Current jobs related to Lead Security Risk Analyst - San Francisco, California - Postman, Inc.


  • San Francisco, California, United States Klaviyo Full time

    We're seeking a highly motivated Security Risk Partner who will help us continue to evolve our Risk function by using engineering principles and data-driven strategies to precisely identify, understand, communicate, and prioritize mitigation of risk.This role will start out primarily focused on a subset of our Risk programs: internal security risk management...


  • San Francisco, California, United States Klaviyo Full time

    Job Title: Lead Security Risk PartnerWe are seeking a highly motivated Lead Security Risk Partner to help us continue to evolve our Risk function by using engineering principles and data-driven strategies to precisely identify, understand, communicate, and prioritize mitigation of risk.About the RoleThis role will start out primarily focused on a subset of...


  • San Francisco, California, United States Klaviyo Full time

    About the RoleWe're seeking a highly motivated Lead Security Risk Partner to join our team at Klaviyo. As a key member of our Risk function, you will play a critical role in helping us evolve our risk management practices to be transparent and centered around evidence-based risk models.Key ResponsibilitiesLead and execute new Risk program maturity projects...


  • San Francisco, California, United States Klaviyo Full time

    Job DescriptionWe are seeking a highly motivated Lead Security Risk Partner to help us continue to evolve our Risk function by using engineering principles and data-driven strategies to precisely identify, understand, communicate, and prioritize mitigation of risk.Key ResponsibilitiesLead and execute new Risk program maturity projects that introduce more...


  • San Francisco, California, United States Federal Reserve Bank of San Francisco Full time

    We are seeking a highly skilled IT Security Analyst to join our team at the Federal Reserve Bank of San Francisco. As a key member of our security team, you will be responsible for identifying and communicating security risk, developing positive working relationships with various District organizations, and collaborating with business partners to collect...


  • San Francisco, California, United States Earnest Current Job Openings Full time

    About Earnest Current Job OpeningsEarnest is a company that empowers students with financial support and supercharges their ability to pay down their debt, making higher education accessible and affordable for everyone.Job Title: Lead Quantitative Risk AnalystWe are seeking a highly skilled Lead Quantitative Risk Analyst to play a pivotal role in managing...


  • San Francisco, California, United States Earnest Current Job Openings Full time

    About the RoleWe are seeking a highly skilled Lead Quantitative Risk Analyst to join our team at Earnest. As a key member of our risk management team, you will play a pivotal role in managing and optimizing our loss modeling and underwriting processes.Key ResponsibilitiesDevelop and implement risk models to support our strategic goalsLead the quant risk team...


  • San Francisco, California, United States Earnest Current Job Openings Full time

    About Earnest Current Job OpeningsWe are a company that empowers students with financial support and supercharges their ability to pay down their debt, so they can get on the right financial track, fast.We build tools that help people feel in control of their financial future, including:Private student loans - low rates, people-first service, and flexible...


  • San Francisco, California, United States Earnest Current Job Openings Full time

    About the RoleWe are seeking a highly skilled Lead Quantitative Risk Analyst to join our team at Earnest. As a key member of our risk management team, you will play a pivotal role in managing and optimizing our loss modeling and underwriting processes.Key ResponsibilitiesDefine the roadmap and strategy for risk modeling, ensuring a solid foundation and...


  • San Francisco, California, United States Earnest Current Job Openings Full time

    About the RoleWe are seeking a highly skilled Lead Quantitative Risk Analyst to join our team at Earnest. As a key member of our risk management team, you will play a pivotal role in managing and optimizing our loss modeling and underwriting processes.Key ResponsibilitiesDevelop and implement risk modeling strategies to support our business goalsLead the...


  • San Francisco, California, United States Direct Staffing Inc Full time

    Job Title: Senior Vendor Risk AnalystDirect Staffing Inc. is seeking a highly skilled Senior Vendor Risk Analyst to join our team. As a key member of our risk management team, you will be responsible for coordinating with stakeholders to initiate, scope, and plan controls assessments of new and existing vendor engagements.Key Responsibilities:Coordinate with...


  • San Francisco, California, United States Weights & Biases Full time

    Job Title: Security Engineering AnalystAbout the Role:We are seeking a skilled Security Engineering Analyst to join our team at Weights & Biases. As a Security Engineering Analyst, you will be responsible for detecting vulnerabilities, responding to security incidents, and maintaining a strong security posture across our systems.Key Responsibilities:Monitor...


  • San Francisco, California, United States Federal Reserve Bank Full time

    Job SummaryWe are seeking a highly skilled Sr./ Lead IT Security Analyst to join our team at the Federal Reserve Bank of San Francisco. As a key member of our security team, you will be responsible for identifying and communicating security risks, developing positive working relationships, and collaborating with various District organizations.Key...

  • Risk Analyst

    3 weeks ago


    San Francisco, California, United States Clearway Energy, Inc. Full time

    Job Title: Risk AnalystWe are seeking a highly skilled Risk Analyst to join our team at Clearway Energy, Inc. As a Risk Analyst, you will play a critical role in the implementation and analysis of commercial insurance programs, ensuring the company's assets are protected and its operations are compliant with regulatory requirements.Key...


  • San Francisco, California, United States City of Laguna Beach Full time

    Job Title: Cyber Security AnalystWe are seeking a highly skilled Cyber Security Analyst to join our Information Technology team at the City of Laguna Beach. As a key member of our team, you will be responsible for assessing the current security landscape, making informed recommendations, and managing complex security projects and related programs.The ideal...


  • San Francisco, California, United States BWD Search Full time

    {"title": "Actuarial Analyst V", "description": "Job SummaryBWD Search is partnering with a West Coast-based Health Insurer to find a skilled Actuarial Analyst who will play a key role in assessing financial risk for our organization.Key Responsibilities:Conduct research and analyze data to identify financial risks and opportunities.Develop and maintain...

  • Senior Risk Analyst

    2 weeks ago


    San Francisco, California, United States Lawton Senior Living Full time

    Job Title: Senior Risk AnalystWe are seeking a highly skilled Senior Risk Analyst to join our team at First Citizens Bank. As a Senior Risk Analyst, you will be responsible for building out credit research and analysis within Liquidity Product Management, providing fundamental credit research and financial analysis of SVB counterparties, and offering...

  • IT Security Analyst

    2 months ago


    San Francisco, California, United States U.S. Court of Appeals, Ninth Circuit Full time

    About the RoleThe IT Security Analyst (Assessments) plays a critical role in ensuring the security and integrity of the U.S. Court of Appeals, Ninth Circuit's information systems. This position is responsible for continuously identifying, tracking, sharing, and supporting operational IT security requirements across the Ninth Circuit.Key...


  • San Francisco, California, United States BWD Search Full time

    Actuarial Analyst V Job DescriptionBWD Search is partnering with a West Coast-based Health Insurer to find a skilled Actuarial Analyst V who will play a key role in assessing financial risk for our organization.Key Responsibilities:Conduct in-depth research to identify and analyze financial risks and opportunities, ensuring alignment with financial reports...


  • San Diego, California, United States Risk Mitigation Consulting Full time

    Job SummaryRisk Mitigation Consulting (RMC) is seeking a highly skilled Risk Analyst to join our team in San Diego, California. As a Risk Analyst, you will play a critical role in conducting mission analysis and risk assessment functions for military and civilian customers.Key ResponsibilitiesConduct mission analysis and risk assessment functions for...

Lead Security Risk Analyst

2 months ago


San Francisco, California, United States Postman, Inc. Full time
Senior Security Risk Analyst

Postman is recognized as the premier collaboration platform for API development, streamlining each phase of API creation and enhancing teamwork to foster superior APIs more efficiently. With over 30 million developers and 500,000 organizations utilizing Postman globally, we are dedicated to our mission of connecting 100 million developers and assisting companies in their API-first innovation journey.

The Senior Security Risk Analyst will be integral to the Security Assurance team, concentrating on enhancing the organization's cybersecurity risk management initiatives. The ideal candidate will have a robust background in cybersecurity and risk management, with practical knowledge of risk management frameworks such as NIST RMF, FAIR, and ISO. This position is essential for identifying, assessing, and mitigating potential risks to our information systems and assets. The Senior Security Risk Analyst will work collaboratively with various departments to uphold the security and integrity of our data and systems. The perfect candidate will combine technical expertise with strategic insight, effectively communicating with stakeholders and guiding team members in line with the vision of senior management.

Key Responsibilities:

1. Conduct thorough risk assessments to pinpoint information security risks, potential threats, and vulnerabilities arising from business operations.

2. Formulate and execute risk management strategies and frameworks to address identified risks.

3. Continuously assess and review the effectiveness of risk mitigation strategies.

4. Collaborate with IT, legal, compliance, and other departments to ensure unified and comprehensive risk management practices.

5. Communicate risk findings, mitigation strategies, and security requirements to stakeholders, including senior management.

6. Develop and present detailed reports on risk assessments, including identified threats, vulnerabilities, and the effectiveness of implemented mitigation measures, ensuring clarity for both technical and non-technical stakeholders.

7. Regularly update Postman's policy and procedural documentation to align with current industry best practices and compliance standards, ensuring the Security Assurance team's activities are in sync with organizational objectives.

8. Actively engage with IT Procurement and Legal in the design, management, and enhancement of Third-Party Risk Management and vendor management.

9. Contribute to significant compliance initiatives to integrate and uphold standards such as ISO 27001/27701, HIPAA, NIST, FedRAMP, GDPR, CCPA, and SOC 2, ensuring Postman's compliance with regulatory and contractual obligations.

10. Foster collaboration with business leaders and technical teams to identify, evaluate, and manage security risks and controls, recommending strategies for mitigation and enhancement to support Postman's growth and sales enablement.

11. Serve as a mentor and key escalation point within the team, providing expert guidance, resolving complex issues, and promoting a culture of security awareness and risk management across the organization.

12. Utilize extensive technical knowledge and communication skills to effectively engage with engineers and technologists, providing clear guidance and recommendations on security and compliance best practices.

13. Demonstrate a process-oriented, results-driven approach to compliance engineering, employing effective problem-solving and communication skills to serve as a subject matter expert and trusted advisor within Postman.

Qualifications:

1. A minimum of ten years of experience in cybersecurity governance, risk management, and compliance, with a focus on risk assessments and management.

2. Relevant certifications such as CRISC, CISSP, CISM, or CISA are advantageous.

3. Knowledge and experience with risk management frameworks, including NIST RMF, FAIR, and ISO.

4. Experience with GRC programs, including ISO 27001, HIPAA, and FedRAMP, preferably in a Cloud/SaaS environment.

5. Proficient in technical knowledge related to management information systems, audits, and internal controls.

6. Self-motivated and organized, with a proven ability to meet deadlines.

7. Excellent interpersonal skills and the ability to build relationships across departments and cultures.

Our Values

At Postman, we create with the same curiosity that we see in our users. We value transparency and honest communication about not only successes but also failures. In our work, we focus on specific goals that contribute to a larger vision. Our inclusive work culture ensures that everyone is valued equally as important pieces of our final product. We are dedicated to delivering the best products we can.

Compensation and Benefits

The role offers a competitive compensation package, including a base salary and equity options. Actual compensation will be determined based on the candidate's skills, qualifications, and experience. In addition to our pay-on-performance philosophy, we provide a comprehensive benefits package, including full medical coverage, flexible PTO, wellness reimbursement, and a monthly lunch stipend.

Postman is an Equal Employment Opportunity and Affirmative Action Employer. Qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, or disability status.