLMs, model/prompt governance, AI system explainability).
  • Compliance Framework Expertise: Working knowledge of compliance standards and regulations, including SOC 2, ISO 27001, NIST CSF, HIPAA, GDPR, CCPA, and EU AI Act.
  • Communication & Stakeholder Management: Excellent verbal and written communication skills with the ability to articulate complex security topics clearly to a wide range of technical and business backgrounds.
  • Execution & Ownership: Self-motivated and driven, with the proven ability to perform and excel with minimal supervision in a fast-paced environment.
  • Certifications (Bonus): CISSP, CCSP, or other Information Security-related certifications are a plus.