Talent.com
Senior Security Risk Specialist

Senior Security Risk Specialist

CloudflareSan Francisco, CA, United States
22 hours ago
Job type
  • Full-time
Job description

Position Title : Senior Security Risk Specialist

About Us

At Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the worlds largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without adding hardware, installing software, or changing a line of code. Internet properties powered by Cloudflare all have web traffic routed through its intelligent global network, which gets smarter with every request. As a result, they see significant improvement in performance and a decrease in spam and other attacks. Cloudflare was named to Entrepreneur Magazine’s Top Company Cultures list and ranked among the Worlds Most Innovative Companies by Fast Company.

We realize people do not fit neat boxes. We are looking for curious and empathetic individuals who are committed to developing themselves and learning new skills, and we are ready to help you do that. We cannot complete our mission without building a diverse and inclusive team. We hire the best people based on an evaluation of their potential and support them throughout their time at Cloudflare. Come join us!

Available Locations

Bengaluru

About The Role

We are looking to hire an experienced Security Risk Management Specialist on our Governance, Risk, and Compliance team. This role will be responsible for identifying and managing security risk across Cloudflare's production environment and critical business functions.

At Cloudflare, risk management lays the foundation for protecting Cloudflare and our customers. The Risk team identifies risk throughout the company and prioritizes mitigation efforts to drive Security team roadmaps. We do not believe in tick-box security, so for us risk management is a pathway to doing things right.

This is an opportunity to join a rapidly scaling and world class security organization within a billion dollar business. We guarantee you won’t get bored.

What you'll do

Support the governance process for the security risk register. This includes :

  • Reviewing and advising on new risks and policy exceptions
  • Ensuring the risk register and dependencies are up to date (e.g. Control Framework)
  • Partnering with risk owners to align on risk remediation plans and timelines
  • Driving discussions around risk remediation that involve significant effort or cross-functional collaboration
  • Reviewing evidence submitted by the business to mitigate or close risks
  • Re-reviewing accepted risks and exceptions periodically
  • Supporting risk reviews with business and security leadership
  • Driving program maturity through process improvements and tooling & automation
  • Mentoring fellow team members on risk program initiatives
  • Some travel may be required to engage teammates and stakeholders in San Francisco, Austin, London, Lisbon, or other global Cloudflare locations.

Desirable skills, knowledge and experience.

  • Total work experience of 10+ years
  • Senior level experience typically gained in 4-8 years working in Security Governance, Risk, and Compliance
  • Experience conducting risk & controls assessments and risk advisory
  • Experience with risk rating methodologies
  • Experience recommending mitigating controls and driving risk remediation
  • Experience reporting on risks and program metrics to leadership
  • Experience maturing or scaling risk program
  • Strong understanding of security control frameworks such as SOC 2, ISO 27001, PCI DSS, and NIST SP 800-53
  • Strong understanding of risk rating methodologies such as NIST SP 800-30 and ISO 31000
  • Solid understanding of on-prem & cloud architectures and security controls
  • Experience with data analytics and dashboarding tools such as Tableau, Looker Studio or Power BI is a plus
  • Strong analytical and interpersonal skills
  • Self-starter with the ability to work independently with a sense of curiosity
  • What Makes Cloudflare Special?

    We’re not just a highly ambitious, large‑scale technology company. We are a highly ambitious, large‑scale technology company with a soul. Fundamental to our mission to help build a better Internet is protecting the free and open Internet.

    Project Galileo : Since 2014, we’ve equipped more than 2,400 journalism and civil society organizations in 111 countries with powerful tools to defend themselves against attacks that would otherwise censor their work, technology already used by Cloudflare’s enterprise customers—at no cost.

    Athenian Project : In 2017, we created the Athenian Project to ensure that state and local governments have the highest level of protection and reliability for free, so that their constituents have access to election information and voter registration. Since the project, we’ve provided services to more than 425 local government election websites in 33 states.

    1.1.1.1 : We released 1.1.1.1 to help fix the foundation of the Internet by building a faster, more secure and privacy‑centric public DNS resolver. This is available publicly for everyone to use— it is the first consumer‑focused service Cloudflare has ever released. Here’s the deal— we don’t store client IP addresses ever, ever. We will continue to abide by our privacy commitment and ensure that no user data is sold to advertisers or used to target consumers.

    Sound like something you’d like to be a part of? We’d love to hear from you!

    This position may require access to information protected under U.S. export control laws, including the U.S. Export Administration Regulations. Please note that any offer of employment may be conditioned on your authorization to receive software or technology controlled under these U.S. export laws without sponsorship for an export license.

    Cloudflare is proud to be an equal opportunity employer. We are committed to providing equal employment opportunity for all people and place value in both diversity and inclusiveness. All qualified applicants will be considered for employment without regard to their, or any other person’s, perceived or actual race, color, religion, sex, gender, gender identity, gender expression, sexual orientation, national origin, ancestry, citizenship, age, physical or mental disability, medical condition, family care status, or any other basis protected by law. We are an AA / Veterans / Disabled Employer.

    Cloudflare provides reasonable accommodations to qualified individuals with disabilities. Please tell us if you require a reasonable accommodation to apply for a job. Examples of reasonable accommodations include, but are not limited to, changing the application process, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment. If you require a reasonable accommodation to apply for a job, please contact us via e‑mail at hr@cloudflare.com or via mail at 101 Townsend St. San Francisco, CA 94107.

    Equal employment opportunity, including veterans and individuals with disabilities.

    PI279407191

    #J-18808-Ljbffr

    Create a job alert for this search

    Security Specialist • San Francisco, CA, United States

    Related jobs
    • Promoted
    Security Risk Manager

    Security Risk Manager

    DocuSign, Inc.San Francisco, CA, United States
    Full-time
    Docusign brings agreements to life.Docusign solutions to accelerate the process of doing business and simplify people’s lives. With intelligent agreement management, Docusign unleashes business-crit...Show moreLast updated: 30+ days ago
    • Promoted
    Security Lead (Vulnerability Management) - SF / NYC / Remote (US)

    Security Lead (Vulnerability Management) - SF / NYC / Remote (US)

    Cogent Security, Inc.San Francisco, CA, United States
    Remote
    Full-time
    Cogent Security is on a mission to stop breaches and prevent cybercrime by innovating at the frontier of generative AI systems. We are building the world’s first AI cyber taskforce, composed of AI a...Show moreLast updated: 4 days ago
    • Promoted
    Lead Specialist, Third Party Risk Management

    Lead Specialist, Third Party Risk Management

    KPMG USSan Francisco, CA, United States
    Full-time
    Lead Specialist, Third Party Risk Management is a role within KPMG’s Managed Services practice where the specialist will assess vendor and third‑party security risks, draft assessment reports, and ...Show moreLast updated: 2 days ago
    • Promoted
    Security Risk Manager

    Security Risk Manager

    DocusignSan Francisco, CA, United States
    Full-time
    Docusign brings agreements to life.Docusign solutions to accelerate the process of doing business and simplify people’s lives. With intelligent agreement management, Docusign unleashes business‑crit...Show moreLast updated: 27 days ago
    • Promoted
    Senior Security Analyst

    Senior Security Analyst

    EverlawOakland, CA, United States
    Full-time
    We're looking for a Senior Security Analyst to join our corporate Security Operations team and take a leading role in securing our internal corporate systems and infrastructure.This role is critica...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    WaymoSan Francisco, CA, United States
    Full-time
    Waymo is an autonomous driving technology company with the mission to be the world's most trusted driver.Since its start as the Google Self-Driving Car Project in 2009, Waymo has focused on buildin...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    EchoTwin AISan Francisco, CA, United States
    Full-time
    EchoTwin AI is pioneering AI-driven infrastructure intelligence, redefining how cities are managed.Powered by a proprietary visual intelligence engine with full spatial reasoning, EchoTwin transfor...Show moreLast updated: 1 day ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Loft Orbital, Inc.San Francisco, CA, United States
    Full-time
    Loft Orbital is revolutionizing access to space by building reliable, shareable satellites that drastically reduce the time and complexity traditionally required to get to orbit.We operate satellit...Show moreLast updated: 19 days ago
    • Promoted
    Security Specialist Sonoma, CA

    Security Specialist Sonoma, CA

    Gavin de Becker & Associates (GDBA)San Francisco, CA, United States
    Full-time
    Gavin de Becker & Associates (GDBA).Founded in 1978 by 3-time Presidential appointee, Gavin de Becker, our firm’s Protectors, Analysts, and Investigators are committed to our mission of protecting ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    CohereSan Francisco, CA, United States
    Full-time
    Our mission is to scale intelligence to serve humanity.We’re training and deploying frontier models for developers and enterprises who are building AI systems to power magical experiences like cont...Show moreLast updated: 1 day ago
    • Promoted
    • New!
    Senior GRC Security Lead — ISO / NIST, Risk & Audits

    Senior GRC Security Lead — ISO / NIST, Risk & Audits

    LambdaSan Francisco, CA, United States
    Full-time
    A leading AI infrastructure company is seeking a Cybersecurity Risk Manager to enhance their compliance framework.Responsibilities include managing audits, communicating with stakeholders, and ensu...Show moreLast updated: 22 hours ago
    • Promoted
    Risk Specialist

    Risk Specialist

    LyftSan Francisco, CA, United States
    Full-time
    At Lyft, our purpose is to serve and connect.We aim to achieve this by cultivating a work environment where all team members belong and have the opportunity to thrive. At Lyft, community is what we ...Show moreLast updated: 4 days ago
    • Promoted
    Security Specialist

    Security Specialist

    Gavin de Becker & Associates (GDBA)San Francisco, CA, United States
    Full-time
    Gavin de Becker & Associates (GDBA).Founded in 1978 by 3-time Presidential appointee, Gavin de Becker, our firm’s Protectors, Analysts, and Investigators are committed to our mission of protecting ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer, Insider Risk

    Senior Security Engineer, Insider Risk

    AirwallexSan Francisco, CA, United States
    Full-time
    Airwallex is the only unified payments and financial platform for global businesses.Powered by our unique combination of proprietary infrastructure and software, we empower over 150,000 businesses ...Show moreLast updated: 13 days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    EchoTwin AI, Inc.San Francisco, CA, United States
    Full-time
    EchoTwin AI is pioneering AI-driven infrastructure intelligence, redefining how cities are managed.Powered by a proprietary visual intelligence engine with full spatial reasoning, EchoTwin transfor...Show moreLast updated: 30+ days ago
    • Promoted
    Principal Solutions Architect, Security Specialist

    Principal Solutions Architect, Security Specialist

    ElasticMountain View, CA, United States
    Full-time
    Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale - unleashing the potential of businesses and people.The Elastic Search AI...Show moreLast updated: 1 day ago
    • Promoted
    Senior Security Risk Management Specialist - Risk Remediation

    Senior Security Risk Management Specialist - Risk Remediation

    Cloudflare, Inc.San Francisco, CA, United States
    Full-time
    At Cloudflare, we are on a mission to help build a better Internet.Today the company runs one of the world's largest networks that powers millions of websites and other Internet properties for cust...Show moreLast updated: 2 days ago
    • Promoted
    Senior Security Analyst

    Senior Security Analyst

    CartaSan Francisco, CA, United States
    Full-time
    Carta connects founders, investors, and limited partners through world‑class software, purpose‑built for everyone in venture capital, private equity and private credit. Trusted by 65,000+ companies ...Show moreLast updated: 4 days ago