Jobiba hiring network

Security Risk Manager Jobs

3,372 active opportunities · Updated for October 2026

Fresh results

15 shown

Explore current security risk manager jobs. Use filters to narrow by work mode, employment type, experience and date posted.

R
Reolink
📍 Singapore• Full-time
20 days ago

Reolink , a leader in intelligent visual technology for homes and businesses, was founded in 2009 by a group of engineers with a strong commitment to and passion for smarter security solutions. Our products are now trusted by millions of users across more than 110 countries and regions worldwide. Building on this trust, we continue expanding our presence and bringing our innovations to more markets around the globe. Reolink remains committed to delivering advanced, reliable, and user‑centric solutions that empower people to protect what matters most. Responsibilities:​ Global Compliance and Strategic Management:​ Develop, lead, and oversee the company’s global legal compliance strategies and framework to ensure all operations across regions fully comply with local laws, regulations, and international standards. Legal System Development and Contract Management:​ Establish, refine, and optimize the company’s global contract management system and standardized legal documents; lead or review major, complex commercial contracts, agreements, and investment-related legal documents; build a comprehensive global legal risk prevention and management system. Dispute Resolution and Business Support:​ Represent the company in handling significant and complex litigation, arbitration, and other legal disputes; provide on-site legal leadership and support in key business negotiations, M&A, financing, and other strategic matters to safeguard the company’s core interests. Legal Advisory and Risk Control:​ Provide authoritative and forward-looking legal advice and solutions to senior management and various business departments; identify, assess, and alert legal and compliance risks in global business operations. Team Leadership and External Resource Management:​ Lead and manage the global legal team (including legal professionals in Singapore and overseas locations); efficiently manage and coordinate external lawyers and legal advisors to ensure quality and cost-effectiveness in h

awsrestai
View job →
M
12 days ago

Our Purpose Mastercard powers economies and empowers people in 200&#43; countries and territories worldwide. Together with our customers, we’re helping build a sustainable economy where everyone can prosper. We support a wide range of digital payments choices, making transactions secure, simple, smart and accessible. Our technology and innovation, partnerships and networks combine to deliver a unique set of products and services that help people, businesses and governments realize their greatest potential. Title and Summary Lead Data Scientist Overview: Services within Mastercard is responsible for acquiring, engaging, and retaining customers by managing fraud and risk, enhancing cybersecurity, and improving the digital payments experience. We provide value-added services and leverage expertise, data-driven insights, and execution. The Cyber and Intelligence Solutions team is responsible for innovation, development and management of our products and services to address evolving risk and security needs for all of Mastercard’s customers across the world including Banks, Merchants, Fintechs and of course consumers. The Lead Data Scientist will be a key contributor in helping Mastercard develop and deliver actionable insights and products to help issuers, acquirers and merchants reduce fraud. What will you do? -You will be a key player in helping Mastercard extract value from existing data sources in order to better understand, detect and prevent fraud. -Use your data science expertise and skills to analyze worldwide fraud data to gain insights regarding fraud. -Apply modeling techniques to identify and understand fraud to protect the MasterCard payment network. -Build and manage new fraud related products and services that will provide value to our customers and increase revenue. All about you: <br

pythonairecruitment
View job →
R
1mo ago

Replit is the agentic software creation platform that enables anyone to build applications using natural language. With millions of users worldwide, Replit is democratizing software development by removing traditional barriers to application creation. About the Role We are seeking a mid-level AppSec Vulnerability Management Engineer with a strong software development background. In this role, you will bridge the gap between security, compliance, and engineering teams. You will identify application vulnerabilities, maintain software supply chain security, and drive tracking to satisfy strict regulatory compliance frameworks. You will also serve as a technical responder during security incidents, deploying real-time countermeasures to protect our software ecosystem. What You'll Do Core Responsibilities Vulnerability Scanning & Triage: Perform periodic application security scanning activities. Review results and prioritize flaws based on CVSS scores, real-world exploitability, and system exposure. Compliance-Driven Tracking: Track, document, and manage vulnerabilities according to strict compliance SLAs (e.g., SOC 2, ISO 27001, PCI-DSS). Maintain audit-ready evidence of remediation timelines and exception approvals. Executive Reporting & Alerting: Escalate and report critical exposures directly to the CISO and senior leadership. Maintain dashboards and alerting mechanisms that visualize vulnerability status, risk trends, and compliance posture. Software Supply Chain Security: Ownership of the organization's Software Bill of Materials (SBOM). Continually update SBOM inventories to ensure compliance with modern regulatory requirements and dependency tracking. Help Replit mature through various SLSA levels for supply chain security. Remediation Collaboration: Partner with development teams to provide clear mitigation paths. Review, write, and patch code directly when necessary to resolve security flaws. Tooling Integration: Configure and tune automated security te

javascripttypescriptpython
View job →

Senior Security Engineer, Vulnerability Management Here at Datadog, we think about vulnerability management a little differently. We embrace open source software, recognize our role in the software supply chain, and see attackers weaponizing vulnerabilities faster than ever. We are looking for a Senior Security Engineer who can combine vulnerability-management judgment with hands-on engineering to help us scale and improve our vulnerability lifecycle across Datadog’s multi-cloud products and services. In this role, you will turn ambiguous security problems into clear solutions, and work with engineering teams to address root causes and develop technical controls that reduce vulnerabilities earlier in the SDLC. You’ll use AI and automation to help scale the overall vulnerability lifecycle across Datadog. You will use data and sound technical judgment to prioritize risk, and partner with security, product, platform, and compliance teams to bring scalable solutions into practice. At Datadog, we place value in our office culture - the relationships and collaboration it builds, and the creativity it brings to the table. We operate as a hybrid workplace to ensure our Datadogs can create a work-life harmony that best fits them. What You’ll Do Work across the vulnerability lifecycle from detection and impact assessment through risk-based prioritization, remediation, and verification. Use AI and automation to build tools, services, and workflows that make security ideas concrete, validate them quickly, and create alignment for scalable implementation. Reduce engineering toil through a “PRs, not tickets” approach, using automation to enrich findings, identify ownership, recommend or deliver fixes, and track outcomes. Analyze recurring vulnerabilities and remediation failures to identify root causes and opportunities to prevent issues earlier in the SDLC. Partner with SDLC Security, Product Security, platform teams, and engineering teams to balance technical constraints, busin

pythonjavaai
View job →
S
1mo ago

Employee Applicant Privacy Notice Who we are: Shape a brighter financial future with us. Together with our members, we’re changing the way people think about and interact with personal finance. We’re a next-generation financial services company and national bank using innovative, mobile-first technology to help our millions of members reach their goals. The industry is going through an unprecedented transformation, and we’re at the forefront. We’re proud to come to work every day knowing that what we do has a direct impact on people’s lives, with our core values guiding us every step of the way. Join us to invest in yourself, your career, and the financial world. The role We are seeking a Staff Vulnerability Management Engineer to lead the most complex technical work in SoFi’s Vulnerability Management program. You will design and build scalable systems that identify, enrich, prioritize, route, and track vulnerabilities across applications, cloud and infrastructure, containers, software supply chains, and specialized hardware or firmware surfaces. This is a hands-on engineering role with broad technical influence: you will write production code, make architecture decisions, establish vulnerability management standards, and improve how teams understand and reduce vulnerability risk. You will partner with Engineering, Infrastructure, SRE, Compliance, Legal, and business stakeholders to accelerate remediation while protecting engineering velocity and customer trust. You will also serve as a senior technical responder for embargoed disclosures and zero-day events, lead root-cause analysis for high-impact vulnerability incidents, and mentor engineers. The ideal candidate combines deep vulnerability management expertise with strong software engineering judgment, systems thinking, and a bias for durable, measurable outcomes. What you’ll do Lead high-complexity vulnerability management initiatives and make architecture decisions for assigned program areas, from detecti

javascripttypescriptpython
View job →
E
20 days ago

Everpure (NYSE: P) has evolved from storage pioneer to data platform, closing fiscal 2026 with $3.7 billion in revenue, its first billion-dollar quarter, and accelerating growth into FY27. Our strategic agenda spans the companies defining the next era of technology - hyperscalers, AI labs, the AI hardware supply chain, data platform providers, and the broader AI ecosystem. This type of work—work that changes the world—is what the tech industry was founded on. So, if you're ready to seize the endless opportunities and leave your mark, come join us. THE ROLE As a Senior Security Operations Engineer – Attack Surface Management , you will help engineer, operate, and continuously improve our enterprise Attack Surface and Vulnerability Management capabilities. You will focus on discovering and understanding our attack surface, identifying vulnerabilities and exposures, prioritizing them based on real-world risk, and driving remediation across our global environment. The role spans Attack Surface Management, Vulnerability Management, Zero Trust, Secrets and Credential Security, SSPM, Deception, Detection Engineering and Security Automation. We are looking for engineers with strong ASM/Vulnerability Management fundamentals and deeper expertise in one or more adjacent security domains. WHAT YOU’LL DO Engineer and improve enterprise Attack Surface and Vulnerability Management across cloud, infrastructure, endpoints, applications, and internet-facing environments. Discover and correlate assets across security platforms and identify unknown, unmanaged, stale, and externally exposed assets. Drive risk-based vulnerability prioritization using asset criticality, exposure, exploitability, known exploitation, threat intelligence, and compensating controls. Establish remediation workflows and SLAs and partner with asset owners to drive measurable risk reduction. Operate and troubleshoot Zscaler ZIA/ZPA, including SSL inspection, access policies, connectivity, and Zero Trust controls.

pythonawsazure
View job →
R
Ramp
📍 New York• Full-time• From $10K/yr
1mo ago

About Ramp Ramp is building the smart infrastructure for finance teams, embedded in the transaction flow of every dollar a business spends. We automate how over $200B in annualized spend flows in and out of 70,000+ companies: authorizing payments, flagging risk, categorizing spend, and closing books. The problems are high-stakes, data-dense, and unforgiving. We hire people with high agency and high urgency. We look for slope over intercept. We care less about where you trained and more about what you’ve built. At Ramp, everyone is a builder who owns problems end to end and makes consequential decisions that shape the outcome. The median Ramp customer saves 5% and grows revenue 16% in their first year – far in excess of businesses operating without Ramp. We believe every ambitious company deserves the same. If you want to build systems that directly shape how companies move and manage billions, Ramp is the place to do it. About the Role You'll be the architect of our endpoint security posture across the full fleet — macOS, Windows, and BYOD mobile devices. You'll build secure-by-default controls with Terraform and GitOps, harden endpoints at scale, and automate the full device lifecycle so nothing depends on a human remembering to click the right button. You'll partner with IT, SecOps, and engineering teams to sharpen our telemetry and detections, mentor other engineers, and raise the bar on what "low-friction security" actually means. Everything you ship will be auditable, measurable, and built for the long run. We're also thinking seriously about how corporate security evolves in an agentic world — where AI agents act on behalf of employees and traditional identity and endpoint assumptions break down. You'll help us shape that answer. What You’ll Do Write and ship MDM policy as code — configuration profiles, remediation scripts, and enforcement rules across macOS, Windows, and mobile — with staged rollouts and rollback from day one Build patch automation that close

gitrestai
View job →
R
Ramp
📍 New York• Full-time• From $10K/yr
1mo ago

About Ramp Ramp is building the smart infrastructure for finance teams, embedded in the transaction flow of every dollar a business spends. We automate how over $200B in annualized spend flows in and out of 70,000+ companies: authorizing payments, flagging risk, categorizing spend, and closing books. The problems are high-stakes, data-dense, and unforgiving. We hire people with high agency and high urgency. We look for slope over intercept. We care less about where you trained and more about what you’ve built. At Ramp, everyone is a builder who owns problems end to end and makes consequential decisions that shape the outcome. The median Ramp customer saves 5% and grows revenue 16% in their first year – far in excess of businesses operating without Ramp. We believe every ambitious company deserves the same. If you want to build systems that directly shape how companies move and manage billions, Ramp is the place to do it. About the Role The Product Security team helps make Ramp the most secure place for our customers to collect, manage, and put to work their business’ financial information. Our work centers in three areas: Ramp builds products with an eye for security Ramp detects and responds to threats before they cause harm Security powers Ramp’s growth Check out our Engineering Blog for more on our tech stack, mission and values! What You’ll Do Build security-focused application primitives and integrate them into our existing products Design and deploy platform-level mitigations to common security issues Lead remediation of prioritized issues across our technology stack: collaborating with other engineers to triage and fix vulnerabilities discovered internally, through penetration testing, and through our bug bounty program Partner with engineering teams to design and deploy solutions which are inherently secure Champion the use of tooling (linters, static analysis, posture assessment scanners, query inspectors, etc.) which help Ramp engineers build secure system

pythonawsrest
View job →
R
Ramp
📍 New York• Full-time• From $10K/yr
1mo ago

About Ramp Ramp is building the smart infrastructure for finance teams, embedded in the transaction flow of every dollar a business spends. We automate how over $200B in annualized spend flows in and out of 70,000+ companies: authorizing payments, flagging risk, categorizing spend, and closing books. The problems are high-stakes, data-dense, and unforgiving. We hire people with high agency and high urgency. We look for slope over intercept. We care less about where you trained and more about what you’ve built. At Ramp, everyone is a builder who owns problems end to end and makes consequential decisions that shape the outcome. The median Ramp customer saves 5% and grows revenue 16% in their first year – far in excess of businesses operating without Ramp. We believe every ambitious company deserves the same. If you want to build systems that directly shape how companies move and manage billions, Ramp is the place to do it. About the Role The Security Engineering team helps make Ramp the most secure place for our customers to collect, manage, and put to work their business’ financial information Our work centers in three areas: Ramp builds products with an eye for security Ramp detects and responds to threats before they cause harm Security powers Ramp’s growth Check out our Engineering Blog for more on our tech stack, mission and values! What You’ll Do Drive our cloud security roadmap: review our cloud deployments to identify opportunities for improvement Design and build security-focused infrastructure primitives and integrate them into our existing products and development processes Lead remediation of prioritized issues across our technology stack Partner with infrastructure, data, and devops teams to design and deploy solutions that are inherently secure What You Need Minimum 5 years of experience building software Minimum 3 years of experience building in AWS (with Terraform) A strong sense of ownership: you need to drive projects from inception to scaling it in

pythonawsazure
View job →
R
Ramp
📍 New York• Full-time• From $10K/yr
1mo ago

About Ramp Ramp is building the smart infrastructure for finance teams, embedded in the transaction flow of every dollar a business spends. We automate how over $200B in annualized spend flows in and out of 70,000+ companies: authorizing payments, flagging risk, categorizing spend, and closing books. The problems are high-stakes, data-dense, and unforgiving. We hire people with high agency and high urgency. We look for slope over intercept. We care less about where you trained and more about what you’ve built. At Ramp, everyone is a builder who owns problems end to end and makes consequential decisions that shape the outcome. The median Ramp customer saves 5% and grows revenue 16% in their first year – far in excess of businesses operating without Ramp. We believe every ambitious company deserves the same. If you want to build systems that directly shape how companies move and manage billions, Ramp is the place to do it. As Ramp’s founding Privacy engineer, you will build a privacy program that powers Ramp’s growth while earning trust from customers and prospects. What You’ll Do Build privacy-focused application primitives and integrate them into our existing products Partner with other engineering teams to design and deploy solutions which are inherently privacy-centric and secure Improve, implement, and deploy data retention and anonymization strategies across our environment Track shifting legal standards (alongside with Ramp’s Privacy Counsel) and update Ramp systems and processes to match What You Need Minimum of 4 years of experience building software Minimum of 2 years of experienced focused on platform, privacy, and/or security Desire to work in a fast-paced environment, continuously grow, and master your craft Ability to turn business and product ideas into engineering solutions Nice-to-Haves Working knowledge of data-protection legal requirements Experience with Python (Flask), React, and AWS (ECS, as well as other core services) Benefits available to all

pythonreactaws
View job →
DC
Diligent Corporation
📍 New York• Full-time• From $114K/yr
20 days ago

Position Overview: The Solutions Sales Specialist will play an instrumental role in driving revenue growth for Diligent for both existing and new accounts for specialized products, with focus on Compliance (Entity Management and Managed Services). This position will collaborate with core selling teams, customer success, and other internal stakeholders to support the sales process. This role requires a strong understanding of corporate governance, legal entity management, and compliance workflows, paired with consultative selling skills and the ability to translate complex requirements into easy to understand, scalable SaaS solutions. Key Responsibilities Help generate strategic, product-focused pipeline in partnership with core sales teams. Lead discovery to understand customer goals and quantify the value of outcome-based GRC and Entity Management solutions. Advise on solution fit and make recommendations on how to best solution, working closely with SMEs, Solution Engineers and Professional Services. Co-run deals alongside core teams from start to finish. Recommend and present pricing and packaging aligned to customer values and desired outcomes. Support negotiations, security reviews, and procurement processes. Travel to customer sites to conduct strategic, on-site workshops and executive sessions. Partner with post-sale and adoption teams to support implementation and ensure a successful, value-driven customer outcome. Required Experience/Skills: 5+ years of experience in a technical sales, consulting or practitioner role, with a proven track record of success. Ability to build and maintain strong relationships with stakeholders at all levels, both internally at Diligent and within customer organizations. Strong commitment to continuous lear

awsgitai
View job →
S
Supabase
📍 Remote• Full-time
1mo ago

About the Role We’re looking for a Product Security Engineer to join our team and help strengthen how security is built into Supabase’s products, platform, and engineering workflows as we continue to scale. You’ll work closely with software engineers, infrastructure teams, and technical leadership , helping us proactively reduce risk earlier in the development lifecycle and ship securely by default. This role is ideal for someone who thrives in async, fast-paced environments and is excited about building developer tools that scale to millions. Success in this role means improving the security posture of the product without becoming a blocker to speed, autonomy, or builder velocity. What You’ll Own In this role, you’ll: Identify and close gaps across application security, secure design review, and vulnerability management. Conduct threat modeling, secure design reviews, and code reviews to identify practical remediation paths. Partner closely with engineering teams to provide product-focused security expertise and shape a modern security program. Mature how we think about security in a developer-first environment, balancing pragmatism with strong technical judgment. Distinguish between theoretical risk and material business risk to prioritize security efforts effectively. Improve security posture through scalable mechanisms like tooling, automation, secure defaults, and developer-friendly guardrails. Support security incident response by helping triage, investigate, and coordinate remediation for product and platform security issues. Participate in security on-call rotations, helping respond to urgent security events with clear judgment and calm execution. Help manage and mature our bug bounty and vulnerability disclosure processes, including triage, validation, prioritization, and coordination with engineering teams. You Might Be a Good Fit If You Have strong experience in product security, application security, or security engineering. Are comfortable working with

kubernetesrestai
View job →
P
20 days ago

JOB TITLE Access and Identity Management - Business Analyst A CAREER WITH POINT72'S TECHNOLOGY TEAM As Point72 reimagines the future of investing, our Technology group is constantly improving our company’s IT infrastructure, positioning us at the forefront of a rapidly evolving technology landscape. We’re a team of experts experimenting, discovering new ways to harness the power of open source and AI solutions, and embracing enterprise agile methodology. We encourage professional development to ensure you bring innovative ideas to our products while satisfying your own intellectual curiosity. WHAT YOU'LL DO Translate business and security requirements into scalable, production‑ready AIM and IGA solutions that support firmwide operations Partner closely with business, Global Systems Administration, and technology stakeholders to deliver secure, efficient, and user‑friendly access solutions Analyze data to identify access trends, control gaps, and process inefficiencies, with a focus on automating manual processes and improving platform scalability Own requirements gathering, functional documentation, and user stories from ideation through UAT, deployment, and post‑release support Leverage tools such as SailPoint, JIRA, SQL, Splunk, and Power BI to support access governance, reporting, and operational insights Design and maintain dashboards and KPIs that measure access lifecycle performance, risk indicators, and user experience Support data‑driven decision making by validating data quality, ensuring consistency, and aligning metrics to business objectives Build deep domain expertise in identity governance, security controls, and investment‑driven technology platforms Contribute to a culture that prioritizes integrity, transparency, and the highest ethical standards WHAT’S REQUIRED 4+ years of experience as a Business Analyst supporting Access & Identity Management (AIM) and Identity Governance & Administration (IGA) initiatives

sqlagileai
View job →
V
Vanta
📍 United States• Full-time
1mo ago

At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. As a Senior Security Engineer at Vanta, you’ll own projects with impact across the business to help us run an efficient and highly effective security team. The security team at Vanta ensures that we are a trustworthy steward of sensitive data. We also contribute subject matter expertise to the product, sales, marketing, support, and engineering functions, given the nature of our business. You’ll join Vanta’s Security organization, which provides essential security operational services, is directly involved in the software development process and building tools to make it easy for developers to ship products securely, sets policies and standards regarding enterprise-wide security requirements, and offers advisory services to enable our business to thrive while effectively managing risk. If you’re someone who has high initiative and enjoys problem solving while having impact at a high-growth company, we would love to hear from you! What you’ll do as a Senior Security Engineer at Vanta: Participate in team exercises to identify potential security risks, including threat modeling and tabletop scenarios Contribute to complex prioritization discussions around which risks are the most important to solve next Plan projects to address the risks we prioritize, and coordinate with cross-functional stakeholders across the company to execute those projects Build maintainable programs to implement operational excellence where ongoing work is needed to achieve our goals (e.g. vulnerability management) Partner with engineering teams to architect secure software, address security concerns, and build a strong security culture Build, customize, a

restaigo
View job →

For over 20 years, Smartsheet has empowered teams to manage work seamlessly and scale solutions smarter. Now, in our most ambitious chapter yet, we are uniting human teams with AI agents. By orchestrating the work agents do best, automating manual tasks and uncovering insights at scale, we create the space for people to focus on what truly matters: judgment, creativity, and big thinking. That is magic at work, and it’s what we show up for every day. As Smartsheet grows, our US customer base is increasingly demanding faster, more comprehensive responses to security assessments. We're seeking a Sr. Security Engineer I to lead Customer Trust operations for our US customer base—managing questionnaire triage and completion, supporting customer engagements, and building trusted relationships with enterprise customers. You'll be responsible for understanding customer security concerns, triaging incoming questionnaires, managing queue efficiency, and escalating complex questions appropriately. You'll work closely with EMEA colleagues, sales teams, and security specialists to ensure customers receive timely, accurate responses that build confidence in Smartsheet's security posture. This is an excellent individual contributor and team-player role, and represents a growth opportunity for someone ready to step into a more senior customer-facing security position. You Will: Own US customer trust operations: Manage intake, triage, prioritization, and completion of customer security questionnaires, vendor risk assessments, and RFIs for US-based customers. Respond to customer security inquiries with technical depth: Complete questionnaires accurately, respond to RFIs, and address customer security concerns with responses that

REMOTEawsazuregcp
View job →
🔔

Get new security risk manager jobs by email

Daily job updates · Unsubscribe anytime