Team Overview
The SSPM resource will be responsible for monitoring, analysing, and remediating security vulnerabilities and configuration risks identified through the Obsidian platform. The role will work closely with application owners, security teams, and platform SMEs to assess findings, prioritize remediation activities, and implement fixes in alignment with enterprise security standards. The individual will also drive ongoing security posture improvements, support compliance requirements, and ensure timely closure of identified risks across Workday and other supported SaaS platforms.
This job is assigned as On-Site Essential and requires in- person work at an assigned TU office location as a condition of employment.
Role Overview And Core Responsibilities
Key Responsibilities
• Review and assess vulnerabilities, misconfigurations, and security findings identified by Obsidian.
• Remediate security risks and implement corrective actions across supported SaaS platforms.
• Partner with Cybersecurity and application teams to prioritize and resolve security issues.
• Monitor security posture and ensure compliance with enterprise security policies and standards.
• Perform root cause analysis and implement preventive measures to reduce recurring findings.
• Support audits, compliance reviews, and security governance initiatives.
• Maintain documentation and provide regular status updates on vulnerability remediation efforts.
Required Knowledge And Experiences
Required Knowledge & Experience – Workday Security / SSPM Role
• 8+ years of experience supporting and administering Workday HCM, Financials, Security, or related Workday modules.
• Solid understanding of Workday security architecture, including security groups, domain security policies, business process security, and role-based access controls.
• Experience identifying, analysing, and remediating security vulnerabilities, configuration risks, and compliance findings w