Security & IT Lead (IoT)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Security & IT Lead (IoT): Owning information security and compliance programs, including SOC 2 and IT operations oversight, with an accent on risk management and vendor accountability. Focus on securing internal and external platforms, establishing compliance frameworks, and guiding AI adoption security.
Location: San Bruno, California
Salary: $185,000 – $210,000
Company
is a waste prevention technology company building smart systems and infrastructure to eliminate food waste and transform it into valuable resources.
What you will do
- Manage the end-to-end information security posture for internal systems and customer-facing platforms.
- Lead the SOC 2 program from roadmap through audit and maintain the Policy & Procedure Library.
- Oversee the managed IT provider (MSP) to ensure service quality, reliability, and cost-effectiveness.
- Define and enforce security policies, access controls, and data classification standards.
- Provide a security perspective for AI adoption, reviewing tools for data handling risk and governance.
- Handle security questionnaires for enterprise customers and prospective partners.
Requirements
- 5–8 years of experience spanning IT operations and information security.
- Proven experience owning or significantly contributing to a SOC 2 audit (Type 1 or Type 2).
- Hands-on familiarity with IAM (Okta, OneLogin), MDM/endpoint security, and cloud SaaS security.
- Experience with GRC frameworks and risk standards (NIST CSF, ISO 27001, SOC 2).
- Experience technically overseeing an outsourced/managed IT provider (MSP).
- Must be based in San Bruno, California
Nice to have
- CISSP, CISM, CISA, or Security+ certification.
- Experience at a hardware/IoT or consumer product company.
- Familiarity with business systems environments (ERP, e-commerce, CRM).
- Experience with access governance tooling such as Vanta or Drata.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →