Technical Security Risk Manager

6 days ago


San Francisco, California, United States ShiftCode Analytics Full time

**Job Description:**

We are seeking an experienced Security Engineer to join our team at ShiftCode Analytics. In this role, you will be responsible for improving the security of our platform, products, and internal systems, working closely with cross-functional teams to implement systemic security improvements, and providing technical guidance on security assessments, code audits, and design reviews.

 

About the Company:

ShiftCode Analytics is a leading provider of cloud-based analytics solutions, serving clients across various industries. Our mission is to empower businesses to make data-driven decisions, and we are committed to delivering secure and reliable solutions that meet the needs of our customers.

 

Key Responsibilities:

  • Identify and drive impactful projects to improve the security of our platform, products, and internal systems.
  • Partner closely with teams across the company to focus on systemic security improvements and risk reduction.
  • Provide technical guidance on security assessments, code audits, and design reviews.
  • Collaborate with Engineering to establish comprehensive visibility into potential risk events across a cloud-native environment.
  • Create and refine telemetry, detection capabilities, and response playbooks required to detect, prevent, and respond to cyber risk events efficiently.
  • Manage risks by implementing robust security capabilities for repeatable predictable outcomes and maturation, and by coordinating incident response workflows.
  • Participate in team on-call rotation to support our penetration-testing, bug-bounty, and vulnerability-management programs.

 

Requirements:

To succeed in this role, you will need:

4+ years of security engineering experience OR equivalent experience in a SWE/DevOps role and an interest in working on security engineering initiatives

Familiarity with security detection techniques (SAST, DAST, IAST, SCA), threat modeling frameworks (OWASP, MITRE, STRIDE, DREAD), and how they are used together to improve product security through design reviews

A solid understanding of modern software development principles and design patterns, including the ability to write clean, efficient, and maintainable code (in Java, Typescript, Python, etc.)

Familiarity with Agile, DevOps, CI/CD, and cloud-based infrastructure like AWS

Curiosity and a willingness to learn



  • San Francisco, California, United States Klaviyo Full time

    Job Description:Klaviyo is seeking an experienced Enterprise Security Risk Manager to join its risk management team. In this role, you will be responsible for driving the development and implementation of robust risk management strategies across the organization.Key Responsibilities:Lead and execute new risk program maturity projects to introduce more...


  • San Francisco, California, United States Risk Strategies Full time

    As a seasoned risk management professional, you will play a pivotal role in shaping the future of our MLPG Team. Your primary responsibility will be to identify and capitalize on opportunities for the placement of financial lines business for Small to Middle Market companies in the Commercial segment on a regional basis. With a focus on aggregation and...


  • San Diego, California, United States ServiceNow Full time

    At ServiceNow, we are committed to creating an environment where our employees can make a positive impact on our customers' businesses. As an IT Security Risk Management Professional, you will play a critical role in ensuring the security and integrity of our cloud-based platform. With your strong background in IT security and experience working with Java...


  • San Francisco, California, United States Klaviyo Full time

    Klaviyo empowers creators to own their destiny by making first-party data accessible and actionable. We need a remarkable team member who will lead our Risk function's evolution using engineering principles and data-driven strategies.This role is focused on internal security risk management and security metrics analysis. You'll collaborate with various teams...


  • San Jose, California, United States Adobe Full time

    About the RoleAt Adobe, we are committed to creating exceptional digital experiences and empowering our customers to do the same. We are seeking a highly skilled and experienced Security Risk Manager to join our team.This role is pivotal in ensuring Adobe maintains a clear vision regarding both existing and emerging cyber security risks and which challenges...


  • San Francisco, California, United States Cedera Full time

    Career OverviewWe are seeking a seasoned Cybersecurity Professional to join our team as an Enterprise Risk Management specialist. This is an exciting opportunity for a motivated individual to take on a leadership role in shaping the company's cybersecurity strategy and implementing effective risk management practices.About CrederaCredera is a full-service...


  • San Francisco, California, United States Cyber Crime Full time

    Cyber Risk Management SpecialistJob Summary:We are seeking a highly skilled Cyber Risk Management Specialist to join our team at Avant Digital. As a key member of our information security department, you will be responsible for overseeing the identification, assessment, mitigation, and monitoring of technology-related risks within the organization.About...


  • San Francisco, California, United States Unreal Gigs Full time

    Job Description:We are seeking a highly experienced Risk Management Executive to join our team at Unreal Gigs. As an Information Security Manager, you will be responsible for developing and implementing a comprehensive information security strategy that aligns with the company's goals and regulatory requirements.With a proven track record in managing...


  • San Francisco, California, United States Box Full time

    Box is the market leader for Cloud Content Management. Our mission is to empower global organizations through secure and collaborative content solutions.We are seeking a highly skilled Director of Enterprise Risk to lead our risk management function across Box. As part of an established Governance, Risk, and Compliance (GRC) team, you will develop and...


  • San Francisco, California, United States Klaviyo Full time

    Klaviyo values diversity and inclusion in our workplace. We're seeking a skilled Lead Security Risk Partner who will lead our Risk function's transformation using engineering principles and data-driven strategies.This role involves internal security risk management and security metrics analysis. You'll work closely with various teams to develop a cohesive...


  • San Francisco, California, United States Athena Corporate Full time

    Athena Corporate is an innovative company that empowers leaders to achieve their goals through transformative delegation. As a Senior Security Engineer, you will play a critical role in ensuring the security of our organization's digital assets.Job OverviewWe are seeking a highly experienced and skilled Senior Security Engineer to join our team. The ideal...


  • San Francisco, California, United States Crowe Full time

    About Crowe:Crowe is a leading public accounting, consulting, and technology firm that provides audit services to public and private entities. Our team of experts helps clients reach their goals with tax, advisory, risk, and performance services.We are recognized as one of the country's best places to work, serving clients worldwide as an independent member...


  • San Francisco, California, United States TEKsystems Full time

    Job Title: Risk and Security Account ManagerAbout the RoleWe are seeking a highly motivated and experienced Risk and Security Account Manager to join our team at TEKsystems. As a key member of our sales team, you will be responsible for building and maintaining relationships with C-level executives to understand their business needs and develop strategies to...


  • San Francisco, California, United States The RealReal Full time

    Join The RealReal, the world's largest online marketplace for authenticated resale luxury goods, in a unique opportunity to lead and build integrated risk and compliance programs.About the RoleWe are seeking an experienced Audit Technology Risk Manager to help develop and implement an integrated risk and controls program that mitigates existing and emerging...


  • San Jose, California, United States Cypress HCM Full time

    Job OverviewCypress HCM is a leading global company in the cloud-based software industry, and we are seeking a highly skilled Senior Cybersecurity Risk Manager to join our team.Job Responsibilities:Conduct comprehensive security risk assessments to identify, score, and document potential risks from threats and vulnerabilities within the organization's...


  • San Francisco, California, United States Nelson Connects Full time

    Nelson Connects seeks an innovative and highly motivated Strategic IT Security Manager to contribute significantly to the growth and maintain the security of our rapidly-growing organization.This role will provide vision, strategy and broad-based planning to the IT Security function. Under the guidance of the Director, Infrastructure and Security, this...


  • San Jose, California, United States Cypress HCM Full time

    About the RoleWe are seeking a highly skilled Cybersecurity Risk Management Expert to join our team at Cypress HCM. This is an exciting opportunity to work in a growing global company in the cloud-based software industry.Job ResponsibilitiesConduct comprehensive security risk assessments to identify, score and document potential risks from threats and...


  • San Francisco, California, United States Pinterest Full time

    Job OverviewPinterest is seeking a seasoned Risk Management Leader to spearhead the development of our Trust & Safety Risk Mitigation function. As a key member of the Strategy & Ops team, you will be responsible for overseeing the evaluation, monitoring, and mitigation of Trust-related risks associated with new products and features.About UsWe believe that...


  • San Francisco, California, United States Oleria Security Full time

    Company OverviewOleria Security is a leading enterprise cybersecurity startup revolutionizing access control solutions for cloud applications. Founded by industry senior leaders, we have received over $43M in funding from notable investors. Our mission is to reduce data breaches by addressing access risks through advanced AI-powered technology.We recognize...


  • San Francisco, California, United States Klaviyo Full time

    At Klaviyo, we prioritize diversity and inclusion in our workplace. We believe everyone deserves a fair shot at success, regardless of their background or experiences. If you're a close but not exact match with the description, we encourage you to consider applying. Learn more about life at Klaviyo by visiting careers.klaviyo.com.We're seeking a highly...