Own the IT evidence program across ISO 27001, SOC 1, SOC 2, PCI DSS, and HIPAA for approximately 13 operating sites, managing audits and remediation.
Manage vulnerability management end to end, oversee endpoint detection and response, and lead security incident response through to conclusion.
Contribute to identity governance across a hybrid cloud and on-premises IdP, overseeing access review and privileged access controls.
Serverfarm is a leading developer and operator of data centers with over 750 locations and key customer relationships in 45 countries. With Manulife Investment Management's acquisition in 2023, the company is positioned for explosive growth and offers a culture of innovation and career development.
Take ownership of the information security program, lead the IT team, and collaborate with engineering on deep technical work.
Own SOC 2, Vanta, governance, IT/TechOps, vendor diligence, SIEM, vulnerability management, and cloud security.
Partner with the CTO and AI Labs to build security capabilities and automate with AI tooling.
We are a Forbes Fintech 50, SHRM-backed company tackling employer talent retention and the student debt crisis. We are a Series B startup with a strong technical team, enterprise customers, and a high security bar.
Take ownership of information security governance, including policies, risk registers, and control documentation.
Manage day-to-day security program operations, mentor analysts, and coordinate cross-functional initiatives.
Lead incident response, compliance support, and serve as primary counterpart to the vCISO.
Aries is a financial technology company building modern infrastructure and products for active investors and traders. As a growing organization, they are investing in a practical, accountable security program deeply integrated into how the company operates.
Lead the design and evolution of a multi-framework compliance offering for European businesses.
Drive end-to-end ISO 27001 implementations and manage a team of compliance specialists.
Act as a senior security partner to customers, sales, and product teams.
This company provides a security and compliance platform that helps modern businesses achieve certifications across frameworks like ISO 27001 and SOC 2. It is a fast-growing, remote-first technology environment with a strong emphasis on collaboration and team connection.
Own Eon's overall security strategy, roadmap, and budget, briefing the CEO and board.
Build and lead the security function, hiring and developing the team as the company scales.
Partner with engineering and product to embed secure-by-design principles and own detection, response, and vulnerability management.
Eon is transforming cloud backups into useful, active assets. Backed by leading investors, it has raised $500M and reached a $4B valuation, fostering a fast-paced startup culture.
Lead enterprise cybersecurity strategy and operations across cloud and business systems.
Oversee IT operations, IAM, endpoint management, and ensure HIPAA compliance.
Manage vendor risk assessments and communicate technology strategy to executive leadership.
Luna delivers physical therapy in-home and virtually, combining healthcare with technology to improve patient outcomes. It is a high-growth company with a hands-on, collaborative culture focused on innovation and compliance.
Own the full technology and security remit, including enterprise infrastructure, security, identity, applications, and workplace technology.
Lead and grow three functions: IT & Security Operations, Cloud Platform Engineering, and GRC.
Mature security operations with automation and serve as customer zero for the company's own platform.
UpGuard builds a Cyber Risk Posture Management platform that integrates security ratings, threat intel, and agentic AI to help organizations manage cyber risk. They are a certified Great Place to Work with a lean, high-growth culture and a global remote team.
Define and communicate the security program's strategy, priorities, and progress to the broader business.
Shape how Cape brings new security tools into the fold, from vendor procurement through implementation.
Keep the security engineering team on track, managing priorities and driving execution across detection & response, corporate security, and product security.
Cape is America's privacy-first mobile carrier, building a secure network from scratch to protect user privacy. The company is scaling rapidly after its Series C in 2026, with a flat, collaborative culture of high trust and high expectations.
Improve perimeter and network-layer defenses (WAF, DDoS mitigation, anti-bot) and secure product APIs against abuse.
Manage vulnerability identification, prioritization, remediation, and coordinate external pentests.
Lead incident response, run the Security Champions program, and manage the Bug Bounty program.
Social Discovery Group (SDG) solves problems of loneliness, isolation, and disconnection by providing social entertainment platforms that connect people across cultures. The company is an international team of digital nomads working remotely worldwide and has been named a Great Place to Work (USA & Japan, 2024–2025).
Manage day-to-day security operational availability and supportability of a 24x7x365 infrastructure.
Make recommendations on enhancements to security hardware, software, and tools, and perform risk analysis.
Configure, implement, monitor, and support security software/systems including firewalls, VPNs, IDS/IPS, DLP, etc.
eMoney Advisor is a wealth management system that offers transparency, security, mobile access, and superior organization. We serve more than 109,000 financial professionals and support over 6 million end clients, fostering a culture that values diversity and inclusion.
Lead DLP incident response, including investigation, containment, and remediation.
Deploy and tune DLP controls across endpoints, network, and cloud.
Develop DLP policies and automated playbooks.
Included Health is a healthcare company that delivers integrated virtual care and navigation. They have a remote-first culture and offer comprehensive benefits.
Own the compliance programs and audits end to end, including SOC 2, PCI DSS, GDPR, and ISO 27001.
Manage identity and access, device fleet, and vendor security with ownership over control state.
Drive compliance as a sales enabler and own the customer-facing security package.
Footprint is the agentic platform that learns compliance programs and runs them end to end for banks and fintechs. The team is small, senior, and ships fast.
Lead the development and implementation of security strategies, policies, and procedures.
Architect secure systems and collaborate with engineering teams to integrate security throughout the software development lifecycle.
Conduct risk assessments, incident response, and mentor junior engineers to promote security awareness.
Gemini is a global crypto and Web3 platform founded in 2014, offering secure crypto products and services to individuals and institutions in over 70 countries. The company is publicly traded with a mission to bridge traditional finance with the emerging cryptoeconomy, fostering a diverse team that prioritizes trust and security.
Own the security program end-to-end, including identity, IT, compliance, and application security.
Drive SOC 2 Type II readiness and map FERPA, COPPA, and state privacy controls.
Establish zero-trust access, automated provisioning, and human-centered security processes.
OpenEd provides customized, world-class education and resources to over 100,000 students, empowering families across the US. The company is growing rapidly with a values-driven culture focused on customer obsession, action, and transparency, reflected in a top 0.1% employee net promoter score.
Provide strategic leadership for global Program Security, integrating security into program planning and mission delivery.
Serve as a trusted advisor to senior leaders, conducting risk assessments and crisis management in complex environments.
Develop and implement security frameworks, policies, and training to enable mission-critical work safely.
The organization is a mission-driven entity focused on protecting vulnerable people and strengthening safety in complex environments. It operates globally with a Christian faith-based culture and a strong commitment to staff care.
Lead and maintain ATO documentation and coordinate with security, engineering, and project teams to ensure compliance.
Monitor security events, investigate threats, and assess vulnerabilities across cloud and enterprise environments.
Develop and implement security policies, conduct risk analysis, and provide cybersecurity guidance to stakeholders.
The company is a partner organization focused on cybersecurity and federal technology modernization. It offers a fully remote, mission-driven culture with opportunities for growth in a technology-focused environment.
Maintain and mature the ISMS, including the Statement of Applicability, risk treatment plans, and Management Review Meetings.
Support ISO 27001 and SOC 2 Type 2 audits from readiness through certification, including evidence preparation.
Lead the security policy program and collaborate across teams to translate compliance requirements into practical practices.
Mozilla Corporation is a non-profit-backed tech company behind Firefox, focused on making the internet better. With 225+ million monthly users, it is a wholly owned subsidiary of the Mozilla Foundation, promoting privacy, AI, and open-source.
Lead corporate IT and security operations as the senior technical authority.
Own compliance governance for CMMC, CJIS, SOC 2, and FedRAMP.
Manage IT budget, vendors, and infrastructure automation using Terraform and modern platforms.
A high-growth technology organization seeking a senior leader to own corporate IT infrastructure and enterprise security. The culture emphasizes collaboration, automation, and a human-centered approach to security.
Collaborate closely with the Senior Security Engineer to scope, design, and implement security initiatives across cloud, endpoint, identity, and application security.
Administer and tune core security platforms including endpoint detection, email security, and vulnerability management.
Respond to security incidents and ensure compliance with HITRUST, HIPAA, and other industry standards.
Imagine Pediatrics is a tech-enabled, pediatrician-led medical group reimagining care for children with special health care needs by delivering 24/7 virtual-first and in-home medical, behavioral, and social care. They operate as a small, collaborative team that values curiosity and an unwavering commitment to children with medical complexity.