Remotery

Information Security Manager

atCLASPRemoteUS flagUnited StatesFull-timeCybersecurity / Security EngineerMid-levelSenior$170k – $190k/year

Posted 21 hours ago

This is a fully remote position, open to applicants in United States.

📋 Description

• Manage the SOC 2 program from start to finish while enhancing Information Security policies.

• Oversee the Vanta instance and conduct business continuity exercises.

• Serve as the representative for information security in the Risk + Compliance committee.

• Lead and collaborate with IT/TechOps across corporate IT and security domains.

• Supervise laptop procurement, MDM, onboarding/offboarding processes, SaaS vendor management and hardening, incident response, and data loss protection.

• Set the strategic direction for the IT/TechOps function and team development.

• Manage third-party security assessments and respond to security questionnaires from customers and partner banks.

• Configure the SIEM and establish effective alerting mechanisms.

• Maintain vendor relationships for enhanced visibility and risk mitigation.

• Enhance GCP cloud security, IAM, JIT privilege escalation, group-based access, and platform hardening practices.

• Collaborate with engineering on secure SDLC, dependency and vulnerability scanning, CI/CD pipeline hardening, and threat modeling initiatives.

• Work with the CTO and AI Labs on build-or-buy strategies for agentic security tasks.

• Ensure the secure operation of deployed AI agents.

• Report directly to the CTO while managing IT/TechOps (1).


⛳️ Requirements

• CISSP certification is required.

• A minimum of 5 years of experience on a security team.

• Experience in a startup environment.

• Experience at a company that has successfully achieved SOC 2 or ISO 27001 certification.

• A semi-technical degree (such as Information Systems) or several years of hands-on technical experience in scripting, web development, automation, or data analysis.

• Proficient in scripting, prototyping, and utilizing AI and modern tools.

• Excellent communication skills with customers, partner banks, auditors, and internal teams.

• Experience interacting with customers and regulators.

• Familiarity with fintech, lending, or other regulated/high-trust environments is a plus.

• Hands-on experience with GCP security is preferred; AWS experience is also advantageous.

• Experience establishing or managing a SOC 2 program from the ground up is a plus.

• Experience managing due diligence requests from partner banks or enterprise clients is a plus.

• Must not require current or future visa sponsorship to legally work in the United States.


🏝️ Benefits

• Competitive cash and equity compensation.

• Comprehensive health benefits (medical, dental, & vision).

• Student loan repayment assistance.

• 401k matching program.

• Commuter benefits.

• Flexible PTO policy.

• Opportunities for growth and performance in a dynamic environment alongside a talented team.

People also viewed

KirkpatrickPrice18 hours ago

Information Security Auditor

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer$100k – $120k/year
ApplyView job
Euna Solutions19 hours ago

Senior Security Engineer – AI Focus

CA flagCanada OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Gartner19 hours ago

Senior Director Analyst – AI Data Security, Data Management, Emerging Technology, Trends

GB flagUnited Kingdom, +4 more statesFull-timeCybersecurity / Security Engineer
ApplyView job
Credence20 hours ago

Cybersecurity SME – Lead, Cyber Tools

US flagVirginia OnlyFull-timeCybersecurity / Security Engineer$135k – $156k/year
ApplyView job
U.S. Urology Partners20 hours ago

Security Engineer

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job
Aegis AI Security21 hours ago

Security Administrator

US flagUnited States OnlyFull-timeCybersecurity / Security Engineer
ApplyView job

Never miss a great job!

Get handpicked remote jobs straight to your inbox weekly.

Trusted by 7,400+ designers