Senior Security Assurance Specialist at Snyk

Ottawa, Ontario, Canada

Snyk Logo
Not SpecifiedCompensation
Senior (5 to 8 years)Experience Level
Full TimeJob Type
UnknownVisa
SaaS, CybersecurityIndustries

Requirements

  • Minimum 5 years experience in GRC, security assurance or compliance, ideally within a SaaS environment
  • Proven experience supporting enterprise sales cycles and engaging directly with customers
  • Hands-on third-party risk management expertise
  • Working knowledge of ISO 27001, ISO 27017, SOC 2, NIST CSF or 800-53, GDPR and FedRAMP
  • Familiarity with Jira workflows and GRC platforms such as Vanta
  • Strong communication skills with the ability to simplify technical topics for diverse audiences

Responsibilities

  • Lead customer security and compliance calls that help close deals worldwide
  • Use AI platforms such as Vanta and Gemini to streamline and improve GRC operations
  • Manage the third-party risk lifecycle including onboarding, assessments, contract reviews, monitoring and off-boarding
  • Collaborate with Product, Security, Engineering and Sales to resolve complex security requests
  • Respond to due-diligence questions and present security concepts clearly to technical and business audiences
  • Review vendor evidence such as SOC 2 and ISO 27001, assign risk tiers and schedule periodic reviews
  • Maintain the Trust Portal ensuring FAQs and assurance materials are accurate and current, and reviewing and approving access requests

Skills

GRC
Security Assurance
Compliance
Vanta
Gemini
SOC 2
ISO 27001
Third-Party Risk Management

Snyk

Cybersecurity for open source software vulnerabilities

About Snyk

Snyk specializes in cybersecurity for software-driven businesses, focusing on open source security. Its platform helps developers identify and fix vulnerabilities in their code through a dependency scanner that detects issues in open source dependencies and container images. Snyk stands out by integrating seamlessly into existing development workflows, allowing for quick development without sacrificing security. The company's goal is to enable businesses to develop software rapidly while ensuring it remains secure and compliant.

Boston, MassachusettsHeadquarters
2015Year Founded
$1,545.7MTotal Funding
LATE_VCCompany Stage
Enterprise Software, CybersecurityIndustries
1,001-5,000Employees

Benefits

Flexible Work Hours
Unlimited Paid Time Off
Health Insurance
Life Insurance
Disability Insurance
401(k) Retirement Plan

Risks

Delaying IPO may lead to investor impatience and confidence issues.
Integration challenges from multiple acquisitions could distract from core operations.
Workforce reduction by 10% might impact morale and innovation.

Differentiation

Snyk's developer-first approach integrates security seamlessly into development workflows.
The platform's focus on open source security addresses a critical market need.
Snyk's comprehensive toolset supports both small startups and large enterprises.

Upsides

Snyk's ARR reached $300 million, indicating strong financial growth.
Strategic acquisitions like DeepCode enhance Snyk's product offerings and revenue.
Partnerships with AWS expand Snyk's integration capabilities and market reach.

Land your dream remote job 3x faster with AI