Anaplan logo

Anaplan

Director, Security Trust & Risk at Anaplan

New York City, United StatesFull-timeInformation Security & PrivacyPosted 17 days ago

About the Role

<div class="content-intro"><p>At Anaplan, we are a team of innovators focused on optimizing business decision-making through our leading AI-infused scenario planning and analysis platform so our customers can outpace their competition and the market.</p> <p>What unites Anaplanners across teams and geographies is our collective commitment to our customers’ success and to our Winning Culture.</p> <p style="padding-left: 40px;">Our customers rank among the who’s who in the Fortune 50. Coca-Cola, LinkedIn, Adobe, LVMH and Bayer are just a few of the 2,400+ global companies who rely on our best-in-class platform.</p> <p style="padding-left: 40px;">Our Winning Culture is the engine that drives our teams of innovators. We champion diversity of thought and ideas, we behave like leaders regardless of title, we are committed to achieving ambitious goals, and we love celebrating<em> </em>our wins – big and small.</p> <p>Supported by operating principles of being strategy-led, <a href="https://www.anaplan.com/careers/">values</a>-based and disciplined in execution, you’ll be inspired, connected, developed and rewarded here. Everything that makes you unique is welcome; join us and let’s build what’s next - together!</p></div><p><span data-contrast="none">Anaplan seeks a <em><strong>Director of Security Trust, and Risk</strong></em> to be located near our NYC office.</span></p> <p><strong><span data-contrast="none">Your Impact</span></strong><span data-ccp-props="{}">&nbsp;</span></p> <ul> <li><span data-contrast="none">Develop and execute a modern strategy for governance, risk, and compliance that empowers the company’s&nbsp;growth&nbsp;</span><span data-contrast="none">strategy</span><span data-contrast="none">&nbsp;and&nbsp;ambitions.&nbsp;</span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Uplift&nbsp;our governance, risk management, and assurance activities through&nbsp;a pragmatic&nbsp;implementation of automation and AI capabilities, championing&nbsp;an “automation first” mindset&nbsp;throughout the organization.&nbsp;</span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Build&nbsp;an industry-leading and customer-centric Trust program&nbsp;that leads&nbsp;with&nbsp;transparency. Collaborate with Sales, Marketing, and other functions to strengthen the tools, processes, and documentation&nbsp;required&nbsp;to&nbsp;instill confidence in&nbsp;the&nbsp;world’s&nbsp;largest organizations.&nbsp;</span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Translate&nbsp;complex&nbsp;regulatory&nbsp;and customer&nbsp;requirements into comprehensive, practical controls that improve the security&nbsp;and&nbsp;resiliency&nbsp;of our platform.&nbsp;</span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Sustain a best-in-class security and compliance posture with regard to key regulatory frameworks, customer requirements, and emerging threat actor tactics. Work closely with GTM to identify and pursue additional security certifications to reinforce Anaplan’s strong security posture and unlock revenue opportunities.&nbsp;</span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Use&nbsp;quantitative&nbsp;risk&nbsp;frameworks&nbsp;to&nbsp;pragmatically&nbsp;</span><span data-contrast="none">implement</span><span data-contrast="none">&nbsp;a continuous risk management program that integrates&nbsp;tightly&nbsp;with product development and engineering processes.</span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Partner with engineering and product teams to track risk remediation with transparency and accountability.</span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Lead external audits with a focus on&nbsp;simplicity, efficiency, and reuse of evidence.</span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Work closely with Legal and Sales to review customer contract terms and requirements, ensuring Anaplan can deliver on its commitments in a scalable and cost-effective manner. </span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Drive ongoing security awareness training and instill a security-conscious mindset throughout Anaplan.</span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Own our third-party risk management (TPRM) program, collaborating with Legal, Privacy, and Procurement to&nbsp;minimize&nbsp;supply chain risk.</span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> </ul> <p><strong><span data-contrast="none">Your Qualifications</span></strong><span data-ccp-props="{&quot;134233117&quot;:false,&quot;134233118&quot;:false,&quot;201341983&quot;:0,&quot;335551550&quot;:1,&quot;335551620&quot;:1,&quot;335559685&quot;:0,&quot;335559737&quot;:0,&quot;335559738&quot;:0,&quot;335559739&quot;:0,&quot;335559740&quot;:259}">&nbsp;</span></p> <ul> <li><span data-contrast="none">Hands-on experience at an enterprise software/SaaS business operating security trust and compliance programs that map to industry frameworks such as: SSAE18 (SOC1 and SOC2), ISO 27001, SOX 404 ITGCs, NIST CSF, 800-53, FedRAMP, &amp; HITRUST.</span></li> <li><span data-contrast="none">Hands-on experience translating framework requirements into practical and testable control objectives.</span><span data-ccp-props="{&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Hands-on experience operating technology risk management programs, and applying quantitative risk analysis techniques (FAIR) and structured qualitative risk modeling.</span><span data-ccp-props="{&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Strong understanding of modern public cloud and SaaS-based infrastructure, along with assurance automation and evidence collection using cloud APIs.&nbsp;</span><span data-ccp-props="{&quot;134233117&quot;:true,&quot;134233118&quot;:true,&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Enterprise customer-facing security and trust assurance experience, including stakeholder management.</span><span data-ccp-props="{&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Auditing experience through scoping, evidence collection, testing, and remediation.</span><span data-ccp-props="{&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Direct experience building and deploying control automations.</span><span data-ccp-props="{&quot;335557856&quot;:16777215}">&nbsp;</span></li> <li><span data-contrast="none">Working knowledge of modern web application architecture, build and release&nbsp;methodologies, incident response,&nbsp;authentication&nbsp;strategies, data encryption, vulnerability management, third-party risk management, and security training.</span><span data-ccp-props="{&quot;335557856&quot;:16777215}">&nbsp;</span></li> </ul><div class="content-pay-transparency"><div class="pay-input"><div class="title">Base Salary Range:</div><div class="pay-range"><span>$257,000</span><span class="divider">&mdash;</span><span>$348,000 USD</span></div></div></div><div class="content-conclusion"><p><strong>Our Commitment to Diversity, Equity, Inclusion and Belonging (DEIB) </strong></p> <p>We believe attracting and retaining the best talent and fostering an inclusive culture strengthens our business. DEIB improves our workforce, enhances trust with our partners and customers, and drives business success. Build your career in a place where diversity, equity, inclusion and belonging aren’t just words on paper – this is what drives our innovation, it’s how we connect, and it contributes to what makes us a market leader. We believe in a hiring and working environment where all people are respected and valued, regardless of gender identity or expression, sexual orientation, religion, ethnicity, age, neurodiversity, disability status, citizenship, or any other aspect which makes people unique. We hire you for who you are, and we want you to bring your authentic self to work every day! </p> <p>We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, perform essential job functions, and receive equitable benefits and all privileges of employment. Please contact us to request accommodation. &nbsp;</p> <p><strong>Fraud Recruitment Disclaimer</strong> &nbsp;</p> <p>It has come to our attention that fraudulent and fictitious job opportunities are being circulated on the Internet. Prospective candidates are being contacted by certain individuals, mainly through telephone calls, emails and correspondence, claiming they are representatives of Anaplan. The main purpose of these correspondences and announcements is to obtain privileged information from individuals.  </p> <p>Anaplan does not: &nbsp;</p> <ul> <li>Extend offers to candidates without an extensive interview process with a member of our recruitment team and a hiring manager via video or in person.  &nbsp;</li> <li>Send job offers via email. All offers are first extended verbally by a member of our internal recruitment team whenever possible and then followed up via written communication. &nbsp;</li> </ul> <p>All emails from Anaplan would come from an @anaplan.com email address. Should you have any doubts about the authenticity of an email, letter or telephone communication purportedly from, for, or on behalf of Anaplan, please send an email to [email protected] before taking any further action in relation to the correspondence.  &nbsp;</p> <p>&nbsp;</p></div>