Freshworks makes it fast and easy for businesses to delight their customers and employees. We do this by taking a fresh approach to building and delivering software that is affordable, quick to implement, and designed for the end-user. More than 50,000 companies -- from startups to public companies -- around the world use Freshworks software-as-a-service to enable a better customer experience (CRM) and employee experience (ITSM, HRSM).
Headquartered in San Mateo, California, Freshworks has a dedicated team operating from 13 global locations to serve customers, including American Express, Sony, Vice Media, TaylorMade, Sotheby’s, Stitchfix, OfficeMax, Multichoice, Delivery Hero, ITV, and Klarna.
Freshworks transforms the way world-class organizations collaborate with customers and co-workers. The suite includes Freshdesk (omnichannel customer support), Freshsales (sales automation), Freshmarketer (marketing automation), Freshservice (IT service desk), Freshteam (HR management system).
In today’s world, any organization or individuals are constantly under the threat of cyber-attack and this is proven through a steady escalation in the security incidents and data breaches year on year. We at Freshworks are committed to providing a secure environment for our customers to run their business.
Freshworks is looking for a passionate and self-driven ‘security advisor’ with the ability to work independently and collaboratively to help align Infosec activities to business goals, manage risk effectively, and stay on top of compliance.
Responsible for enumerating cyber risks as applicable to the business.
Identify, and operationalize the control requirements for complying with various security frameworks and certifications.
Engage with multiple stakeholders across engineering, product management, and business to drive the risk & compliance initiatives.
Review and report on the adherence to controls and risk exposure periodically to the management.
Identifying and implementing continuous improvement initiatives and industry best practices.
Perform the third party security due-diligence
Develop and maintain an information security awareness program that effectively motivates desired behaviors
Bachelors / Masters Degree
5-7 years of experience in information security governance viz. Performing quantified risk assessments, third-party risk assessments, defining and managing information security processes, performing information security audits
Work experience or conceptual understanding of AWS cloud platform to suggest best practices or audit the environment.
Working experience or conceptual understanding of the FAIR methodology risk assessments
Have a deep understanding of security control frameworks such as ISO27001, PCI, HIPAA, SOC 1/2, NIST Cyber Security Framework, NIST800-171, and the Cloud Compliance Framework.
Excellent problem solving, interpersonal, and communication skills
Be a team player and a go-getter and thrive for success.