Druva · 3 weeks ago
Senior Manager, Security Assurance
Druva is the leading provider of data security solutions, empowering customers to secure and recover their data from all threats. The Senior Manager, Security Assurance will be responsible for all initiatives directed at building trust and confidence in Druva’s data security, privacy, and compliance posture, as well as leading the Third-Party Risk Management program and improving security culture initiatives.
Cloud Data ServicesCloud SecurityComplianceData ManagementData StorageEnterprise SoftwareSaaSSoftware
Responsibilities
Own and drive the processes to provide expert internal support for security and compliance due diligence requests
Work and co-ordinate with internal security teams (Cyber Defense, Product Security, Compliance), Engineering functions and customer account teams to provide timely and high-quality responses to security queries from prospects and customers
Manage incoming security support requests including security focused questionnaires, customer audits, and client-driven penetration tests as needed
Develop and maintain customer facing security policies and documentation and manage the Druva's online trust portal
Ensure customer security documentation and external artifacts are up to date and accurate as per current state security policies
Evaluate and set the strategy for Druva’s third-party risk management program
Conduct holistic security assessments of Druva’s existing & new vendors to identify and mitigate potential risks
Stay informed about current security vulnerabilities, incidents and assess exposure through Druva’s vendor landscape
Own and drive risk-reduction in Druva’s External attack surface
Develop and execute on improvement strategy for phishing simulations and security training of our employees
Qualification
Preferred
At least 12 years of experience in a technology discipline, preferably 8+ years in the cyber security domain
Background in or strong understanding of security compliance and Privacy frameworks (SOC 2, ISO27001, HIPAA, CSA STAR, NIST)
Demonstrable knowledge of OWASP Top-10 Web Application Vulnerabilities and related risks and countermeasures
Working protocol level understanding of At-Rest and In-Motion Encryption fundamentals (TLS/SSL, BCrypt, PKI, SHA1, AES etc)
Knowledge of AWS and security controls native to AWS
Technical Understanding of SaaS Multi-tenant architectures
Ability to threat model and assess security risk of interconnected systems and data flows
Proven experience collaborating with sales and engineering teams
Demonstrable customer communication experience around security matters
Experience implementing or using any TPRM tools or platforms (for e.g. KY3P, ProcessUnity, ServiceNow, CyberGRX etc)
Knowledge of technical domains such as network security, cloud security & application security
Exceptional communication skills, critical thinking ability and strong bias for ownership & learning
Experience leading teams, building and monitoring cross-functional scaled-up processes to achieve business objectives
Benefits
Health and wellness benefits
401(k) retirement plan
Life and disability insurance coverages
Other benefits the Company may offer from time to time
Company
Druva
Druva delivers a SaaS-based platform to protect and manage enterprise data across endpoint, data center and cloud workloads.
H1B Sponsorship
Druva has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (15)
2024 (10)
2023 (12)
2022 (6)
2021 (12)
2020 (1)
Funding
Current Stage
Late StageTotal Funding
$475MKey Investors
La CaisseViking Global InvestorsRiverwood Capital
2021-04-19Series H· $147M
2019-06-19Series G· $130M
2017-08-22Series F· $80M
Recent News
2025-10-27
Morningstar.com
2025-09-19
Company data provided by crunchbase