Principal Technical Risk Analyst

1 hour, 50 minutes ago
Full-time
Lead
Cybersecurity
Toast

Toast

Toast is an all-in-one platform for restaurants, offering tableside ordering, online ordering, and labor management to empower businesses in the food service industry.

Hotels, Restaurants & Leisure
1K-5K
Founded 2012

Description

  • Own the end-to-end cyber risk lifecycle, including identification, assessment, prioritization, mitigation tracking, and reporting.
  • Establish and operationalize a scalable technical risk operating model from discovery through monitoring.
  • Drive adoption of the technical risk program across Security, Product, Engineering, and Infrastructure teams.
  • Lead risk discovery and continuous identification of emerging and high-impact risks using stakeholder, audit, incident, assessment, and external inputs.
  • Translate technical issues into clear, business-relevant risk narratives and recommended actions.
  • Partner with cross-functional stakeholders to manage technical risk across the full lifecycle.
  • Evolve the technical risk program to improve scale, consistency, visibility, and maturity.
  • Own and optimize the use of Optro (AuditBoard RiskOversight) as the system of record.
  • Improve data quality, reporting capabilities, and workflow scalability, including automation and AI-enabled use cases.
  • Develop executive-ready dashboards, committee materials, and governance reporting for leadership and risk forums.

Requirements

  • 8–12+ years of experience in Technical Risk, Security GRC, ERM, or a related field.
  • Proven experience owning and leading a technical or cyber risk program.
  • Strong understanding of cybersecurity domains such as cloud, infrastructure, IAM, and application security.
  • Strong understanding of risk frameworks such as NIST CSF and ISO 27001.
  • Experience operating in high-growth, complex, cloud-based environments.
  • Demonstrated ability to build and operationalize programs from 0 to 1 and from 1 to scale.
  • Strong program management discipline, including planning, tracking, and follow-through.
  • Ability to translate technical issues into business impact and prioritize risks by likelihood and impact.
  • Exceptional executive-ready written and verbal communication skills.
  • Experience with GRC tools such as Optro/AuditBoard, ServiceNow GRC, or Workiva.
  • Ability to drive tool adoption and translate business processes into scalable system workflows.
  • Preferred experience integrating technical risk into ERM programs.
  • Preferred experience building risk dashboards, metrics, and reporting frameworks.
  • Preferred familiarity with automation, AI, or data-driven GRC approaches.
  • Preferred relevant certifications such as CISSP, CISM, CISA, or CRISC.

Benefits

  • Base salary range of $159,000–$254,000 USD in Zone A, $138,000–$221,000 USD in Zone B, and $125,000–$200,000 USD in Zone C.
  • Total rewards package includes cash compensation, bonus/commissions if eligible, equity, and benefits.
  • Competitive compensation and benefits programs designed to support attraction, retention, and motivation.
  • Hybrid work model that supports in-person collaboration while respecting individual needs.
  • Remote-friendly flexibility with #LI-Remote noted for the role.
  • Benefits designed to support a healthy lifestyle and changing employee needs.
  • Accessible and inclusive hiring process with reasonable accommodations available for candidates with disabilities.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Sr. Delivery Solutions Architect - Manufacturing

Databricks 1K-5K IT Services

Databricks is hiring a Delivery Solutions Architect to lead post-sale technical strategy and customer execution for complex data and AI use cases within strategic accounts.

Apache Spark Databricks MLflow Python Scala SQL
28 minutes ago

Fraud Analyst

Recorded Future 251-1K Professional Services

Recorded Future is seeking a Fraud Analyst to join its Threat Intelligence team, producing intelligence on cyber threats and threat actors to help clients defend their people and networks.

Cybersecurity DNS Jupyter Python TCP/IP
1 hour, 55 minutes ago

Director of Measurement Strategy

Headlight 11-50 Professional Services

Headlight is hiring a remote Director of Measurement Strategy in Canada to lead client measurement planning, onboarding, and analytics service design for consumer brand growth marketing accounts.

CRM CSS Databricks dbt E-commerce GCP Google Tag Manager HTML HTTP JavaScript Looker Python REST API Shopify Snowflake SQL
2 hours, 33 minutes ago

Fraud Analyst

Recorded Future 251-1K Professional Services

Recorded Future is seeking a Fraud Analyst to join its Threat Intelligence team and produce Chinese-language cyber threat intelligence that helps clients defend against emerging threats.

Cybersecurity DNS Jupyter Python TCP/IP
3 hours, 1 minute ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers