Source Job

$151,000–$170,000/yr
Global Unlimited PTO 11w maternity

  • As the first dedicated InfoSec hire, you'll secure organizational systems, data, and operations.
  • You will develop and maintain a practical framework for securely deploying AI tools across the organization.
  • You will lead security incident response, investigate alerts, and coordinate containment.

Cybersecurity Compliance Vulnerability Management Incident Response

20 jobs similar to Information Security Specialist

Jobs ranked by similarity.

Global

  • Build AI agents that handle vulnerability triage, automated security reviews of PRs, and initial incident forensics at scale.
  • Build systems that automatically detect and remediate security gaps across AWS, GCP, and Azure -- configuration drift, IAM misconfigurations, vulnerable dependencies, exposed secrets.
  • Lead threat modeling, security reviews, and risk assessments across web applications, APIs, and services.

Atlan is building the missing context layer for data and AI, helping enterprises close the AI value chasm. They connect to every part of the modern data and AI stack to unify this context into a single, shared layer that both humans and AI agents can rely on.

Canada 6w PTO

  • Support the execution and continuous improvement of Qohash’s security program.
  • Support risk assessments, track identified risks, and help coordinate remediation efforts.
  • Maintain security policies, standards, awareness materials, and support internal security training initiatives.

Qohash is building a foundational pillar of Canada’s digital sovereignty, believing security must scale differently. They look for bold, mission-driven individuals with technical depth and strategic clarity who collaborate across disciplines to protect sensitive data.

Global

  • Assess information security processes and design more efficient methods using available tools including generative AI
  • Oversee the Implementation and management of Infosec applications, services and tools such as Endpoint Detection and Response (EDR)
  • Conduct security, vulnerability, and risk assessments across services, cloud and applications, using both automated tools, manual testing procedures, and generative AI

KnowBe4 is the global leader in Human Risk Management, trusted by over 70,000 organizations worldwide to secure their employees and AI agents for over 15 years. Their HRM+ combines continuous risk intelligence, advanced technical defenses, and personalized training to help organizations build strong security cultures.

$75,000–$85,000/yr
US

  • Be the first line of support for the organisation, resolving issues and keeping things moving.
  • Own the full lifecycle of devices, including deployment, configuration, and troubleshooting.
  • Run regular vulnerability scans, prioritize by risk, and drive remediation to closure.

Crypto.com, founded in 2016, is a cryptocurrency platform serving over 80 million customers globally. They aim to accelerate cryptocurrency adoption through innovation, empowering builders and creators to develop a fairer digital ecosystem.

EMEA 6w PTO

  • Lead security efforts across infrastructure, applications, internal systems, and employee devices
  • Identify risks and vulnerabilities across the organisation and ensure they are addressed
  • Establish scalable security processes and best practices across teams

LI.FI is dedicated to fostering a workplace that values and respects each team member's unique contributions. They value differences and encourage individuals of all backgrounds to apply.

$98,400–$147,600/yr
US Canada UK

  • Reduce operational toil by experimenting with AI and automation in security workflows, building simple tools that make your team's work easier, and sharing what you learn.
  • Build trust across engineering and cloud teams by responding to security requests with genuine care, clear communication, and reliable follow-through.
  • Own alert triage and incident response with thoroughness and accuracy, ensuring security findings are investigated quickly, escalated at the right time to the right people, and documented clearly for the whole team to learn from.

Jane is a founder-led, high-growth SaaS company that builds products and tools that thousands of clinics rely on every day to run their businesses, care for their patients, and grow their communities. They are a team of more than 700 people working remotely across Canada, the US, and the UK.

$83,430–$109,232/yr
US Unlimited PTO

  • Implement and manage the NIST Risk Management Framework (RMF) to achieve and maintain compliance.
  • Drive the data privacy program by conducting Privacy Impact Assessments (PIAs) and Data Protection Impact Assessments (DPIAs).
  • Design and execute a continuous internal audit program to validate the effectiveness of controls.

IonQ delivers solutions to solve the world’s most complex problems with quantum computing. IonQ's newest generation quantum computers, IonQ Tempo and IonQ Forte Enterprise, help customers and partners such as Amazon Web Services, AstraZeneca, and NVIDIA achieve 20x performance results.

US Unlimited PTO 16w maternity

  • Lead and grow a team of the best security engineers.
  • Define the strategy for Vanta’s application security program.
  • Work with Engineering and Product Development to assess and mitigate risk.

Vanta helps businesses earn and prove trust by providing continuous security monitoring and verification. They aim to empower companies to practice better security with their automation and orchestration tools. Vanta has a kind and talented team, embracing individuals with and without prior security experience.

US Unlimited PTO

  • Ownership of our SOC 2 and Privacy compliance roadmap, from problem framing to tracking adoption.
  • Gap analysis and consulting with clients to assess their InfoSec posture and provide actionable paths to certification.
  • Internal playbook development, creating the checklists, policy templates, and controls that will be automated within our software.

Greenplaces helps companies navigate reporting requirements. They empower businesses to measure their carbon emissions and act as the definitive source of truth for all sustainability and compliance activity. They are headquartered in Raleigh, NC, with a distributed team across the country and backed by world-class investors.

Global

  • Develop, maintain, and continuously improve GRC policies, standards, procedures, and control frameworks.
  • Lead and support SOC 2 Type II, ISO 27001, PCI DSS and other compliance initiatives, including evidence collection, control validation, and remediation tracking.
  • Partner with Security and Platform teams to ensure controls are technically implemented, not just documented.

HighLevel is an AI powered, all-in-one white-label sales & marketing platform that empowers agencies, entrepreneurs, and businesses to elevate their digital presence and drive growth. With over 1,500 team members across 15+ countries, we operate in a global, remote-first environment.

$150,000–$200,000/yr
US

  • Own and operate core IT, SaaS, devices, and access controls, ensuring systems are secure and scalable.
  • Partner with the AI Governance team to enable the safe use of AI tools, ensuring policies are applied.
  • Design, deploy, and maintain enterprise-grade AI agents and workflows, automating processes and unlocking productivity.

ASG is a group of market-leading SaaS software companies, serving industries from behavioral health to transportation to childcare. They believe in the power of people and data to grow organizations, sharing knowledge and resources across businesses for growth.

$257,600–$322,000/yr
US

  • Own and operate the end-to-end enterprise cybersecurity program, including strategy, architecture, operations, governance, and compliance.
  • Establish a multi-year security roadmap aligned with business priorities, technology evolution, and regulatory requirements.
  • Define and execute a strategy for AI-assisted cybersecurity operations, leveraging machine learning, automation, and advanced analytics to enhance detection and response capabilities.

Natera is a global leader in cell-free DNA (cfDNA) testing, dedicated to oncology, women’s health, and organ health. They aim to make personalized genetic testing and diagnostics part of the standard of care. Their team consists of highly dedicated statisticians, geneticists, doctors, laboratory scientists, business professionals, software engineers and many other professionals from world-class institutions, who care deeply for their work and each other.

US Unlimited PTO

  • Support security and compliance programs aligned with frameworks such as NIST, ISO, PCI DSS, and HIPAA.
  • Assist in maintaining alignment with global privacy regulations (GDPR, CCPA, and similar frameworks).
  • Assist in the development, implementation, and maintenance of security, privacy, and AI governance policies, standards, and procedures.

Hims & Hers is a health and wellness platform with a mission to help the world feel great through the power of better health. They are redefining healthcare by putting the customer first and delivering access to care that is affordable, accessible, and personal.

US

  • Apply compliance frameworks to assess, design, and implement security controls.
  • Conduct compliance gap assessments and develop remediation plans.
  • Create and maintain key documentation tailored to client needs.

AHEAD builds platforms for digital business by weaving together advances in cloud infrastructure, automation and analytics, and software delivery. They prioritize creating a culture of belonging where all perspectives and voices are represented, valued, respected, and heard.

Global

  • Responsible for designing, engineering, and operationalizing AI security across J.S. Held’s enterprise.
  • Serves as the central Cyber Security owner for all AI Security.
  • Balances hands‑on engineering, solution design, and architectural leadership.

J.S. Held is a global consulting firm that combines technical, scientific, financial, and strategic expertise to advise clients seeking to realize value and mitigate risk. They provide a comprehensive suite of services, products, and data that enables clients to navigate complex, contentious, and often catastrophic situations.

$200,000–$260,000/yr
US

  • Lead the ongoing maintenance and operation of secure cloud infrastructures, focusing on AWS and cloud-native technologies.
  • Secure applications built for cloud environments by automating security assessments, monitoring runtime environments, and integrating security practices into the development lifecycle.
  • Implement robust security controls for cloud workloads and data, including containers, virtual machines, and serverless architectures.

Ro is a direct-to-patient healthcare company with a mission of helping patients achieve their health goals by delivering the easiest, most effective care possible. Ro is the only company to offer nationwide telehealth, labs, and pharmacy services and is recognized as a top workplace, earning more than 20 honors since 2021.

US 12w maternity

  • Lead the security Capabilities we bring to market, owning the layered defense strategy gained by combining multiple data sources
  • Convert application and endpoint vulnerability research + findings into actionable preventive and remediation actions by generating security software engineering requirements
  • Translate CVE & vendor hardware/software vulnerability research into security product development

Huntress is a fully remote, global team of passionate experts on a mission to break down the barriers to cybersecurity. Founded in 2015 by former NSA cyber operators, Huntress protects all businesses with enterprise-grade, fully owned, and managed cybersecurity products.

$123,700–$191,300/yr

  • Responsible for designing, implementing, and operating security controls that protect cloud‑native platforms and workloads across public cloud environments.
  • Partners closely with engineering, DevOps, and architecture teams to ensure cloud services are secure by design and compliant with regulatory requirements.
  • Provides security oversight and engineering support for AI‑enabled capabilities used across the Pismo platform, ensuring alignment with security controls.

Pismo, founded in 2016, provides a comprehensive processing platform for banking, card issuing, and financial market infrastructure, helping customers innovate and build next-generation banking and payment solutions. Pismo has over 500 employees across more than 10 countries and joined Visa in 2024.

Global 5w PTO

  • Helping define the security operations roadmap by designing and implementing long term strategies
  • Improve and maintain processes, tooling, documentation and training to mature and enhance cybersecurity incident response
  • Design, implement and maintain security events monitoring systems

Docplanner empowers patients by giving them access to leave and read reviews about their visit and also provides doctors with the technology to manage bookings easily and save time. They are leaders in 13 countries with over 2,500 employees globally, maintaining a startup-mindset.

Europe

  • Integrate security across the entire product lifecycle.
  • Build a platform security mindset, ensuring cloud-native architecture, app-first thinking and AI initiatives are secure by design.
  • Ensure regulatory and compliance requirements are met through scalable, well-designed security capabilities.

Redcare Pharmacy is Europe’s No.1 e-pharmacy, powered by passionate teams and cutting-edge innovation. They strive to create a healthy collaborative work environment where every employee feels valued and inspired to contribute to their vision “Until every human has their health”.