Cybersecurity & Tracking Architecture Audit (Paid Ads, Attribution, GTM, GA4, Meta, Stripe)

Remote, USA Full-time
We recently brought all paid search and paid social in-house after poor agency experiences. We’ve built a data-layer-first attribution and conversion tracking system and want an experienced cybersecurity professional to review our implementation for security, privacy, and data integrity gaps before we scale spend. This is not a marketing role. We’re looking for someone who understands how modern web apps, analytics, and ad platforms actually work — and can spot risks that engineers and growth teams often miss. Broadly, you'll be reviewing: • Our tracking architecture and data flows • How identifiers, cookies, and click IDs are handled • Server-side event pipelines and webhooks • Permissions, access, and abuse vectors • Privacy, consent, and data leakage risks We will provide a detailed internal runbook that documents our full implementation (Next.js, Supabase, GTM/GA4, Google Ads, Meta, Stripe). What You’ll Be Reviewing • Web & server tracking architecture Client-side → server-side → ad platform data flows GTM Web + optional GTM Server (sGTM) • Identifiers & attribution First-party cookies (device/session IDs) Click IDs (gclid, wbraid, gbraid, fbclid, etc.) Event IDs and deduplication logic • Backend & database Supabase/Postgres schema and access patterns Event idempotency Row-level security (RLS) assumptions • Third-party integrations Stripe webhooks Zoom webhooks (call attendance) Google Ads offline conversion uploads Meta Conversions API • Privacy & compliance posture PII handling (hashed vs raw) Consent gating assumptions Risk of unintended data sharing What We Want From You (Deliverables) 1. Written audit report covering: • Security risks • Data leakage risks • Abuse/fraud vectors (fake conversions, spoofed events, replay attacks, etc.) • Privacy/compliance red flags 2. Concrete recommendations, prioritized by severity: • “Must fix before scaling spend” • “Should fix soon” • “Nice to have” 3. Optional (nice bonus): • Suggested hardening patterns • Monitoring or alerting ideas • “If I were trying to break this…” scenarios We care far more about thinking quality than a giant PDF Who You Are You likely have experience with: • Web application security or security architecture • Modern analytics stacks (GTM, GA4, Meta CAPI, Google Ads) • Server-side event pipelines or webhook systems • SaaS products handling PII and payments Strong pluses: • Experience auditing analytics or attribution systems • Familiarity with ad fraud, conversion spoofing, or data poisoning risks • Understanding of how growth teams accidentally create security holes Apply tot his job
Apply Now

Similar Jobs

Senior Auditor, CyberSecurity

Remote, USA Full-time

Auditor – Safety, Security and Compliance

Remote, USA Full-time

Cybersecurity Audit for Webflow, Calendly, and Meta Business Manager

Remote, USA Full-time

Cyber Risk & Compliance Specialist - USGS Federal Systems (REMOTE)

Remote, USA Full-time

Technology Compliance Specialist

Remote, USA Full-time

Governance, Risk, and Compliance Specialist - Customer Assurance; Remote

Remote, USA Full-time

Cybersecurity - Information System Security Officer (ISSO)

Remote, USA Full-time

Cybersecurity Consultant – Independent Contractor Opportunity

Remote, USA Full-time

Cybersecurity GRC & Assurance Consultant

Remote, USA Full-time

Director - Cyber Security

Remote, USA Full-time

**Experienced Data Entry Clerk – Warehouse Operations and Logistics**

Remote, USA Full-time

Associate Attorney, Sustainable Food & Farming

Remote, USA Full-time

Consultant, Advanced Analytics: Meta-Analysis, HTA Statistician

Remote, USA Full-time

Experienced Bilingual Customer Service Representative - Spanish/English - Remote Opportunity - Delivering Exceptional Customer Experiences at blithequark

Remote, USA Full-time

Claims Assistant I

Remote, USA Full-time

Experienced Data Entry Specialist – Full-Time Remote Opportunity for Career Growth and Development with arenaflex

Remote, USA Full-time

Senior Brand Manager Skinny Pop

Remote, USA Full-time

Senior Merchant, Licensed Product North America

Remote, USA Full-time

Staples Cash Application Representative (Remote) in _Any Location – Remote, United States

Remote, USA Full-time

IT – Developer II-III (Remote) in Fairfield, OH

Remote, USA Full-time
Back to Home