Senior Manager, Security Risk
TwilioAbout the role
Who we are
At Twilio, we’re shaping the future of communications, all from the comfort of our homes. We deliver innovative solutions to hundreds of thousands of businesses and empower millions of developers worldwide to craft personalized customer experiences.
Our dedication to remote-first work, and strong culture of connection and global inclusion means that no matter your location, you’re part of a vibrant team with diverse experiences making a global impact each day. As we continue to revolutionize how the world interacts, we’re acquiring new skills and experiences that make work feel truly rewarding. Your career at Twilio is in your hands.
We use Artificial Intelligence (AI) to help make our hiring process efficient, fair, and transparent, but automation never makes the final call. Every hiring decision is made by real Twilions, ensuring a human touch at every step.
.
See yourself at Twilio
Join the team as Twilio’s next Senior Manager, Security Risk Management
About the job
Twilio is looking for a dynamic, hands-on Senior Manager of Security Risk Management to lead and evolve our global risk function. This role is designed for a strategic thinker who isn't afraid to roll up their sleeves and contribute as an individual performer while managing a high-performing, distributed team. You will be responsible for navigating a complex microservices environment of hybrid cloud and on-premise telecommunications infrastructure, ensuring our security risk approach is pragmatic, scalable, and deeply integrated into the R&D and IT lifecycles.
Responsibilities
In this role, you’ll:
- Program Leadership & People Management: Lead, mentor, and grow a team of international and domestic risk analysts.
- Foster a culture of excellence, accountability, and continuous professional development.
- Hands-on Risk Assessment: Conduct and oversee complex risk assessments across microservices architectures, cloud-native environments, and legacy on-premise telecommunications systems.
- Integrating compliance control requirements into the risk management process.
Strategic Framework Implementation: Operationalize and mature the One Twilio Risk Management framework leveraging risk management frameworks (NIST RMF, ISO 27005, etc.) with a specific focus on emerging areas like AI Risk, Data Governance, Privacy, Reliability, and Observability. - Advanced Reporting: Develop and deliver high-impact, executive-level risk reporting. You must be able to translate technical vulnerabilities into business risk, providing leadership with the "so-what" and actionable insights to drive investment.
- Workflow Optimization: Identify and design efficient process workflows within Jira and GRC tools to automate risk intake, tracking, and remediation, ensuring seamless integration with R&D and IT workstreams.
- Pragmatic Problem Solving: Deliver "outside the box" based risk solutions that balance risk mitigation with business velocity. Ensure the security organization is viewed as an enabler, not a blocker.
- Stakeholder Management: Act as a primary point of contact for external auditors and regulators, clearly articulating Twilio’s risk posture and the effectiveness of our controls.
Qualifications
Twilio values diverse experiences from all kinds of industries, and we encourage everyone who meets the required qualifications to apply. If your career is just starting or hasn't followed a traditional path, don't let that stop you from considering Twilio. We are always looking for people who will bring something new to the table!
*Required
- Experience: 8+ years in Cybersecurity or Information Security, with at least 4+ years in a people management role leading international teams. A "no-ego" approach to leadership; someone who is comfortable "taking the heat" for the program while giving credit to the team for successes.
- Negotiation & Diplomacy: The ability to navigate high-tension situations finding the "win-win" middle ground.
- Technical Domain Expertise: Deep understanding of hybrid cloud environments (AWS/GCP), on-premise infrastructure, and microservices. Experience in the Telecommunications sector is highly preferred.
- Framework Fluency: Proven track record of implementing and maturing risk frameworks such as NIST RMF, ISO 3100. Specific experience in AI Risk Management or Data Governance frameworks is a significant plus.
- Tooling Mastery: Power-user level proficiency in Jira (for workflow orchestration) and experience with security tooling (e.g., Wiz, Orca, Sny
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s