Remotely
devsecopssecurity governanceaiiso 27001soc 2risk assessments
Job Description
📋 Description
- Develop and maintain enterprise cybersecurity policies and standards.
- Coordinate security assessments, identify risks, and drive corrective actions.
- Partner with IT leaders to ensure updated, accurate information; drive security awareness.
- Support client security questionnaires, evidence collection, and audits.
- Guide core security controls (access management, data encryption, logging, business continuity).
- Collaborate with IT/Engineering to refine enterprise security architecture.
🎯 Requirements
- 3-5 years in information security compliance with PCI-DSS, SOC 2, or ISO 27001.
- Experience mapping controls to technical implementations and evaluating evidence.
- Ability to evaluate risk across app, network, endpoint, and cloud; DevSecOps experience.
- Strong written/oral communication; ability to author docs and support client questionnaires.
- Ability to learn fast and adapt governance strategies in a dynamic cybersecurity environment.
- Excellent analytical skills and independent judgement.
🎁 Benefits
- Competitive benefits package, health/dental/vision, disability, life insurance, and mental health
- 401(k) with company match and tuition assistance.
- Flexible time off, paid sick leave, and holidays.
- Parental planning benefits and incentive programs.
Back to all jobs