Назад
Company hidden
1 день назад

Compliance Manager (Cybersecurity)

153 000 - 296 000$
Формат работы
remote (только USA)/hybrid
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/

TL;DR

Compliance Manager (Cybersecurity): Leading compliance and certification programs across security and regulatory frameworks with an accent on audit cycles and evidence management. Focus on scaling GRC operations, improving control effectiveness, and ensuring alignment with SOC 2, ISO 27001, and FedRAMP.

Location: Must be based in the United States (Remote or Hubs in San Francisco and New York)

Salary: $153,000 - $296,000 USD

Company

hirify.global is a collaborative design platform that empowers teams to brainstorm, prototype, and iterate with AI to make design accessible to all.

What you will do

  • Lead compliance programs across frameworks including SOC 2, ISO 27001, FedRAMP, SOX ITGC, GDPR, and NIS2.
  • Manage external audits and certification activities in partnership with auditors and assessors.
  • Build and maintain risk and controls frameworks to support multiple certifications.
  • Conduct risk and gap assessments and drive remediation efforts across technical and business stakeholders.
  • Implement and optimize GRC platforms to scale evidence collection and program management.
  • Support customer trust initiatives, including security questionnaires and customer-facing communications.

Requirements

  • 4+ years of experience in information security, compliance, or risk management.
  • Hands-on experience with frameworks such as SOC 2, ISO 27001, FedRAMP, PCI-DSS, or SOX ITGC.
  • Experience leading audits and partnering with external assessors.
  • Ability to conduct assessments, drive remediation, and manage cross-functional initiatives.
  • Must be based in the United States.
  • Exceptional written and verbal communication skills for technical and executive audiences.

Nice to have

  • Experience operating in a public company environment with SOX ITGC requirements.
  • Experience supporting FedRAMP authorization, SSP development, and 3PAO coordination.
  • Security or risk certifications such as CISA, CISSP, CISM, or CRISC.
  • Experience implementing GRC platforms like Vanta or Drata.
  • Experience scaling security and compliance programs in high-growth environments.

Culture & Benefits

  • Comprehensive health, dental, and vision insurance.
  • Retirement plan with company contribution.
  • Generous PTO, company recharge days, and parental leave.
  • Learning and development stipend, plus a work-from-home stipend.
  • Mental health and wellness benefits.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →