Current jobs related to Lead Security Risk Analyst - San Francisco, California - Postman, Inc.


  • San Francisco, California, United States Klaviyo Full time

    We're seeking a highly motivated Security Risk Partner who will help us continue to evolve our Risk function by using engineering principles and data-driven strategies to precisely identify, understand, communicate, and prioritize mitigation of risk.This role will start out primarily focused on a subset of our Risk programs: internal security risk management...


  • San Francisco, California, United States Klaviyo Full time

    Job Title: Lead Security Risk PartnerWe are seeking a highly motivated Lead Security Risk Partner to help us continue to evolve our Risk function by using engineering principles and data-driven strategies to precisely identify, understand, communicate, and prioritize mitigation of risk.About the RoleThis role will start out primarily focused on a subset of...


  • San Francisco, California, United States Klaviyo Full time

    About the RoleWe're seeking a highly motivated Lead Security Risk Partner to join our team at Klaviyo. As a key member of our Risk function, you will play a critical role in helping us evolve our risk management practices to be transparent and centered around evidence-based risk models.Key ResponsibilitiesLead and execute new Risk program maturity projects...


  • San Francisco, California, United States Klaviyo Full time

    Job DescriptionWe are seeking a highly motivated Lead Security Risk Partner to help us continue to evolve our Risk function by using engineering principles and data-driven strategies to precisely identify, understand, communicate, and prioritize mitigation of risk.Key ResponsibilitiesLead and execute new Risk program maturity projects that introduce more...


  • San Francisco, California, United States Federal Reserve Bank of San Francisco Full time

    We are seeking a highly skilled IT Security Analyst to join our team at the Federal Reserve Bank of San Francisco. As a key member of our security team, you will be responsible for identifying and communicating security risk, developing positive working relationships with various District organizations, and collaborating with business partners to collect...


  • San Francisco, California, United States Earnest Current Job Openings Full time

    About Earnest Current Job OpeningsEarnest is a company that empowers students with financial support and supercharges their ability to pay down their debt, making higher education accessible and affordable for everyone.Job Title: Lead Quantitative Risk AnalystWe are seeking a highly skilled Lead Quantitative Risk Analyst to play a pivotal role in managing...


  • San Francisco, California, United States Earnest Current Job Openings Full time

    About the RoleWe are seeking a highly skilled Lead Quantitative Risk Analyst to join our team at Earnest. As a key member of our risk management team, you will play a pivotal role in managing and optimizing our loss modeling and underwriting processes.Key ResponsibilitiesDevelop and implement risk models to support our strategic goalsLead the quant risk team...


  • San Francisco, California, United States Earnest Current Job Openings Full time

    About Earnest Current Job OpeningsWe are a company that empowers students with financial support and supercharges their ability to pay down their debt, so they can get on the right financial track, fast.We build tools that help people feel in control of their financial future, including:Private student loans - low rates, people-first service, and flexible...


  • San Francisco, California, United States Earnest Current Job Openings Full time

    About the RoleWe are seeking a highly skilled Lead Quantitative Risk Analyst to join our team at Earnest. As a key member of our risk management team, you will play a pivotal role in managing and optimizing our loss modeling and underwriting processes.Key ResponsibilitiesDefine the roadmap and strategy for risk modeling, ensuring a solid foundation and...


  • San Francisco, California, United States Earnest Current Job Openings Full time

    About the RoleWe are seeking a highly skilled Lead Quantitative Risk Analyst to join our team at Earnest. As a key member of our risk management team, you will play a pivotal role in managing and optimizing our loss modeling and underwriting processes.Key ResponsibilitiesDevelop and implement risk modeling strategies to support our business goalsLead the...


  • San Francisco, California, United States Direct Staffing Inc Full time

    Job Title: Senior Vendor Risk AnalystDirect Staffing Inc. is seeking a highly skilled Senior Vendor Risk Analyst to join our team. As a key member of our risk management team, you will be responsible for coordinating with stakeholders to initiate, scope, and plan controls assessments of new and existing vendor engagements.Key Responsibilities:Coordinate with...


  • San Francisco, California, United States Weights & Biases Full time

    Job Title: Security Engineering AnalystAbout the Role:We are seeking a skilled Security Engineering Analyst to join our team at Weights & Biases. As a Security Engineering Analyst, you will be responsible for detecting vulnerabilities, responding to security incidents, and maintaining a strong security posture across our systems.Key Responsibilities:Monitor...


  • San Francisco, California, United States Federal Reserve Bank Full time

    Job SummaryWe are seeking a highly skilled Sr./ Lead IT Security Analyst to join our team at the Federal Reserve Bank of San Francisco. As a key member of our security team, you will be responsible for identifying and communicating security risks, developing positive working relationships, and collaborating with various District organizations.Key...

  • Risk Analyst

    3 weeks ago


    San Francisco, California, United States Clearway Energy, Inc. Full time

    Job Title: Risk AnalystWe are seeking a highly skilled Risk Analyst to join our team at Clearway Energy, Inc. As a Risk Analyst, you will play a critical role in the implementation and analysis of commercial insurance programs, ensuring the company's assets are protected and its operations are compliant with regulatory requirements.Key...


  • San Francisco, California, United States City of Laguna Beach Full time

    Job Title: Cyber Security AnalystWe are seeking a highly skilled Cyber Security Analyst to join our Information Technology team at the City of Laguna Beach. As a key member of our team, you will be responsible for assessing the current security landscape, making informed recommendations, and managing complex security projects and related programs.The ideal...


  • San Francisco, California, United States BWD Search Full time

    {"title": "Actuarial Analyst V", "description": "Job SummaryBWD Search is partnering with a West Coast-based Health Insurer to find a skilled Actuarial Analyst who will play a key role in assessing financial risk for our organization.Key Responsibilities:Conduct research and analyze data to identify financial risks and opportunities.Develop and maintain...

  • Senior Risk Analyst

    2 weeks ago


    San Francisco, California, United States Lawton Senior Living Full time

    Job Title: Senior Risk AnalystWe are seeking a highly skilled Senior Risk Analyst to join our team at First Citizens Bank. As a Senior Risk Analyst, you will be responsible for building out credit research and analysis within Liquidity Product Management, providing fundamental credit research and financial analysis of SVB counterparties, and offering...

  • IT Security Analyst

    2 months ago


    San Francisco, California, United States U.S. Court of Appeals, Ninth Circuit Full time

    About the RoleThe IT Security Analyst (Assessments) plays a critical role in ensuring the security and integrity of the U.S. Court of Appeals, Ninth Circuit's information systems. This position is responsible for continuously identifying, tracking, sharing, and supporting operational IT security requirements across the Ninth Circuit.Key...


  • San Francisco, California, United States BWD Search Full time

    Actuarial Analyst V Job DescriptionBWD Search is partnering with a West Coast-based Health Insurer to find a skilled Actuarial Analyst V who will play a key role in assessing financial risk for our organization.Key Responsibilities:Conduct in-depth research to identify and analyze financial risks and opportunities, ensuring alignment with financial reports...


  • San Diego, California, United States Risk Mitigation Consulting Full time

    Job SummaryRisk Mitigation Consulting (RMC) is seeking a highly skilled Risk Analyst to join our team in San Diego, California. As a Risk Analyst, you will play a critical role in conducting mission analysis and risk assessment functions for military and civilian customers.Key ResponsibilitiesConduct mission analysis and risk assessment functions for...

Lead Security Risk Analyst

2 months ago


San Francisco, California, United States Postman, Inc. Full time
Senior Security Risk Analyst

Postman, Inc. stands as a premier collaboration platform for API development, empowering developers and organizations globally. With over 30 million developers and 500,000 organizations utilizing our platform, we are committed to enhancing our mission of connecting 100 million developers in an API-centric world.

The Senior Security Risk Analyst will be an integral member of the Security Assurance team, dedicated to strengthening the cybersecurity risk management framework of the organization. The successful candidate will have a robust background in cybersecurity and risk management, along with practical experience in risk management frameworks such as NIST RMF, FAIR, and ISO. This position is essential for identifying, evaluating, and addressing potential risks to our information systems and assets.

Key Responsibilities:
  • Perform thorough risk assessments to uncover information security risks, potential threats, and vulnerabilities arising from business operations.
  • Design and execute risk management strategies and frameworks to mitigate identified risks effectively.
  • Continuously assess and enhance the effectiveness of risk mitigation strategies.
  • Work collaboratively with IT, legal, compliance, and other departments to ensure comprehensive risk management practices.
  • Articulate risk findings, mitigation strategies, and security requirements to stakeholders, including senior management.
  • Create and deliver detailed reports on risk assessments, highlighting identified threats, vulnerabilities, and the success of implemented mitigation measures, ensuring clarity for both technical and non-technical stakeholders.
  • Regularly update Postman's policy and procedural documentation to align with current industry best practices and compliance standards.
  • Engage actively with IT Procurement and Legal to manage and enhance Third-Party Risk Management and vendor oversight.
  • Contribute to significant compliance initiatives to uphold standards such as ISO 27001/27701, HIPAA, NIST, FedRAMP, GDPR, CCPA, and SOC 2.
  • Collaborate with business leaders and technical teams to identify, assess, and manage security risks and controls, recommending strategies for improvement.
  • Serve as a mentor and key resource within the team, providing expert guidance and fostering a culture of security awareness and risk management.
  • Utilize extensive technical knowledge and communication skills to interact effectively with engineers and technologists, offering clear guidance on security and compliance best practices.
  • Exhibit a process-oriented, results-driven approach to compliance engineering, leveraging problem-solving and communication skills to act as a subject matter expert.
Qualifications:
  • A minimum of ten years of experience in cybersecurity governance, risk management, and compliance, with a focus on risk assessments and management.
  • Relevant certifications such as CRISC, CISSP, CISM, or CISA are advantageous.
  • Familiarity with risk management frameworks, including NIST RMF, FAIR, and ISO.
  • Experience with GRC programs, including ISO 27001, HIPAA, and FedRAMP, particularly in a Cloud/SaaS context.
  • Strong technical knowledge related to management information systems, audits, and internal controls.
  • Self-motivated and organized, with a proven track record of meeting deadlines.
  • Exceptional interpersonal skills with the ability to build relationships across diverse departments and cultures.
Our Values:

At Postman, we cultivate a culture of curiosity and transparency, focusing on clear communication about both successes and challenges. Our work is driven by specific goals that contribute to a larger vision, ensuring that every team member is valued as a crucial part of our collective success.

Compensation and Benefits:

For roles based in the greater San Francisco area, we offer a competitive base salary range, along with a comprehensive benefits package that includes full medical coverage, flexible PTO, wellness reimbursement, and a monthly lunch stipend. Compensation is determined based on the candidate's skills, qualifications, and experience.

Postman is an Equal Employment Opportunity and Affirmative Action Employer. We value diversity and are committed to creating an inclusive environment for all employees.