Cybersecurity & Tracking Architecture Audit (Paid Ads, Attribution, GTM, GA4, Meta, Stripe)

Remote Full-time
We recently brought all paid search and paid social in-house after poor agency experiences. We’ve built a data-layer-first attribution and conversion tracking system and want an experienced cybersecurity professional to review our implementation for security, privacy, and data integrity gaps before we scale spend. This is not a marketing role. We’re looking for someone who understands how modern web apps, analytics, and ad platforms actually work — and can spot risks that engineers and growth teams often miss. Broadly, you'll be reviewing: • Our tracking architecture and data flows • How identifiers, cookies, and click IDs are handled • Server-side event pipelines and webhooks • Permissions, access, and abuse vectors • Privacy, consent, and data leakage risks We will provide a detailed internal runbook that documents our full implementation (Next.js, Supabase, GTM/GA4, Google Ads, Meta, Stripe). What You’ll Be Reviewing • Web & server tracking architecture Client-side → server-side → ad platform data flows GTM Web + optional GTM Server (sGTM) • Identifiers & attribution First-party cookies (device/session IDs) Click IDs (gclid, wbraid, gbraid, fbclid, etc.) Event IDs and deduplication logic • Backend & database Supabase/Postgres schema and access patterns Event idempotency Row-level security (RLS) assumptions • Third-party integrations Stripe webhooks Zoom webhooks (call attendance) Google Ads offline conversion uploads Meta Conversions API • Privacy & compliance posture PII handling (hashed vs raw) Consent gating assumptions Risk of unintended data sharing What We Want From You (Deliverables) 1. Written audit report covering: • Security risks • Data leakage risks • Abuse/fraud vectors (fake conversions, spoofed events, replay attacks, etc.) • Privacy/compliance red flags 2. Concrete recommendations, prioritized by severity: • “Must fix before scaling spend” • “Should fix soon” • “Nice to have” 3. Optional (nice bonus): • Suggested hardening patterns • Monitoring or alerting ideas • “If I were trying to break this…” scenarios We care far more about thinking quality than a giant PDF Who You Are You likely have experience with: • Web application security or security architecture • Modern analytics stacks (GTM, GA4, Meta CAPI, Google Ads) • Server-side event pipelines or webhook systems • SaaS products handling PII and payments Strong pluses: • Experience auditing analytics or attribution systems • Familiarity with ad fraud, conversion spoofing, or data poisoning risks • Understanding of how growth teams accidentally create security holes Apply tot his job
Apply Now →

Similar Jobs

Senior Auditor, CyberSecurity

Remote Full-time

Auditor – Safety, Security and Compliance

Remote Full-time

Cybersecurity Audit for Webflow, Calendly, and Meta Business Manager

Remote Full-time

Cyber Risk & Compliance Specialist - USGS Federal Systems (REMOTE)

Remote Full-time

Technology Compliance Specialist

Remote Full-time

Governance, Risk, and Compliance Specialist - Customer Assurance; Remote

Remote Full-time

Cybersecurity - Information System Security Officer (ISSO)

Remote Full-time

Cybersecurity Consultant – Independent Contractor Opportunity

Remote Full-time

Cybersecurity GRC & Assurance Consultant

Remote Full-time

Director - Cyber Security

Remote Full-time

Part-Time Sales Associate - Rising Star Program for Young Talent (16-17 Years Old) - Retail Industry Leader

Remote Full-time

Psychiatrist (MD/DO) – Virtual Care (Addiction Medicine / Psychiatry)

Remote Full-time

Entry Level Customer Support Associate – Live Chat Specialist for Global Customer Engagement and Satisfaction (Remote Opportunity with Comprehensive Training and No Prior Experience Required)

Remote Full-time

Experienced Part Time Remote Data Entry Specialist – Work From Home Opportunity with arenaflex

Remote Full-time

Experienced Remote Customer Service Representative Agent – Flexible Hours and Competitive Compensation

Remote Full-time

Senior UX/UI Designer - REMOTE

Remote Full-time

Telephonic Case Manager, Registered Nurse – Part Time

Remote Full-time

Experienced Remote Customer Service Representative – Delivering Exceptional Health Care Benefits Support at arenaflex

Remote Full-time

Immediate Hiring: Results-Driven Sales Representative - Remote, Flexible Hours with Unlimited Earning Potential and Expert Support

Remote Full-time

Experienced Amazon Customer Service Representative - Work from Home Opportunity with Competitive Compensation

Remote Full-time
← Back to Home