Docusign is looking for a Security Risk Senior Analyst to join our Security Governance, Risk & Compliance (GRC) team. The ideal candidate combines technical expertise with business acumen, translating risk findings into actionable insights that influence engineering, security and business decisions.
Requirements
- 5+ years of experience in security risk management or related areas
- Bachelor’s degree in Computer Science, Information Systems, Information Security, or a related field
- Experience with cyber threats and vulnerabilities, with hands-on expertise in one or more security domains
- Experience with risk management frameworks (RMF, ISO 27005, NIST 800-37, NIST 800-30)
- Experience with risk quantification models (e.g., FAIR) or building custom risk scoring approaches
- Experience with control frameworks (SSAE16, ISO27001, NIST CSF/800-53, PCI DSS, SIG, CSA, HIPAA, FedRAMP)
- Experience with GRC platforms and automation tools, preferably ServiceNow IRM
Benefits
- Generous Paid Time Off
- 401k Matching
- Retirement Plan
- Tuition Reimbursement
- Relocation Assistance