Enable job alerts via email!

Security Risk Management Specialist

Canonical

Rochester (MN)

Remote

USD 80,000 - 110,000

Full time

2 days ago
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading open-source tech company is seeking a Security Risk Management professional to define standards and improve practices, ensuring resilience against cyber threats. The role requires strong leadership and problem-solving skills, a Computer Science degree, and expertise in risk frameworks. Canonical offers a dynamic working environment, competitive compensation, and growth opportunities.

Benefits

Annual learning and development budget
Performance-driven bonus
Recognition rewards
Annual holiday leave
Travel opportunities

Qualifications

  • Exceptional academic record required.
  • Strong motivation for security technology.
  • Experience in security assessments and risk management.

Responsibilities

  • Define security risk management standards and playbooks.
  • Analyze and improve security risk practices.
  • Lead quantified risk assessments and leverage qualitative data.

Skills

Problem-solving
Leadership
Communication
Analytical skills
Technical understanding of security

Education

Undergraduate degree in Computer Science
STEM degree or compelling alternative

Job description

In security risk management, we're looking to harness the power of industry best practices combined with driving new innovation in how we do security risk assessments and modeling. Our security risk management team is the primary owner of the strategy and practices for identifying, tracking, and reducing security risks across all our activities.

To support this, we utilize industry best practices along with emerging threat intelligence to promote risk identification, quantification, impact analysis, and modeling to inform decision-making. In this role, you will help establish and execute a broad strategic vision for the security risk program at Canonical. You will collaborate within the team and cross-functionally with various departments across the organization. The team contributes ideas and requirements for Canonical's product security, enhancing the resilience and robustness of all Ubuntu users and customers against cyber threats. Additionally, the team works with our Organizational Learning and Development team to develop playbooks and facilitate security training across Canonical.

The security risk management team's mission extends beyond securing Canonical; they aim to contribute to the security of the broader open-source ecosystem. They may share knowledge through public presentations and industry events, share threat intelligence with the community, or represent Canonical in sector-specific governance bodies.

What you will do in this role:
  1. Define Canonical's security risk management standards and playbooks
  2. Analyze and improve Canonical's security risk practices
  3. Evaluate, select, and implement new security requirements, tools, and practices
  4. Enhance the presence and thought leadership of Canonical's security risk management
  5. Develop security risk learning and development materials
  6. Work with security leadership to present information and influence change
  7. Participate in developing key risk indicators, control indicators, and performance metrics
  8. Apply statistical models to risk frameworks (e.g., FAIR, sensitivity analysis)
  9. Engage in risk management, decision-making, and collaborative discussions
  10. Lead quantified risk assessments and leverage qualitative data for process improvements
  11. Interpret cyber security risk analyses in business terms and recommend actions
  12. Create templates and materials for self-service risk management
  13. Identify opportunities to improve risk management processes
  14. Launch campaigns for security assessments and mitigation
  15. Build evaluation methods and performance indicators for security functions
What we are looking for:
  • An exceptional academic record
  • Undergraduate degree in Computer Science or STEM, or a compelling alternative narrative
  • Drive and a history of exceeding expectations
  • Strong motivation to be at the forefront of security technology
  • Leadership and management skills
  • Excellent English communication and presentation skills
  • Problem-solving skills with deep technical understanding of security assessments and risk management
  • Expertise in threat modeling and risk frameworks
  • Broad knowledge of operational security risk management
  • Experience with Secure Development Lifecycle and Security by Design methodologies
What we offer:

We consider location, experience, and performance in shaping compensation worldwide. We revisit compensation annually to recognize outstanding performance. Benefits include a performance-driven bonus, additional benefits reflecting our values, and programs tailored to local needs.

  • Distributed work environment with biannual in-person team sprints
  • USD 2,000 annual learning and development budget
  • Annual compensation reviews
  • Recognition rewards
  • Annual holiday leave
  • Maternity and paternity leave
  • Employee Assistance Program
  • Travel opportunities to meet colleagues
  • Priority Pass and travel upgrades for company events
About Canonical

Canonical is a pioneering open-source tech company, publisher of Ubuntu, and a leader in AI, IoT, and cloud platforms. Since 2004, we've been a remote-first organization committed to excellence and innovation. Working here means thinking differently, working smarter, learning new skills, and advancing your career.

Canonical is an equal opportunity employer, fostering a workplace free from discrimination. We value diversity in experience, perspectives, and backgrounds, which enriches our environment and products. All applications will be considered fairly.

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Lead Product Management Specialist - Product Manager

GE Vernova

City of Rochester

Remote

USD 89,000 - 132,000

4 days ago
Be an early applicant

Lead Product Management Specialist - Product Manager

GE Vernova's Grid Software

City of Rochester

Remote

USD 89,000 - 132,000

5 days ago
Be an early applicant

RISK MANAGEMENT SPECIALIST

ANTHONY L JORDAN HEALTH CORPORATION

City of Rochester

On-site

USD 60,000 - 85,000

3 days ago
Be an early applicant

Sr. Risk Management Specialist (Remote NY-Syracuse)

Selective Insurance

Buffalo

Remote

USD 97,000 - 146,000

30+ days ago

Lead Product Management Specialist - Product Manager

GE Vernova Inc

Massachusetts

Remote

USD 89,000 - 132,000

4 days ago
Be an early applicant

Third Party Risk Management Specialist - Remote

501 CSAA Insurance Services, Inc.

Tennessee

Remote

USD 70,000 - 90,000

25 days ago

Environmental – Legal Risk Management Specialist

Energy Vault

Hoffman Estates

On-site

USD 70,000 - 100,000

12 days ago

Risk Management Specialist

B. Braun Melsungen AG

Allentown

Remote

USD 105,000 - 111,000

16 days ago

Risk Management Specialist

B. Braun Medical Inc. (US)

Allentown

Remote

USD 105,000 - 111,000

18 days ago