Remote JobsRemote CompanyBlog
Sign In
Sign Up
Back to all jobs

Security Lead, Risk and Compliance

Remote

Role:

We are seeking an experienced Security Lead (Risk and Compliance) to join our growing team. The ideal candidate will implement technical security controls, develop information security program governance, drive the SOC2, PCI and FedRAMP compliance program, and adeptly manage both internal and external audits. In this role, you'll work hand-in-hand with various teams across our organization to identify and mitigate risks, thereby amplifying our security stance. We're seeking a candidate with a comprehensive understanding of the industry, whose expertise will be instrumental in maintaining our customers' trust and keeping us at the forefront of the ever-evolving cybersecurity landscape.

Responsibilities:

  • Implement technical security controls within software systems and cloud environments.
  • Lead efforts to maintain and/or obtain SOC2, PCI and FedRAMP compliance, including preparing for and managing audits, gathering necessary evidence, and implementing required controls.
  • Plan, procure, schedule, and lead major security initiatives, including penetration testing, incident response testing, network firewall reviews, and risk assessments.
  • Review, approve, and update security policy documentation to reflect current practices and compliance requirements.
  • Evaluate and review technical security control evidence to confirm effectiveness and compliance.
  • Conduct regular risk assessments and implement strategies to mitigate identified risks.
  • As a subject matter expert, provide input and direction into the customer due diligence process.
  • Collaborate with IT and other departments to enhance enterprise security.
  • Provide training and guidance to staff on security best practices and compliance requirements.
  • Stay current with the latest industry trends, threats, and security standards.

Requirements:

  • Bachelor's degree in Computer Science, Information Systems, Cybersecurity, or a related field. Advanced degree preferred.
  • Minimum of 10 years of experience in information security at a SaaS company, with a focus on InfoSec engineering, governance, and compliance.
  • Strong knowledge of industry standard frameworks - FedRAMP, NIST, PCI, SOC2.
  • Proven experience leading and managing information security initiatives, including penetration testing, incident response testing, network firewall reviews, and risk assessments.
  • Proficient in many and expert in some cybersecurity technologies, IT concepts, strategies and methodologies, as well as security aspects of multiple platforms, operating systems, software, communications and network protocols.
  • Excellent communication skills, including the ability to convey complex security related concepts to technical and non-technical audiences alike.
  • Familiarity with current industry trends, threats, and security standards.
  • Strong problem-solving skills and the ability to work in a fast-paced environment.
  • Familiarity working in financial services is a big plus.
  • Candidates must be legally authorized to work in the United States and must live in the United States

Salary Range:

  • $170,000 - $210,000 plus equity and benefits
 Apply this job
Please mention that you found this job on remotewlb.com. Thanks & good luck!
 Apply
 Save
Share to :

SentiLink

New Job Alert

COMING SOON~
Follow us on
Give a ⭐ on
Similar Jobs
Find more remote jobs
Do you love using our product?

Share a testimonial/suggestion.We'd love to hear about it!

Click to submit✍️
logo of sitemark

Copyright © RemoteWLB 2025

Remote Dev JobsRemote Support JobsRemote Design JobsRemote Sales JobsRemote Product JobsRemote Business JobsRemote Data JobsRemote Devops JobsRemote Finance JobsRemote Legal JobsRemote HR JobsRemote QA JobsRemote Write JobsRemote Edu JobsRemote Market JobsRemote Management JobsRemote Others Jobs