Serve as a trusted advisor to clients, defining and advancing cybersecurity strategy over multi-year engagements.
Develop prioritized security roadmaps and advise on governance, risk, and compliance frameworks.
Translate technical risk into business language for executives and boards, owning the advisory relationship.
Apollo Information Systems is a cybersecurity services company delivering comprehensive security and compliance programs, pioneering a cybersecurity-as-a-service model. Backed by Series A funding, we foster a collaborative, mission-driven culture with deep expertise, and primarily work remotely with a hub in Denver.
Lead the governance, risk, and compliance function across security policies, standards, risk management, audits, and third-party risk.
Own audit readiness and ongoing compliance programs across frameworks such as SOC 2, ISO 27001, GovRAMP, PCI DSS, HIPAA, NIST CSF, and more.
Manage third-party and supply chain risk management, including vendor security reviews, due diligence, and remediation tracking.
Accela provides government software solutions to improve efficiency, increase citizen engagement, and enable thriving communities. They have been an industry leader for nearly 20 years and are committed to diversity, equity, and inclusion.
Partner with the CISO to drive security strategy, roadmap, and execution across application security, GRC, and operations.
Support compliance initiatives including PCI, SOC 2, ISO 27001, DORA, and FedRAMP readiness.
Serve as a trusted security leader in customer-facing settings, translating technical risks into business language.
Sardine is the leading agentic risk platform for fighting financial crime, integrating data across risk teams to stop fraud and automate AML operations. With over 6 billion profiled devices and 800 million consumers, we maintain a remote-first culture that values performance over hours worked.
Develop and maintain the enterprise IT GRC strategy, framework, and roadmap, presenting updates to executive leadership.
Lead enterprise IT risk assessments, maintain risk registers, and oversee remediation efforts.
Ensure compliance with regulations like NIST, ISO 27001, SOC, PCI-DSS, HIPAA, GDPR, and SOX.
Mission Critical Group is an end-to-end power solutions and services provider that accelerates time-to-power for mission critical environments. With over 1.5 million square feet of U.S. manufacturing capacity, the company supports data centers, healthcare, and industrial facilities where uptime is non-negotiable.
Lead the global cyber security strategy, governance, and operations to protect clients, systems, data, and brand reputation across all regions.
Define and execute the Information Security Management System (ISMS) aligned to ISO 27001, SOC2, and TISAX, while managing enterprise risk and compliance.
Serve as the senior authority on cyber risk, advising the CTO, Board, and customers, and act as executive incident commander for major cyber events.
JD Power is a proven leader in business-critical data and intelligence, powering auto-related decisions with proprietary data, advanced analytics, and deep industry expertise. The company is a global corporation with a diverse workforce and a culture focused on innovation, collaboration, and trust.
Define, implement, and evolve cybersecurity strategy aligned with business priorities.
Establish security policies and frameworks such as ISO 27001, NIST, and LGPD, and conduct risk assessments.
Lead incident response, optimize security tools, and promote security awareness across teams.
Jobgether is an AI-powered job matching platform connecting candidates with hiring companies. They use technology to ensure fair and efficient application reviews, processing personal data in compliance with GDPR.
Provide expert cybersecurity advisory to alternative asset firms and family offices.
Build, maintain, and operate full Cybersecurity Programs for clients.
Work on project-based engagements that fit around existing commitments.
We are a talent solutions firm purpose-built for the alternative investment industry. We have a network of 700+ vetted advisors and cover the full talent spectrum from entry to exit.
Own and manage the compliance program including SOC 2 and ISO 27001 readiness and audits.
Lead risk assessments, control testing, and enterprise risk management processes.
Partner with Engineering, Security, Product, Legal, HR, and Operations to embed compliance into business processes.
Calendly is a scheduling platform used by millions to automate meetings and streamline time management. They are a rapidly growing SaaS company fostering a culture of learning and high performance.
Consult onsite and remotely with customers to collect and analyze data related to policies, infrastructure, and compliance requirements.
Perform gap analyses of current environments and recommend remediation steps.
Assist with sales and marketing activities as a subject matter expert and prepare industry presentations.
CampusGuard provides information security and privacy consulting and compliance services for campus-based organizations. It is a full-service firm leveraging industry standards to deliver world-class security and compliance services.
Take ownership of building and scaling comprehensive security, privacy, and compliance programs that protect customer data.
Lead compliance initiatives such as SOC 2 Type 2 audits and evaluate additional frameworks like ISO 27001 and HIPAA.
Build scalable automated security processes by replacing manual tasks with scripts, APIs, and AI-powered solutions.
Our partner is a technology company focused on building secure, scalable systems. They operate with a remote, collaborative culture emphasizing ownership, transparency, and continuous improvement, with around 50–300 employees.
Monitor security alerts, vulnerabilities, and incidents across enterprise systems and assist in incident response.
Maintain compliance with standards such as NIST CSF, ISO 27001, and SOC 2 through audits and policy development.
Conduct security risk assessments, evaluate controls, and track remediation plans.
Mission Critical Group is an end-to-end power solutions and services provider that accelerates time-to-power for mission critical environments. With over 1.5 million square feet of U.S. manufacturing capacity, they support data centers, healthcare, and industrial facilities.
Lead security discovery workshops and translate high-level architectural requirements into actionable security roadmaps.
Design end-to-end cloud security frameworks and document controls for SOC 2 and HITRUST compliance.
Establish governance and security processes for AI and manage vulnerability remediation with development teams.
Ollion is a global technology partner that helps organizations solve their toughest business challenges in AI, data, and cloud. They are a remote-first, globally distributed team focused on making a world of difference through innovation and collaboration.
Own the end-to-end GRC strategy and roadmap, driving compliance maturity and reducing audit risk.
Design and implement policy-as-code systems, translating compliance frameworks into enforceable code.
Lead full audit cycles, manage evidence collection, and architect GRC platform strategy for continuous compliance.
Smartsheet empowers teams to manage work and scale solutions, now uniting human teams with AI agents to automate tasks and uncover insights. With a history of over 20 years, the company fosters a culture of inclusion, creativity, and big thinking, offering professional growth and a supportive environment.
Manage a portfolio of customers, driving adoption, retention, and long-term success through strategic advisory.
Translate cybersecurity objectives into measurable outcomes and actionable improvement strategies.
Proactively identify risks and opportunities to optimize customer satisfaction and platform value.
The partner company is a cybersecurity firm that helps organizations strengthen their security programs through continuous validation and strategic guidance. It offers a remote-first, innovation-focused culture with a collaborative team.
Own and drive the compliance roadmap across multiple frameworks like ISO 27001, TISAX, SOC 2, and GDPR.
Implement ISO 27001 and adjacent frameworks end-to-end for customers, ensuring successful audits.
Mentor the compliance team, conduct internal audits, and act as the senior compliance voice for customers, auditors, and product.
Secfix automates security compliance for companies, helping them achieve ISO 27001, GDPR, TISAX, and SOC 2 quickly. They are a high-performing 100% remote team with hubs in Germany and the UK, backed by top VCs.
Defines program goals, governance frameworks, and measurable objectives for cyber risk and compliance programs.
Manages user attestations, third-party risk, cyber contract negotiation, and coordination of IT audits/assessments.
Implements GRC tooling and monitors program effectiveness through KPIs, QA reviews, and control testing.
Velera is a credit union service organization providing fintech solutions to over 4,000 financial institutions. The company fosters a remote-first, inclusive culture with a focus on employee wellbeing and belonging.
Conduct IT and cybersecurity risk assessments across systems, applications, and business processes.
Lead audit readiness activities for frameworks like SOC 2, HIPAA, and NYDFS.
Manage security policies, third-party vendor assessments, and develop risk dashboards.
Jobgether uses an AI-powered matching process to connect candidates with hiring companies. They focus on efficient, objective application review and are a remote-first organization.
Define and drive Morpho's security strategy across corporate, IT, cloud, application, supply chain, identity, incident response, threat intelligence, and counterparty security.
Build and lead the security function by hiring and developing a team while staying hands-on with threat modeling, architecture review, and incident response.
Represent Morpho's security posture externally to partners and institutions, and internally to leadership, partnering with engineering and integration teams.
Morpho is a leading Decentralized Finance (DeFi) lending protocol that raised funding from major investors to build an open credit network for borrowing and lending on-chain. With over $10 billion in deposits, Morpho is scaling its team to become the global open credit network, emphasizing a high-support, low-ego culture that navigates uncertainty in a nascent market.
Serve as primary trusted advisor for 5-10 strategic customers with 10,000+ employees
Lead enterprise-scale implementations and optimizations of Vanta's Trust Management Platform
Build deep executive relationships with CISOs, CIOs, and other C-level stakeholders
Vanta helps businesses earn and prove trust by automating security monitoring and compliance. The company has a kind and talented team with prior security experience, working to serve enterprises at scale.