Take ownership of building and scaling comprehensive security, privacy, and compliance programs that protect customer data.
Lead compliance initiatives such as SOC 2 Type 2 audits and evaluate additional frameworks like ISO 27001 and HIPAA.
Build scalable automated security processes by replacing manual tasks with scripts, APIs, and AI-powered solutions.
Our partner is a technology company focused on building secure, scalable systems. They operate with a remote, collaborative culture emphasizing ownership, transparency, and continuous improvement, with around 50–300 employees.
Support the ISO 27001 program by maintaining audit readiness, running evidence collection, and managing access reviews.
Perform recurring security operations including vulnerability scanning, risk assessments, and vendor reviews.
Collaborate cross-functionally to harden identity and access management, respond to security questionnaires, and support AI governance initiatives.
Didomi is a consent management platform that helps companies manage user consent and data privacy. The company is a growing SaaS organization with a collaborative culture, emphasizing automation and efficiency.
Monitor and analyze security events, lead incident response, and maintain SIEM and EDR tools.
Ensure compliance with HIPAA, HITECH, and other healthcare regulations through risk assessments and audits.
Conduct vulnerability scans, manage remediation, and support secure design reviews for systems and applications.
LUX Infusion reimagines infusion care to be more human, supportive, and connected. As a clinician-led, U.S.-based organization, we put people first with a commitment to inclusion, diversity, equity, and advancement (IDEA).
Act as a trusted consultant guiding clients through complex security and compliance challenges.
Develop security strategies aligned with frameworks like CMMC, NIST 800-171, and NIST 800-53.
Design and implement AWS and/or GCP security tools with deep expertise in cloud security.
Aprio is a Top 20 CPA and advisory firm that provides compliance and advisory services to fast-growing industries. With over 3,200 team members across 40 US and international offices, they foster a top-rated culture and collaborative environment.
Lead the governance, risk, and compliance function across security policies, standards, risk management, audits, and third-party risk.
Own audit readiness and ongoing compliance programs across frameworks such as SOC 2, ISO 27001, GovRAMP, PCI DSS, HIPAA, NIST CSF, and more.
Manage third-party and supply chain risk management, including vendor security reviews, due diligence, and remediation tracking.
Accela provides government software solutions to improve efficiency, increase citizen engagement, and enable thriving communities. They have been an industry leader for nearly 20 years and are committed to diversity, equity, and inclusion.
Own and continuously improve the company's compliance program across SOC 2, GDPR, ISO 27001, and other frameworks.
Lead external audits, develop security policies, and partner with engineering teams to implement controls.
Manage third-party risk, respond to customer security questionnaires, and build compliance metrics for executive reporting.
10a Labs is the safety and threat-intelligence layer trusted by frontier AI labs, AI unicorns, Fortune 10 companies, and leading global technology platforms. They are a high-growth technology company with a collaborative culture, operating in a fast-moving environment.
Manage and implement complex controls frameworks for large systems consisting of Cloud infrastructure and SaaS services.
Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services.
Conduct risk assessments across business units and processes, identifying risk findings and recommending remediation strategies.
Virtru is a data protection platform that enables secure sharing without sacrificing security or privacy. Backed by top venture capital firms, the company helps Fortune 500 companies and government agencies achieve true data security with freedom to share.
Lead security discovery workshops and translate high-level architectural requirements into actionable security roadmaps.
Design end-to-end cloud security frameworks and document controls for SOC 2 and HITRUST compliance.
Establish governance and security processes for AI and manage vulnerability remediation with development teams.
Ollion is a global technology partner that helps organizations solve their toughest business challenges in AI, data, and cloud. They are a remote-first, globally distributed team focused on making a world of difference through innovation and collaboration.
Support and scale the Assurance & Compliance function through an engineering-driven, automation-first approach.
Partner with Engineering, Security, Legal, and other teams to support compliance programs and audit readiness.
Help transform compliance into a continuous, measurable capability embedded into operations.
Flock builds technology that reduces crime and protects privacy, partnering with cities, businesses, schools, and neighborhoods. With over $1B in funding and an $8.3B valuation, the company is a high-performance team united by urgency, ownership, and a shared commitment to meaningful impact.
Manage internal audits and support external compliance assessments across business functions.
Perform gap analyses and track remediation actions for compliance frameworks.
Maintain and improve compliance documentation, policies, and risk registers.
Our partner is a growing SaaS organization serving global industries. It fosters a collaborative and inclusive culture with a focus on employee development and well-being.
Perform enterprise risk assessments using NIST CSF, SOC 2, and CIS frameworks.
Develop and execute security awareness programs including training and phishing simulations.
Support governance and control management by maintaining policies and control libraries.
Protective helps protect customers against life's uncertainties by providing insurance and peace of mind. The company offers a collaborative environment with a focus on employee wellbeing and work-life balance.
Lead implementation and maintenance of enterprise cybersecurity programs across cloud and corporate environments.
Manage compliance initiatives aligned with frameworks such as NYDFS Cybersecurity Regulation 500 and ISO 27001.
Conduct vulnerability assessments, coordinate penetration testing, and drive timely remediation of identified risks.
Jobgether is an AI-powered job matching platform that connects candidates with hiring companies. They operate with a remote team and use technology to streamline the application process.
Lead the design and governance of control frameworks and risk workflows within the GRC platform, ensuring alignment with compliance requirements like HIPAA, HITRUST, and NIST.
Oversee risk assessments, control testing, and vendor evaluations to identify and mitigate security risks.
Manage policy lifecycle, audit coordination, and reporting on control effectiveness and risk indicators.
USAP is a healthcare organization focused on providing anesthesia services and patient safety. It is a growing company with a culture of security, compliance, and collaboration.
Lead customer security reviews, RFPs, RFIs, and questionnaires to keep deals moving.
Own SOC 2 Type II program management and the customer-facing trust portal.
Author security policies and manage AI compliance frameworks.
Sparkrock helps social benefit organizations like nonprofits, school boards, and government agencies reach their full potential through technology. They are a best-in-class, 100% remote organization with a focus on culture and growth, serving over 150,000 users.
Monitor and investigate security alerts in AWS infrastructure, respond to incidents affecting the product platform.
Automate security operations using Python or Go, and configure tools like WAF, GuardDuty, and Security Hub.
Collaborate with engineering teams to prioritize vulnerabilities, conduct threat modeling, and guide secure coding practices.
Tripadvisor connects global travelers to experiences worth sharing through its brands, technology, and marketplaces. As a publicly traded company with a portfolio including Viator and TheFork, it fosters a culture of collaboration, trust, and remote-friendly flexibility.
RainFocus provides an industry-disrupting event management platform for Fortune 500 companies like Adobe, Cisco, and IBM. The company is well-funded, rapidly growing, and fosters a culture of innovation, teamwork, and fun.
Lead global security and compliance programs across multiple business units.
Manage SOC 2 Type II audits and customer trust initiatives.
Drive AI governance and security awareness training efforts.
The partner company is a technology organization that prioritizes security and compliance to build customer trust. It operates in a growing, multi-business environment with a remote-first culture and a focus on operational excellence.
Design and implement security controls across Mable's platform, applications, and infrastructure
Embed security into the software development lifecycle through design reviews, threat modeling, and code reviews
Lead vulnerability assessments and coordinate remediation efforts across engineering teams
Mable is one of Australia's leading healthtech platforms connecting people with disability and older Australians with independent support workers. With over 25 million hours of support facilitated since 2014, they have been recognized on AFR's Top 100 and Deloitte Tech Fast 50, fostering a purpose-driven and dynamic team environment.
Lead end-to-end third-party audits, evidence collection, and compliance onboarding for new products and features.
Partner with cross-functional teams to design and validate internal controls across SOX, SOC, HIPAA, and PCI frameworks.
Drive continuous improvement by standardizing processes, reducing manual effort, and collaborating on automated compliance monitoring.
Jobgether uses AI-powered matching to streamline job applications. They are a company focused on connecting candidates with hiring employers through automated shortlisting, with a transparent and flexible work culture.
Own Filevine's FedRAMP 20x strategy and execution, including evidence automation, continuous monitoring, and certification readiness.
Drive the security compliance and trust program across FedRAMP, SOC 2, ISO, HIPAA, and PCI-DSS, converting obligations into engineering work.
Lead cross-functional alignment and executive reporting to ensure compliance, privacy, and security priorities are shipped on time.
Filevine is a Legal AI company delivering Legal Operating Intelligence for the future of legal work. Fueled by a team of exceptional collaborators and innovators, Filevine’s rapid growth has earned AI awards and recognition from Deloitte and Inc. as one of the most innovative and fastest-growing technology companies in the country.