Own cybersecurity strategy and operations across all AIOS entities.
Lead identity, access, endpoint, application, and infrastructure security.
Drive risk and compliance for HIPAA, GDPR, SOC 2, and ISO 27001.
AIOS is building the world's first full-stack AI doctor, serving 150k monthly patients through Bolt Pharmacy. We're a profitable, founder-led company scaling from $10M to $350M ARR in 12 months, with a culture of extreme ownership and speed.
Act as a gatekeeper for sensitive access and firewall rule approvals to ensure compliance with security policies.
Conduct regular reviews of access permissions, firewall configurations, and IT infrastructure settings.
Oversee vulnerability management, incident response, and security advisory for newly acquired laboratories.
Eurofins Scientific is an international life sciences company providing analytical testing services to ensure the safety and authenticity of products. With over 63,000 employees across 60 countries, the company fosters a culture of development, diversity, and sustainability.
Own and drive the compliance roadmap across multiple frameworks like ISO 27001, TISAX, and SOC 2.
Implement ISO 27001 end-to-end for customers and mentor junior compliance specialists.
Act as the senior compliance voice for customers, auditors, and product, partnering with CS and founders.
Secfix automates security compliance in Europe, helping companies achieve ISO 27001, GDPR, TISAX, and SOC 2 quickly and easily. We are a 100% remote team with hubs in Munich, Berlin, and London, backed by top VCs with a high-performing, ownership-driven culture.
Own and run the ISMS, lead ISO 27001 certification, and manage risk, policies, and audits end-to-end.
Handle customer security questionnaires, RFIs, and supplier audits independently as the sole security expert.
Manage GDPR compliance, including DPAs, subprocessor lists, vendor reviews, and DSARs with operational ownership.
Cosuno is a fast-growing tech startup revolutionizing the construction industry through a digital platform for tenders and procurement, using AI to analyze price data and create efficient bids. They are a lean, 100-person team with a culture of high autonomy, pragmatism, and AI-first thinking, offering a remote-first work environment.
Lead and grow a team of security specialists to manage day-to-day security operations, incident response, and threat intelligence.
Own the security strategy, policy framework, and controls while partnering with engineering on cloud and application security.
Drive security awareness across the organization and report on risks to senior leadership and governance forums.
Wayflyer provides fast, technology-driven financing to small businesses, assessing them in minutes and deploying capital within 24 hours. With over $6 billion deployed and backing from Tier 1 banks, the company has a global team across offices in Dublin, London, New York, Charlotte, Berlin, and Sydney, fostering an ambitious and collaborative culture.
Manage multi-jurisdictional compliance execution including HIPAA, GDPR, PIPEDA, and emerging privacy laws.
Lead IT operations and service delivery including user onboarding, device management, and identity & access management.
Drive vendor risk management and BAA/DPA lifecycle, ensuring breach notification timelines and data deletion commitments.
Practice Better is an all-in-one platform helping health and wellness practitioners run their businesses and scale their impact. We are a remote-first team headquartered in Toronto, made up of curious, driven, and empathetic people, trusted by thousands of practitioners worldwide.
Define and execute short- and long-term security strategy, governance, and operations across the organization.
Lead security initiatives covering monitoring, incident response, cloud protection, and application security.
Collaborate with engineering, compliance, and leadership teams to balance strong protection with seamless experiences.
A fast-growing global technology organization in the fintech sector. The company fosters a collaborative international environment with talented teams across multiple regions.
Create vision and objectives for IT transformation to achieve premier technology organization.
Ensure compliance with changing laws, manage cyber security policies, and protect the business.
Develop a team of IT professionals, setting goals and managing project loads for success.
Story Cannabis is a vertically integrated cannabis company founded in 2021 by industry veterans, operating across multiple states. The company values boldness, data-driven growth, and gratitude, with a focus on unity and growth.
Lead security compliance initiatives across ISO 27001, SOC 2, GDPR, and more.
Conduct internal audits and mentor junior specialists.
Collaborate with product teams to integrate compliance requirements.
Our partner is a fast-growing technology company specializing in security compliance and automation for European businesses. They have a startup culture with a focus on innovation and collaboration.
Consult on ISMS building, implementation, and improvement according to standards such as ISO 27001, NIS-2, and TISAX.
Conduct security analyses, gap analyses, and risk assessments to identify vulnerabilities and optimize processes.
Prepare and support internal audits, manage security policies, and collaborate with data protection and product development teams.
DDSK GmbH is a specialized information security consulting firm that helps companies build and implement ISMS according to standards like ISO 27001, NIS-2, and TISAX. They work with SMEs to large corporations and have a team of IT and security professionals in an audit-oriented, collaborative environment.
Lead enterprise IT infrastructure and cybersecurity operations for a government contracting company.
Ensure compliance with CMMC 2.0, NIST, and DFARS regulations across all systems.
Manage risk, business continuity, and enterprise systems governance including DAR and COOP planning.
Lynker Corporation is a leading provider of innovative solutions in weather and climate science. As an employee-owned business, Lynker combines scientific expertise with mature, results-driven processes to serve government clients and employs a team of 500-1000 staff.
Perform enterprise risk assessments using NIST CSF, SOC 2, and CIS frameworks.
Develop and execute security awareness programs including training and phishing simulations.
Support governance and control management by maintaining policies and control libraries.
Protective helps protect customers against life's uncertainties by providing insurance and peace of mind. The company offers a collaborative environment with a focus on employee wellbeing and work-life balance.
Lead, coach, and develop a team of security engineers and analysts, setting clear expectations and building capabilities.
Guide the team through vulnerability management, incident detection and response, and identity and access management.
Drive execution of multi-year security initiatives, partnering with senior stakeholders to develop policies and plans.
We create innovative learning materials and world-class guest experiences for teachers, parents, and children. Since 1954, we have grown into a global community with a thriving e-commerce business, multiple catalogs, over 50 stores, and a national sales force, and we invest in a diverse team of top talent.
Serve as the Information Systems Security Officer for assigned systems, maintaining security documentation and supporting authorization activities.
Coordinate security control implementation with Engineering, DevOps, and IT teams, managing Plans of Action and Milestones.
Support continuous monitoring, vulnerability management, and incident response for FedRAMP and GovRAMP environments.
Keeper Security is a cybersecurity software company that protects organizations and individuals globally with zero-trust and zero-knowledge solutions. It is a fast-growing company with FedRAMP and GovRAMP high authorizations, recognized in the Gartner Magic Quadrant for PAM.
Lead the governance, risk, and compliance function across security policies, standards, risk management, audits, and third-party risk.
Own audit readiness and ongoing compliance programs across frameworks such as SOC 2, ISO 27001, GovRAMP, PCI DSS, HIPAA, NIST CSF, and more.
Manage third-party and supply chain risk management, including vendor security reviews, due diligence, and remediation tracking.
Accela provides government software solutions to improve efficiency, increase citizen engagement, and enable thriving communities. They have been an industry leader for nearly 20 years and are committed to diversity, equity, and inclusion.
Own the vision and execution of IT operations, engineering, and infrastructure in a remote-first environment.
Lead and mentor high-performing teams in identity, endpoint management, and collaboration platforms.
Drive automation and AI-powered solutions to improve productivity and scalability.
Our partner is a fast-growing, remote-first technology company focused on AI and innovation. They have a collaborative culture and are scaling their IT operations to support a distributed workforce.
Improve, manage, and provide direction for LSAC's Security Policies, Procedures, and Best Practices.
Perform IT security inspections, tests, audits, and vulnerability assessments to ensure compliance with SOC2, IT/Financial Audits, and PCI/DSS.
Consult, monitor, and report on security systems like intrusion prevention, VPNs, firewalls, and conduct penetration testing to close security gaps.
LSAC advances law and justice by promoting access, equity, and fairness in law school admission and supporting the learning journey from prelaw through practice. They are a mission-driven organization with a culture of continuous improvement and creativity, emphasizing accountability and technical leadership.
Define and enforce security requirements for software products, features, and components.
Design, perform, and maintain security analysis on commercial products throughout the product lifecycle.
Collaborate with cross-functional teams to perform vulnerability management and implement mitigation strategies.
symplr is revolutionizing healthcare operations with a platform that drives effective, efficient, and connected workflows. The company is remote-first with employees across the US, India, and the Netherlands, and values teamwork, customer focus, and integrity.
Lead security discovery workshops and translate high-level architectural requirements into actionable security roadmaps.
Design end-to-end cloud security frameworks and document controls for SOC 2 and HITRUST compliance.
Establish governance and security processes for AI and manage vulnerability remediation with development teams.
Ollion is a global technology partner that helps organizations solve their toughest business challenges in AI, data, and cloud. They are a remote-first, globally distributed team focused on making a world of difference through innovation and collaboration.
Act as a trusted advisor to business leaders, bridging security risks and business priorities.
Lead security assessments, risk reviews, and remediation planning for new products and enterprise changes.
Maintain clear visibility of security risk, control health, metrics, and dashboards, escalating when needed.
Experian is a global data and technology company, powering opportunities for people and businesses around the world. With a team of 25,200 people in 32 countries, they foster an inclusive, purpose-driven culture and have been recognized as a World's Best Workplace in 2025.