Senior Manager, Security Assurance jobs in United States
cer-icon
Apply on Employer Site
company-logo

Druva · 3 weeks ago

Senior Manager, Security Assurance

Druva is the leading provider of data security solutions, empowering customers to secure and recover their data from all threats. The Senior Manager, Security Assurance will be responsible for all initiatives directed at building trust and confidence in Druva’s data security, privacy, and compliance posture, as well as leading the Third-Party Risk Management program and improving security culture initiatives.

Cloud Data ServicesCloud SecurityComplianceData ManagementData StorageEnterprise SoftwareSaaSSoftware
check
H1B Sponsor Likelynote

Responsibilities

Own and drive the processes to provide expert internal support for security and compliance due diligence requests
Work and co-ordinate with internal security teams (Cyber Defense, Product Security, Compliance), Engineering functions and customer account teams to provide timely and high-quality responses to security queries from prospects and customers
Manage incoming security support requests including security focused questionnaires, customer audits, and client-driven penetration tests as needed
Develop and maintain customer facing security policies and documentation and manage the Druva's online trust portal
Ensure customer security documentation and external artifacts are up to date and accurate as per current state security policies
Evaluate and set the strategy for Druva’s third-party risk management program
Conduct holistic security assessments of Druva’s existing & new vendors to identify and mitigate potential risks
Stay informed about current security vulnerabilities, incidents and assess exposure through Druva’s vendor landscape
Own and drive risk-reduction in Druva’s External attack surface
Develop and execute on improvement strategy for phishing simulations and security training of our employees

Qualification

Cyber security experienceSecurity compliance frameworksThird-Party Risk ManagementAWS security controlsSaaS Multi-tenant architecturesThreat modelingCustomer communicationSecurity awareness trainingTeam leadershipCritical thinking

Preferred

At least 12 years of experience in a technology discipline, preferably 8+ years in the cyber security domain
Background in or strong understanding of security compliance and Privacy frameworks (SOC 2, ISO27001, HIPAA, CSA STAR, NIST)
Demonstrable knowledge of OWASP Top-10 Web Application Vulnerabilities and related risks and countermeasures
Working protocol level understanding of At-Rest and In-Motion Encryption fundamentals (TLS/SSL, BCrypt, PKI, SHA1, AES etc)
Knowledge of AWS and security controls native to AWS
Technical Understanding of SaaS Multi-tenant architectures
Ability to threat model and assess security risk of interconnected systems and data flows
Proven experience collaborating with sales and engineering teams
Demonstrable customer communication experience around security matters
Experience implementing or using any TPRM tools or platforms (for e.g. KY3P, ProcessUnity, ServiceNow, CyberGRX etc)
Knowledge of technical domains such as network security, cloud security & application security
Exceptional communication skills, critical thinking ability and strong bias for ownership & learning
Experience leading teams, building and monitoring cross-functional scaled-up processes to achieve business objectives

Benefits

Health and wellness benefits
401(k) retirement plan
Life and disability insurance coverages
Other benefits the Company may offer from time to time

Company

Druva delivers a SaaS-based platform to protect and manage enterprise data across endpoint, data center and cloud workloads.

H1B Sponsorship

Druva has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (15)
2024 (10)
2023 (12)
2022 (6)
2021 (12)
2020 (1)

Funding

Current Stage
Late Stage
Total Funding
$475M
Key Investors
La CaisseViking Global InvestorsRiverwood Capital
2021-04-19Series H· $147M
2019-06-19Series G· $130M
2017-08-22Series F· $80M

Leadership Team

leader-logo
Jaspreet Singh
Founder & CEO
linkedin
leader-logo
Colin Born
SVP, Corporate Development & IR
linkedin
Company data provided by crunchbase