Data Security/ Compliance

Information Security Metrics Specialist

Do what you love. Love what you do.


At Workday, we help the world’s largest organizations adapt to what’s next by bringing finance, HR, and planning into a single enterprise cloud. We work hard, and we’re serious about what we do. But we like to have fun, too. We put people first, celebrate diversity, drive innovation, and do good in the communities where we live and work.

About the Team

Workday is looking for an Information Security Metrics Specialist to build a comprehensive security metrics program at Workday. This will involve identification and implementation of key metrics, reports, and dashboards that provide visibility into the performance of our security program. The metrics program will also support our strategy and operations and have audiences ranging from engineers to the Board of Directors. 

About the Role

The role will require working with security and engineering teams to provide information on opportunities to improve the security environment within Workday. Reporting to the Director of Security Governance, this is a new role within a rapidly growing team and provides an opportunity to develop a program from the ground up. 

What you will do:

  • Define, implement and manage a comprehensive security metrics program.
  • Develop metrics to track performance of initiatives that support strategic objectives as well as metrics that align to the NIST Cybersecurity Framework.
  • Implement solutions to automate collection and visualisation of metrics.
  • Work with other security teams to understand and define reporting requirements.
  • Develop high quality dashboards and reports for audiences ranging from engineers to the Board of Directors.
  • Drive the adoption and use of key metrics and reporting across the security organisation to support operations and risk management activities.
  • Communicate metrics and insights across various levels of the company and work with partner teams to incorporate security metrics into executive management reporting.

About You

What you should have:

  • Bachelor’s degree or higher in a relevant field.
  • 8 years’ experience in a security role of which at least 3 should be related to creating and reporting security metrics.
  • Experience in implementing a metrics programs based on at one of the following security frameworks: ISO 27001, NIST Cybersecurity Framework, CIS controls.
  • Experience designing and delivering security metrics, dashboards and presentations for audiences ranging from front line managers to the Board of Directors.
  • Excellent communication skills with the ability to present security concepts to senior executives.
  • Strong knowledge of information security fundamentals.

What we hope you have:

  • CISSP or similar certification
  • Experience of reporting visualisation and analytics tools such as Tableau and Splunk
  • Experience working with large technology organisations

What we offer:

  • Career & Capability Growth
  • Wellness Program
  • Pension
  • Health Insurance & Dental Plan
  • Employee Assistance Program
  • Tax Saver Scheme
  • Stock Schemes
  • 27 Days Annual Leave

Our values:

  • Employees
  • Customer Service
  • Innovation
  • Integrity
  • Fun
  • Profitability

#LI-GS

  • CISSP or similar certification
  • Experience of reporting visualisation and analytics tools such as Tableau and Splunk
  • Experience working with large technology organisations