Security Risk and Compliance LeadActive$23K–$27K

Hybrid · WarsawBusiness

The opportunity

At Asana, security is foundational to our mission of helping teams work together effortlessly. Our security team protects Asana’s employees, users, and customers by proactively addressing threats, ensuring compliance with legal and regulatory requirements, and fostering a…

What they're looking for

  • Operate globally: Work with a global team to ensure appropriate coverage and coordination across timezones, supporting vendor assessments and risk decisions that span multiple regions.
  • + years of experience in third-party risk management, vendor risk assessment,: or a related information security discipline.
  • Strong knowledge of TPRM frameworks and standards, including SIG, CAIQ, NIST SP 800-161, ISO 27001, and SOC 2.
  • Experience conducting vendor security assessments and reviewing third-party: security documentation (audit reports, certifications, penetration test summaries, etc.).