高级安全工程师 I (欧洲/中东/非洲)
Senior Security Engineer I (EMEA)
超过20年,Smartsheet 一直赋能团队无缝管理任务并更智能地扩展解决方案。现在,在我们最雄心勃勃的篇章中,我们正在将人类团队与AI代理结合。通过协调代理擅长的工作,自动化手动任务,并在大规模中发现洞察,我们为人们腾出空间专注于真正重要的事情:判断力、创造力和大思路。这就是工作中的魔法,也是我们每天所追求的。
Smartsheet 在欧洲、中东和非洲的客户期望我们的客户信任团队理解他们的合规挑战,用他们的语言交流,并快速响应安全评估。我们正在寻找一位高级安全工程师来领导EMEA地区的客户信任运营——回应安全问卷、管理供应商风险评估,并与这些地区的大型企业客户建立信任关系。你将负责EMEA客户的问卷分类、完成和队列管理。你将与EMEA销售团队紧密合作,了解区域合规要求(GDPR、欧盟数据保护、行业特定框架),并确保Smartsheet在这些高价值市场中保持良好的响应性和技术可信度。
你将远程从英国工作,并向位于美国的高级总监、GRC工程部门汇报。
### **你具备**
- 在SaaS或云平台公司从事客户信任、供应商风险管理、安全评估或面向客户的安全部门工作5年以上。
- 有完成和回应客户安全问卷、供应商评估和RFI的实操经验。
- 对GDPR、欧盟数据保护和区域合规要求有深入理解:熟悉数据驻留、数据处理协议、DPIA以及云服务在欧盟监管框架内的运作方式。
- 了解GRC框架:掌握SOC 2、ISO 27001和EMEA评估中常见的合规标准。
- 扎实的技术安全基础:对云架构、访问控制、加密、事件响应、数据处理和安全最佳实践有足够理解,能够对技术问题提供可信的回答。
- 计算机科学、计算机工程、网络安全或相关领域的学位,或同等的实际工作经验。
- 出色的书面和口头沟通能力:能够清晰地向技术人员和非技术人员解释技术安全概念。
查看英文原文
For over 20 years, Smartsheet has empowered teams to manage work seamlessly and scale solutions smarter. Now, in our most ambitious chapter yet, we are uniting human teams with AI agents. By orchestrating the work agents do best, automating manual tasks and uncovering insights at scale, we create the space for people to focus on what truly matters: judgment, creativity, and big thinking. That is magic at work, and it’s what we show up for every day.
Smartsheet's customers in Europe, the Middle East, and Africa expect our Customer Trust team to understand their compliance challenges, speak their language, and respond quickly to security assessments. We're looking for a Sr. Security Engineer I to lead Customer Trust operations across EMEA—responding to security questionnaires, managing vendor risk assessments, and building trusted relationships with enterprise customers in these regions. You will be responsible for questionnaire triage, completion, and queue management for EMEA customers. You'll work closely with EMEA sales teams, understand regional compliance requirements (GDPR, EU data protection, sector-specific frameworks), and ensure Smartsheet maintains a strong reputation for responsiveness and technical credibility in these high-value markets.
You will work remotely from the UK and report to our Sr. Director, GRC Engineering, based in the US
### **You Have**
- 5+ years of experience in customer trust, vendor risk management, security assessment, or customer-facing security roles at SaaS or cloud platform companies.
- Proven experience completing and responding to customer security questionnaires, vendor assessments, and RFIs.
- Strong understanding of GDPR, EU data protection, and regional compliance requirements: Familiarity with data residency, data processing agreements, DPIAs, and how cloud services operate within EU regulatory frameworks.
- Knowledge of GRC frameworks: Working knowledge of SOC 2, ISO 27001, and compliance standards commonly referenced in EMEA assessments.
- Solid technical security foundation: Understanding of cloud architecture, access controls, encryption, incident response, data handling, and security best practices sufficient to provide credible responses to technical questions.
- A degree in Computer Science, Computer Engineering, Cybersecurity or a related field or equivalent practical experience.
- Excellent written and verbal communication: Ability to explain technical security concepts clearly to both technical and non-technical stakeholders, and to adapt communication style for different audiences.
- Queue and project management skills: Comfort with ticketing systems, SLA tracking, and managing multiple concurrent questionnaires and customer interactions.
- Eligible to work in the United Kingdom.
### **Nice to Have**
- Fluency in an additional European language. Ability to respond to technical security questions in multiple languages.
- Professional security certifications: CISSP, CCSK, CISM, CompTIA Security+, or equivalent.
- Background in SaaS customer trust or security operations in European companies.
- Experience with industry-specific EMEA compliance requirements (financial services, healthcare, government contracting).
- Familiarity with tools and platforms used for questionnaire management and vendor risk (Targhee, OneTrust, SAFE, or similar).
**Perks & Benefits:**
- Employer-paid Private Medical and Dental, additional cost for family members
- Monthly contributions toward your pension
- Monthly stipend to support your work and productivity
- 25 days paid for Holiday + Bank Holidays + Flexible Time Away Program
- 20 weeks fully paid Maternity Leave
- 12 weeks fully paid Paternity/Adoption Leave
- Personal paid Volunteer Day to support our community
- Opportunities for professional growth and development, including access to Udemy online courses
- Company Funded Perks, including a counselling membership, salary sacrifice options, and your own personal Smartsheet account.
- Teleworking options from any registered location in the UK (role-specific)
**Get to Know Us:**
At Smartsheet, your ideas are heard, your potential is supported, and your contributions have real impact. You’ll have the freedom to explore, push boundaries, and grow beyond your role. We welcome diverse perspectives and nontraditional paths—because we know that impact comes from individuals who care deeply and challenge thoughtfully. When you’re doing work that stretches you, excites you, and connects you to something bigger, that’s magic at work. Let’s build what’s next, together.
**Equal Opportunity Employer:**
Smartsheet is an Equal Opportunity (EEO) employer committed to fostering an inclusive environment with the best employees. It is our policy to provide equal employment opportunities to all qualified applicants in accordance with applicable laws in the US, UK, Australia, Germany, Costa Rica, Japan, Bulgaria, India, and Singapore. All qualified applicants will receive consideration without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, protected veteran or disabled status, or genetic information.
If there are preparations we can make to help ensure you have a comfortable and positive interview experience, please let us know.
#LI-Remote