Senior Manager, Information Security Risk

Job not on LinkedIn

🔥 0 minutes ago

🇺🇸 United States – Remote

💵 $120k - $150k / year

⏰ Full Time

🟠 Senior

👮‍♂️ Cybersecurity / Security Engineer

🦅 H1B Visa Sponsor

info
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Instructure

Instructure

1001 - 5000 employees

📚 Education

☁️ SaaS

🤝 B2B

💰 Private Equity Round - Instructure on 2024-07

Education • SaaS • B2B

Instructure is an education-technology company that builds cloud-based learning and assessment platforms, best known for Canvas LMS. It provides an integrated ecosystem of SaaS products and services — including learning management, standards-aligned assessment (Mastery), credentialing and records (Parchment), analytics, and tools for K–12, higher education, and business/government training. Instructure focuses on student success, partner integrations, and scalable solutions for institutions and organizations to deliver, assess, and credential learning.

📋 Description

• Reviewing the current information risk program, including improvements to processes that identify, measure, track, and remediate risks with business owners. • Working collaboratively with other information security risk personnel across Instructure to help identify enterprise-level risks for the CISO and work on finding enterprise-level solutions. • Assisting in annual audits for industry-specific reports, such as ISO27001, PCI, SOC 1 and SOC 2 Type I and Type II reports where risk controls are affected. • Developing and executing information security for internal control testing across the enterprise. • Work with product Engineering teams to secure solutions and ensure that Instructure procedures comply with regulatory framework requirements. • Partner with engineering teams to design and implement technical solutions to mitigate security risks • Collaborate with internal teams to establish metrics and dashboards that effectively measure the success of security programs. • Coordinate between external auditors and internal controls owners, ensuring smooth communication and efficient evidence gathering. • Documenting findings and assessing risk where deviations exist resulting from internal and external testing. • Evaluating third-party vendors to ensure compliance with established standards and risk tolerance levels. • Presenting results and findings of audits to peers and leadership when necessary. • Writing and editing policies and reports to maintain an industry-leading risk program. • Communicating the value of GRC and information risk management at Instructure. • Acting as an information security risk leader for Instructure, ensuring a world-class security posture. • Reviewing new tools for security risks during the procurement process.

🎯 Requirements

• 7+ years of experience in information security, GRC, and/or risk management. • High school diploma or equivalent experience required. Bachelor’s degree in information security or IT-related program preferred. • Excellent written and verbal communication skills. • Security+, CRISC, CISA preferred. • Willingness to learn new concepts, train junior members, and work with information security leaders on the most complex projects.

🏖️ Benefits

• Competitive compensation, plus all full-time employees participate in our ownership program - because everyone should have a stake in our success. • Flexible work culture. Our remote, hybrid and in-office collaboration spaces vary by role, team and location. • Generous time off, including local holidays and our annual “Dim the Lights” period in late December, when teams are encouraged to step back and recharge based on departmental needs. • Comprehensive wellness programs and mental health support • Learning and development resources, including professional development tools and tuition reimbursement, to support your growth • The technology and tools you need to do your best work • Motivosity employee recognition program • A culture rooted in inclusivity, support, and meaningful connection

Apply Now

Similar Jobs

🔥 15 minutes ago

T. Rowe Price

5001 - 10000

Senior Data Security Engineer enhancing DLP controls for T. Rowe Price's security. Collaborating with cross-functional teams to safeguard sensitive information and manage regulatory compliance.

🔥 1 hour ago

Instacart

1001 - 5000

🛍️ eCommerce

🚗 Transport

🛒 Retail

Senior Product Security Engineer II at Instacart focusing on researching and developing offensive security techniques for various products to strengthen security posture.

🔥 3 hours ago

Cookie Information

51 - 200

🤝 B2B

📋 Compliance

Security Manager ensuring compliance in DSV's transportation and logistics operations. Responsible for developing and implementing security policies, and training employees in compliance standards.

🔥 4 hours ago

Telix Pharmaceuticals Limited

501 - 1000

🧬 Biotechnology

💊 Pharmaceuticals

⚕️ Healthcare Insurance

Senior Director of Global Security and Resiliency for Telix Pharmaceuticals. Overseeing safety and security of personnel, assets, and compliance across global operations.

🔥 4 hours ago

SeatGeek

501 - 1000

🛍️ eCommerce

⚽ Sports

SeatGeek is looking for a Senior Software Engineer focusing on security initiatives across cloud and applications. Engage in security engineering and protect against threats in a collaborative environment.