At Asana, security is foundational to our mission of helping teams work together effortlessly. Our security team protects Asana's employees, users, and customers by proactively addressing threats, ensuring compliance, and fostering a culture of security throughout our product and operations. As the Security Risk Manager, you will own Asana's internal security risk management program end-to-end. This is a senior role for someone who goes beyond frameworks and checklists — you will engineer the quantitative and automated foundations that let Asana continuously measure and make confident decisions about security risk. You'll build the systems and processes that make risk scalable, not just the policies that describe it, and serve as a trusted advisor to senior leadership. This role is based in our San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements What you'll achieve Own Asana's security risk management program: Design and continuously mature a quantitative risk framework — including risk scoring methodologies, likelihood and impact modeling, and risk appetite thresholds — that enables consistent, data-driven risk decisions across the organization. Build and maintain a living risk register: Own Asana's central security risk register, developing KRIs, tracking trends over time, and driving accountability for risk treatment and remediation with business and technical owners. Automate risk identification and monitoring: Design and implement automated data pipelines and integrations that continuously surface security risks — pulling signals from vulnerability scanners, cloud security tooling, SIEMs, and third-party risk sources — so Asana's
Jobiba hiring network
Security Operations Officer Jobs
2,254 active opportunities · Updated for September 2026
Fresh results
15 shown
Explore current security operations officer jobs. Use filters to narrow by work mode, employment type, experience and date posted.
At Asana, security is foundational to our mission of helping teams work together effortlessly. Our Security organization protects Asana’s employees, users, and customers by proactively addressing threats, enabling secure product development, and embedding security into the fabric of how we operate. We partner closely with Engineering, Product, IT, Legal, and Compliance to build and maintain trust at scale. As a Security Technical Program Manager, you'll be the connective tissue across the entire Security organization, driving the strategy, programs, and operational rhythms that make the team highly effective and externally visible. This is a high-impact, high-autonomy role. You'll define how Security as a function operates: how it plans, how it measures itself, how it communicates progress, and how it executes on its biggest bets. You won't just run programs, you'll shape the operating model that makes all programs run better. This role is based in our San Francisco office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do and the teams with which you partner. If you're interviewing for this role, your recruiter will share more about the in-office requirements. What you’ll achieve Lead high-impact, cross-functional special projects that span organizational boundaries, from standing up new security capabilities and maturity programs to company-wide strategic initiatives Own the Security organization's annual and quarterly planning cycles, translating multi-year security strategy into a prioritized, executable roadmap Drive the prioritization and communication of security asks across stakeholders, building a unified framework that influences how partner teams plan and prioritize security work Define and own the Security team's KPI framework, covering risk posture, program health, and strategic
At Asana, security is foundational to our mission of helping teams work together effortlessly. Our security team protects Asana’s employees, users, and customers by proactively addressing threats, ensuring compliance with legal and regulatory requirements, and fostering a culture of security throughout our product and operations. We are a team of security engineers and risk and compliance practitioners who build innovative safeguards and collaborate across the organization to build and maintain trust at scale. As the Third Party Risk Management Lead, you will be responsible for building and running Asana’s Third Party Risk Management (TPRM) program. You will own the end-to-end lifecycle of vendor security risk — from initial due diligence and risk tiering through ongoing monitoring and remediation. You will work closely with Procurement, Legal, Privacy, and Engineering teams to ensure that our third-party relationships are effectively assessed, tracked, and managed. This role is based in our Warsaw office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do, and your recruiter can share more about the in-office requirements. Our employees in Poland are employed under a contract of employment. What you’ll achieve Own and scale Asana’s TPRM program: Design, implement, and continuously improve a risk-based framework for assessing and managing third-party vendors and service providers. Establish risk tiering criteria, assessment workflows, and governance processes that scale with business growth. Lead vendor security assessments: Conduct and oversee security due diligence for new and existing vendors, including reviewing SOC 2 reports, ISO 27001 certifications, security questionnaires (SIG, CAIQ), and other relevant documentation. Identify gaps and work with vendors to remediate findings. Drive rem
As a Senior Security Engineer focused on Datadog’s Cloud SIEM product, you will help shape the future of security operations by transforming real-world security expertise into scalable detection, investigation, and response capabilities. You will develop high-impact threat detection content, improve AI-assisted security workflows, and help defenders identify and respond to threats across cloud-native and enterprise environments. Working closely with Product, Engineering, and Security Research teams, you will influence the evolution of Datadog Security products while advancing detection coverage across emerging technologies and attack surfaces. This role offers the opportunity to contribute to open source initiatives, publish security research, and help define the next generation of agentic security operations capabilities. At Datadog, we place value in our office culture - the relationships and collaboration it builds and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them. What You'll Do: Research attacker techniques, defensive strategies, and emerging threats, translating findings into scalable security capabilities that protect customers at cloud scale. Design and improve AI-powered investigation, threat hunting, and response workflows that support Datadog’s agentic SOC capabilities. Own the lifecycle of threat detections and automated security workflows, from research and design through deployment, measurement, and continuous improvement. Develop high-fidelity detection content across cloud platforms, SaaS applications, identity systems, endpoints, networks, and other modern attack surfaces. Partner with Product, Engineering, Security Research, and customers to influence roadmap decisions and improve security outcomes across the platform. Mentor security engineers and drive improvements through automation, tooling, rapid prototyping, and data-driven optimization. Who Yo
As a Senior Security Engineer focused on Datadog’s Cloud SIEM product, you will help shape the future of security operations by transforming real-world security expertise into scalable detection, investigation, and response capabilities. You will develop high-impact threat detection content, improve AI-assisted security workflows, and help defenders identify and respond to threats across cloud-native and enterprise environments. Working closely with Product, Engineering, and Security Research teams, you will influence the evolution of Datadog Security products while advancing detection coverage across emerging technologies and attack surfaces. This role offers the opportunity to contribute to open source initiatives, publish security research, and help define the next generation of agentic security operations capabilities. At Datadog, we place value in our office culture - the relationships and collaboration it builds and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them. What You'll Do: Research attacker techniques, defensive strategies, and emerging threats, translating findings into scalable security capabilities that protect customers at cloud scale. Design and improve AI-powered investigation, threat hunting, and response workflows that support Datadog’s agentic SOC capabilities. Own the lifecycle of threat detections and automated security workflows, from research and design through deployment, measurement, and continuous improvement. Develop high-fidelity detection content across cloud platforms, SaaS applications, identity systems, endpoints, networks, and other modern attack surfaces. Partner with Product, Engineering, Security Research, and customers to influence roadmap decisions and improve security outcomes across the platform. Mentor security engineers and drive improvements through automation, tooling, rapid prototyping, and data-driven optimization. Who Yo
About Appspace: At Appspace, we’re passionate about creating better work experiences for people everywhere, and we’re looking for people that feel the same way. Our global office locations and flexible work culture help you work wherever and however you’re at your best. Plus, we take the time to help you enjoy your work, build lasting connections, and grow your role. Join the Appspace team and be a part of a culture that’s helping people everywhere love where they work. Your Role as a Cloud Security Engineer : We are seeking a highly skilled Cloud Security Engineer to join our dynamic team. This is a crucial customer-facing role where you will be instrumental in designing, implementing secure cloud configurations, being proactive by recommending security by design standards and, securing complex cloud environments for our clients across Google Cloud Platform (GCP), Microsoft Azure, and Amazon Web Services (AWS), with a strong emphasis on GCP. You will leverage your deep expertise in SaaS security, network security, and compliance to provide strategic guidance and hands-on support, ensuring our clients' cloud infrastructures are robust, resilient, and compliant with industry standards. What You'll Do: Cloud Security Operations: Design, implement, and optimize robust cloud security architectures to enhance, build, monitor and address all security alerts from our SIEM and other security systems. This is an operational role whereby you will be available M-F 8am-5pm EDT and, when needed, on-call shifts on evenings and weekends. Network Security Expertise: Your network security and cloud security expertise will be required to respond to customer questionnaires, customer calls and create artifacts including network diagrams, architecture diagram, data flow diagrams and other artifacts to support customer requests. Strong written skills will be required here and attention to detail. SIEM Integration & Optimization: As a Level-2 Security Operation
Location Details: At GoDaddy the future of work looks different for each team. Some teams work in the office full-time, others have a hybrid arrangement (they work remotely some days and in the office some days) and some work entirely remotely. This is a remote position, so you’ll be working remotely from your home. You may occasionally visit a GoDaddy office to meet with your team for events or meetings. This position is not eligible to be performed in Alaska, Mississippi, North Dakota, or the Virgin Islands. GoDaddy is not currently considering candidates for this role in California, Seattle, or NYC. Join Our Team... We are seeking a highly skilled Senior Security Engineer to join our advanced Security Operations team. This role is focused on leading complex incident response and forensic investigations across Windows, macOS, Linux, and AWS environments while helping modernize security operations through automation and AI-driven capabilities. The ideal candidate is a hands-on security expert with deep AWS security expertise, strong threat detection and digital forensic skills, and experience leveraging AI and machine learning technologies to improve detection, response, and operational efficiency. You will play a key role in protecting critical assets, conducting high-impact investigations, mentoring team members, and driving the evolution of our security program against sophisticated and emerging threats. What You'll Get to Do... Lead high-priority incident response and forensic investigations, serving as the primary escalation point for advanced analysis, containment, recovery, root cause determination, and executive-level reporting. Drive threat detection and response across AWS, Windows, macOS, Linux, and endpoint security platforms, leveraging services such as GuardDuty, Security Hub, Detective, CloudTrail, IAM, VPC Flow Logs, and SentinelOne. Conduct malware analysis, host and cloud forensics, evidence collection, and threat hunting activi
At Asana, security is foundational to our mission of helping humanity thrive by enabling the world's teams to work together effortlessly. The security team protects Asana's employees, users, and customers by proactively addressing threats and fostering a culture of security throughout our product and operations. We’re looking for a detail-oriented, collaborative Security Operations Engineer to join our Security blue team in Warsaw to help solve complex tracking challenges and ultimately scale our security infrastructure. You'll be a foundational member of the security presence in a key engineering hub, partnering directly with IT, infrastructure, and product teams to ensure we have robust detection and response capabilities. This role is based in our Warsaw office with an office-centric hybrid schedule. The standard in-office days are Monday, Tuesday, and Thursday. Most Asanas have the option to work from home on Wednesdays. Working from home on Fridays depends on the type of work you do, and your recruiter can share more about the in-office requirements. We offer a Contract of Employment (UoP) for our employees in Poland. What you’ll achieve: Lead security incident detection, analysis, and response efforts, ensuring timely and effective remediation of security incidents. Utilize and optimize security tools such as Panther for SIEM, CrowdStrike for endpoint detection and response, and other security platforms. Develop, implement, and maintain security playbooks and automation scripts to streamline security operations and reduce manual toil. Monitor security alerts and threat intelligence feeds, proactively identifying and addressing emerging threats. Conduct forensic analysis during security incidents to understand the scope and impact of incidents. Collaborating with engineering teams to integrate security best practices into development processes and provide guidance on secure configurations. Develop and deliver t
About the Team The Industrial Security team enables OpenAI’s classified and national security work by building secure, compliant programs that support government customers and protect sensitive information. Within Industrial Security, the Personnel Security function ensures employees have the clearances, accesses, briefings, and government approvals required to support classified programs. We work closely with employees, program teams, government customers, and partners across Security, People, Recruiting, Legal, IT, and Facilities to make complex security processes accurate, timely, and understandable. About the Role As a Personnel Security Specialist, you will own the day-to-day personnel security operations that allow OpenAI employees to support classified government work. You will manage clearance and access requests, maintain government-system records, coordinate visits and briefings, support onboarding and offboarding, and guide employees through sensitive security requirements with discretion and care. We’re looking for a hands-on security professional who can independently manage a high-volume operational queue, keep cases and records organized, recognize when issues require escalation, and improve the processes behind the work. This role offers the opportunity to help build a modern personnel security function that supports important national security programs while delivering a thoughtful, responsive employee experience. This role is based in San Francisco, CA, or Washington, DC. We use a hybrid work model of three days in the office per week and offer relocation assistance to new employees. Additional onsite presence and occasional travel may be required based on classified program and government customer needs. In this role, you will: Own the daily personnel security workload from intake through completion, including clearance verification, access nominations, visit requests, onboarding, offboarding, briefings, and reporting actions. Process and track pe
Who we are About Stripe Stripe is a financial infrastructure platform for businesses. Millions of companies - from the world’s largest enterprises to the most ambitious startups - use Stripe to accept payments, grow their revenue, and accelerate new business opportunities. Our mission is to increase the GDP of the internet, and we have a staggering amount of work ahead. That means you have an unprecedented opportunity to put the global economy within everyone's reach while doing the most important work of your career. About the team Corporate Security helps keep Stripe secure and Stripes safe by building practical, risk-based programs that enable the company to operate and grow. We are looking for an experienced Regional Security Manager to join our team. As the Regional Security Manager Americas at Stripe, you will be responsible for developing our core physical-security deliverables to office locations in the Americas (North America and parts of Latin America), and help evolve our program to support Stripe around the globe. You will work cross functionally within the Corporate Security team, and alongside other business teams at the company to keep Stripe secure and Stripes safe. What you’ll do As Regional Security Manager Americas, reporting to the Head of Global Security Operations, you will lead and continuously improve physical security operations across North America and relevant parts of Latin America. This is an individual-contributor role: you will manage regional contractors and vendor relationships, but will not directly manage employees at this time. You will translate regional risk into scalable programs, build trusted partnerships with internal teams and service providers, and help evolve Stripe’s global security operating model. This is a hybrid role. The successful candidate will spend 50% of their time in one of our AMER office locations in San Francisco, New York, Seattle, or Chicago. We are not entertaining remote candidates at this time. Respons
Every day, tens of millions of people come to Roblox to explore, create, play, learn, and connect with friends in 3D immersive digital experiences– all created by our global community of developers and creators. At Roblox, we’re building the tools and platform that empower our community to bring any experience that they can imagine to life. Our vision is to reimagine the way people come together, from anywhere in the world, and on any device. We’re on a mission to connect a billion people with optimism and civility, and looking for amazing talent to help us get there. A career at Roblox means you’ll be working to shape the future of human interaction, solving unique technical challenges at scale, and helping to create safer, more civil shared experiences for everyone. As a founding member of the Security Operations team in EMEA, you will join us at an exciting time in Roblox’s SIRT & SOC program. You will design and build the detections, automation and tooling that let a lean team monitor and protect players, developers, employees and the platform at global scale and serve as security incident commander in the region. This is a highly autonomous role where you will be a primary decision-maker, core to our mission to maintain a highly capable 24/7/365 monitoring and response capability. While you will work in close collaboration with peers at our US West Coast Headquarters, the time difference requires an engineer who can operate independently, making critical decisions without immediate oversight. We favor engineering our way out of toil through automation, orchestration, detections-as-code, and risk-based prioritization, while retaining the deep technical skills required to conduct detailed, hands-on analysis and lead response end-to-end when the situation warrants. Work Environment: This role is based in London, UK. You will be working from a dedicated, private space located within a shared office environment, designed to enable collaboration
Who Are We? Postman is the world’s leading API platform, used by more than 45 million+ developers and 500,000 organizations, including 98% of the Fortune 500. Postman is helping developers and professionals across the globe build the API-first world by simplifying each step of the API lifecycle and streamlining collaboration—enabling users to create better APIs, faster. The company is headquartered in San Francisco and has offices in Boston, New York, Austin, Tokyo, London, and Bangalore - where Postman was founded. Postman is privately held, with funding from Battery Ventures, BOND, Coatue, CRV, Insight Partners, and Nexus Venture Partners. Learn more at postman.com or connect with Postman on X via @getpostman. P.S: We highly recommend reading The "API-First World" graphic novel to understand the bigger picture and our vision at Postman. About the Team The Information Security organization at Postman operates across three pillars: Governance Risk & Compliance (GRC), Product Security, and Security Operations. We are a team of builders, not checkbox-checkers. We hold active SOC 2 Type II, ISO 27001, ISO 42001, and HIPAA compliance postures, and we are pursuing FedRAMP High and CMMC Level 2 authorization. Our security stack includes Wiz, SentinelOne, Okta, Jamf, and 1Password, and we operate across a multi-cloud environment. The Offensive Security team is the "red" pulse of this organization. We don't just find bugs — we simulate the adversary to ensure our defenses hold up under real-world pressure. We focus on continuous security validation, AI-augmented adversary emulation, and offensive AI security research at Postman's scale. The Opportunity We are looking for a Principal Offensive Security Engineer who is as much a strategist as they are a hacker. You will own the strategic direction of Postman's offensive security program — including building out a dedicated Offensive AI Security capability from the ground up — and operat
We believe that the way people interact with their finances will drastically improve in the next few years. We’re dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaid’s network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam. We are hiring for a leader for the newly forming Detection and Response team at Plaid. Our mission is to protect Plaid's financial infrastructure by detecting and responding to suspicious activity across the company. We are responsible for the entire lifecycle of detection and response, including detection infrastructure, AI triage and response, investigation tooling, Red Teaming, and Fraud Operations. Security is foundational to the trust thousands of businesses and millions of consumers place in Plaid, and we work directly to reduce risks and enable our business to move faster and safer. As the Head of Detection and Response, you will be the founding leader responsible for standing up and evaluating Plaid's detection and response team. You will lead a specialized technical team of analysts and engineers, gain deep experience partnering with the CISO and cross-functional engineering leaders, and build critical security infrastructure at scale. This is a unique leadership opportunity to manage a team that encompasses traditional security operations alongside Red Teaming and Fraud Operations, directly impacting Plaid's security posture and long-term stability. Responsibilities: Form and set up Plaid’
Datadog’s Implementation Services team helps customers implement and deploy Datadog quickly. Our team of architects leads the discovery, design, build, and launch of the Datadog platform to help customers accelerate time to value and get the most out of their investment. As a member of our team, you will be responsible for developing the technical roadmap for a customer’s implementation, and leading them through it every step of the way. At Datadog, we place value in our office culture - the relationships and collaboration it builds and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them. What You’ll Do: Design and guide execution of Datadog implementations, including gathering requirements, building technical architecture, and supporting deployment and launch Guide customer onboarding through co-development working sessions and assist when they run into roadblocks Write automation and design architecture for deployment templates Manage the operation of implementation projects Collaborate with other teams, including Customer Success, Technical Account Management, and Sales to deliver an exceptional onboarding experience Who You Are: Experience designing and delivering technical solutions for DevOps Monitoring or architecture systems Hands-on experience with cloud platforms (AWS, Azure, GCP) and compute technologies (EC2, serverless, VMware, VMs, Docker, Kubernetes). Experience with Config Management, IAC and CI/CD tools, including Ansible, Puppet, Terraform, Chef, Jenkins, Circle CI, GitHub Actions, Azure Pipelines, etc… Experience programming/scripting with any of the following: Java, Python, Ruby, Go, Node.JS, PHP, and .NET etc Background in security operations, including SOC management, SIEM tooling (e.g. Splunk Professional Services), and designing or supporting zero-trust networking architectures Successful track record with 5+ years exper
About the team OpenAI’s mission is to build safe artificial general intelligence (AGI) which benefits all of humanity. This long-term undertaking brings the world’s best scientists, engineers, and business professionals into one lab together to accomplish this. In pursuit of this mission, our Go To Market (GTM) team is responsible for helping customers learn how to leverage and deploy our highly capable AI products across their business. The Cybersecurity specialist sales team partners with Account Directors, Technical Success, Marketing, and Partnerships to drive cybersecurity adoption that help bring AI to as many users as possible. About the role Our Sales team has a unique mission to help cybersecurity customers understand the deep impact that highly capable AI models can bring to their businesses, operations, employees, and customers. This role is a mixture of technical understanding, industry expertise, vision, partnership, and value-driven strategy. As an Account Director focused on Cybersecurity, you will own executive-level relationships with leading cybersecurity firms and help them safely and effectively deploy OpenAI’s technology across their organizations. You’ll work with customers to identify and scale high-impact use cases across areas such as security operations, threat intelligence, risk management, incident response, vulnerability management, workforce enablement, customer support, and enterprise knowledge management. You’ll be a key driver of opportunities through the entire sales cycle, from pipeline generation to closure and successful deployment. You’ll work with researchers, engineers, and solution strategists to help customers transform their operations and evolve the cybersecurity industry with AI. This role is based in San Francisco, Seattle or New York. We use a hybrid work model of 3 days in the office per week and offer relocation assistance to new employees. We are open to US-based remote candidates. In this role, you’ll: Support Accou
Get new security operations officer jobs by email
Daily job updates · Unsubscribe anytime