Manager, Compliance (Cybersecurity)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Manager, Compliance (Cybersecurity): Leading Compliance, Privacy, and Third-Party Risk programs for a remote cybersecurity company with an accent on maturing GRC capabilities and driving audit readiness. Focus on managing SOC 2 and ISO 27001 certifications, overseeing data privacy (GDPR/CCPA), and scaling customer assurance processes.
Location: Remote (US)
Salary: $149,850 - $185,000 annually
Company
is a fast-growing cybersecurity company providing the NodeZero autonomous pentesting platform to help organizations proactively find and fix exploitable attack vectors.
What you will do
- Lead, coach, and grow the Compliance team, managing operations, privacy, and third-party risk.
- Coordinate audits and maintain compliance against frameworks such as SOC 2, ISO 27001, NIST AI RMF, and FedRAMP.
- Oversee the data privacy program, ensuring compliance with GDPR, CCPA/CPRA, and the EU AI Act.
- Manage the third-party risk management lifecycle, including vendor due diligence and security reviews.
- Act as the primary point of contact for customer security questionnaires, RFPs, and due diligence requests.
- Establish and mature the enterprise security Risk Register using a standardized risk scoring methodology.
Requirements
- Must be based in the United States.
- 6+ years of experience in security compliance, privacy, risk, or GRC.
- 3+ years of experience operating within a B2B SaaS or cybersecurity company.
- Deep expertise in SOC 2, ISO 27001, GDPR, and CCPA/CPRA.
- Experience leading annual audits and managing compliance analysts.
- Working knowledge of AWS, Okta, MDM, SIEM, and DLP tools.
Nice to have
- Certifications such as CIPP/US, CIPT, CISA, CRISC, or ISO 27001 Lead Implementer.
- Experience in high-growth SaaS or cybersecurity environments.
Culture & Benefits
- Competitive base salary and equity packages (stock options).
- Comprehensive health, vision, and dental insurance for employees and families.
- Flexible vacation policy and generous parental leave.
- Inclusive, remote-first culture emphasizing respect, collaboration, and ownership.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →