Security Program Manager, Embedded Payroll
Job Description
About Gusto
Gusto is a modern, online people platform that helps small businesses take care of their teams. On top of full-service payroll, Gusto offers health insurance, 401(k)s, expert HR, and team management tools. Today, Gusto offices in Denver, San Francisco, and New York serve more than 100,000 businesses nationwide.
Our mission is to create a world where work empowers a better life, and it starts right here at Gusto. That’s why we’re committed to building a collaborative and inclusive workplace, both physically and virtually. Learn more about our Total Rewards philosophy.
Gusto Embedded is the newest standalone business unit at Gusto and our first product is Gusto Embedded Payroll. Our vision is to enable any third party developer to build the best payroll product for their end customers. Gusto Embedded Payroll will power our strategic partners' payroll offering through APIs, unlocking market share and ushering in the future of the people platform. You can read more about why our Founders are so excited for and committed to Gusto Embedded Payroll in this recent blog post by Co-Founder and Chief Product Officer, Tomer London.
As a Security Program Manager, you will lead our end to end security process for Gusto Embedded. You will work closely with a team of Solutions Engineers on all things security in supporting our Partners in their evaluation of our payroll product, and our confirmation of their software security approach. Your primary responsibilities will include Security Assessments of our partner’s software to ensure it’s secure, yearly security validation of these partners, and supporting our teams in Partner reviews / audit’s of Gusto’s security.
Here’s what you’ll do day-to-day:
- Lead our end to end security program and strategy within Gusto Embedded
- Be the bridge to our core security team, representing their needs and requirements for engaging with partners within Gusto EMbedded
- Communicate our security process with partners over email, in meetings and presentations, helping partners understand why and the value of a secure payroll application
- Review submitted assessments by partners focusing on key security areas, evaluating key security areas they are currently lacking
- Work closely with your Solutions Engineers to plan and understand the best path for communicating security requirements back to partners, being mindful of other business objectives in flight
- On an annual basis, work with partners to ensure, collect and document consistent security validation of their product.
- Be the direct point of contact with security software partners like VISOTrust & Vanta to ensure we have the right tools in place to support our partners
- Be the expert on all things security as related to gusto.com, gusto embedded and our approach to secure software development.
- Support Solutions Engineers in the Security review of Gusto by Large partners
- Lead onsite assessments and audits of Gusto by key partners, pulling in other departments (IT, infrastructure, etc.) where needed.
Here’s what we're looking for:
- Minimum 4-7 years of work experience in information security, program/project management, or similar capacities
- Deep understanding of the software security landscape. Areas that enterprise organizations require to achieve key compliances like SOC2, PCI etc.
- Ability to communicate recommendations in software changes comfortably over the phone, email, slack etc.
- Analytical, problem-solving, negotiation and organizational skills with a clear experience focusing under pressure
- Experience driving projects end-to-end independently, including evaluating, defining and improving end-to-end processes
- Experience influencing stakeholders and partner teams, especially in collaborating with different individuals across the organization and within other geographies
- Communication skills across technical and non-technical stakeholders and attention to detail
- Experience managing competing priorities and simultaneous/concurrent projects in a fast-paced environment
Nice to haves:
- 3+ years of experience in a similar role (security engineering, security program manager,) and a broad technical background across different security expertise
- Experience in GRC, compliance or assisting an organization in working towards certification (SOC2, PCI, HIPAA)
Our cash compensation amount for this role is targeted at $156,000 to $214,000 per year in Denver & most remote locations, and $194,000 to $264,000 per year for San Francisco & New York. Final offer amounts are determined by multiple factors including candidate experience and expertise and may vary from the amounts listed above.
Our customers come from all walks of life and so do we. We hire great people from a wide variety of backgrounds, not just because it's the right thing to do, but because it makes our company stronger. If you share our values and our enthusiasm for small businesses, you will find a home at Gusto.
Gusto is proud to be an equal opportunity employer. We do not discriminate in hiring or any employment decision based on race, color, religion, national origin, age, sex (including pregnancy, childbirth, or related medical conditions), marital status, ancestry, physical or mental disability, genetic information, veteran status, gender identity or expression, sexual orientation, or other applicable legally protected characteristic. Gusto considers qualified applicants with criminal histories, consistent with applicable federal, state and local law. Gusto is also committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at [email protected].
Date Posted
08/30/2022
Views
9
Similar Jobs
Principal Program Manager - Bluestaq
Views in the last 30 days - 9
Bluestaq is a rapidly growing technology company that offers a competitive benefits package a growth environment and a culture of ownership trust comm...
View DetailsProgram Manager - Centauri
Views in the last 30 days - 5
KBR is seeking a Program Manager to support DevSecOps programs including Space CAMP and Platform One The candidate should have experience in administe...
View DetailsInformation System Security Officer (ISSO) - Dark Wolf Solutions
Views in the last 30 days - 6
Dark Wolf Solutions is looking for an Information System Security Officer to lead the Assessment and Authorization for multiple mission systems The IS...
View DetailsSenior Product Manager - Ibotta
Views in the last 30 days - 6
Ibotta is looking for a Senior Product Manager to join their innovative team and contribute to their mission to Make Every Purchase Rewarding The posi...
View DetailsProduct Manager - Dark Wolf Solutions
Views in the last 30 days - 6
The job posting is looking for a Product Manager to work on cloudbased and airgapped DevSecOps products and solutions The successful candidate will he...
View DetailsController - Current Media Group
Views in the last 30 days - 6
Current Media Group is a multibrand direct marketing company offering tens of thousands of products to millions of customers The company is looking fo...
View Details