Own end-to-end supply chain and freight operations, from coordinating international shipments to generating shipping labels.
Manage relationships with logistics integrators and develop KPIs for third-party vendors.
Architect long-term logistics strategy while handling daily tactical execution.
Quartermaster specializes in defense and intelligence solutions that enhance national and global security. They are a fast-paced, high-growth startup with a collaborative, mission-driven culture.
Own IRAP and ISMAP program strategy and execution across Australia and Japan.
Coordinate with regional assessors and government agencies to maintain compliance.
Design and maintain compliance documentation and manage continuous monitoring.
For over 20 years, Smartsheet has empowered teams to manage work seamlessly and scale solutions smarter. They are now uniting human teams with AI agents to automate tasks and uncover insights.
Manage vendor lifecycle, procurement, and compliance for security partnerships across large-scale tech infrastructure.
Coordinate with cross-functional teams to create SOWs, track purchase orders, and monitor vendor spending.
Develop vendor performance metrics and KPIs to support continuous improvement and operational efficiency.
They are a partner company focused on strengthening vendor operations and security partnerships across large-scale technology infrastructure. They are a fast-growing organization that values security and operational excellence, with a collaborative team environment.
Serve as the security subject matter expert on customer calls, owning responses to security questionnaires and due diligence requests.
Operate and tune security tools including CrowdStrike EDR, Entra ID identity controls, and vulnerability management.
Drive the SOC 2 Type 2 compliance program using Vanta, maintaining controls, policies, and vendor risk reviews.
AssetWatch is a remote-first industrial condition monitoring company that helps manufacturers predict equipment failure before it happens. The team includes world-renowned engineers and distinguished business leaders, united by a goal to build the future of predictive maintenance.
Drive compliance, risk management, and security assurance as a GRC Specialist.
Own third-party risk management and maintain security documentation.
Support audits, self-assessments, and customer security inquiries.
Avid provides technology and collaboration tools for creators to entertain, inform, educate, and enlighten the world. The company fosters a culture of passion, customer focus, and innovation, with employees who believe in their mission.
Lead the design and evolution of a multi-framework compliance offering for European businesses.
Drive end-to-end ISO 27001 implementations and manage a team of compliance specialists.
Act as a senior security partner to customers, sales, and product teams.
This company provides a security and compliance platform that helps modern businesses achieve certifications across frameworks like ISO 27001 and SOC 2. It is a fast-growing, remote-first technology environment with a strong emphasis on collaboration and team connection.
Review vendor SOC 2 reports, security questionnaires, and penetration-testing evidence.
Identify risks and inconsistencies to improve AI-generated security assessments.
Develop evaluation rubrics and golden responses for security evaluations.
Jobgether is a job platform that uses AI-powered matching to connect candidates with opportunities. They emphasize efficiency and fairness in the hiring process, partnering with companies to manage applications.
Define and execute short- and long-term security strategy, governance, and operations across the organization.
Lead security initiatives covering monitoring, incident response, cloud protection, and application security.
Collaborate with engineering, compliance, and leadership teams to balance strong protection with seamless experiences.
A fast-growing global technology organization in the fintech sector. The company fosters a collaborative international environment with talented teams across multiple regions.
Become a trusted partner for commercial customers, helping them leverage Sayari products to analyze and measure supply chain risk.
Ensure compliance with policies while conducting screening and adjudication support on business and supply chain partners.
Create and deliver compliance reports and case analysis to commercial stakeholders on their risk.
Sayari is the judgment infrastructure for trustworthy AI in economic security and commercial risk, providing a Commercial World Model that resolves 11.7B+ primary-source records from 250+ jurisdictions. Headquartered in Washington, D.C., with offices in London, Singapore, Tokyo, and Tel Aviv, the company is trusted by U.S. Customs and Border Protection and Fortune 500 enterprises, employing a global team of experts.
Lead the development and implementation of security strategies, policies, and procedures.
Architect secure systems and collaborate with engineering teams to integrate security throughout the software development lifecycle.
Conduct risk assessments, incident response, and mentor junior engineers to promote security awareness.
Gemini is a global crypto and Web3 platform founded in 2014, offering secure crypto products and services to individuals and institutions in over 70 countries. The company is publicly traded with a mission to bridge traditional finance with the emerging cryptoeconomy, fostering a diverse team that prioritizes trust and security.
You will own end-to-end compliance audits (SOC 1, SOC 2, HITRUST) and manage compliance automation platforms.
You will run the vulnerability management program and remediate security findings across AWS.
You will support security incident response, fraud investigations, and third-party risk assessments.
We are transforming post-acute care as the leading digital ordering platform for medical equipment and supplies. We connect major health systems, health plans, and suppliers to help patients get life-saving products at home, with a network of 300,000+ clinicians and 3,000+ supplier locations across all 50 states.
Manage all transportation channels, develop vendor relationships, and track performance and costs.
Drive freight forecasts, budgeting, and cross-functional process improvements with internal teams and 3PLs.
Lead strategic initiatives for cost savings, on-time delivery, and oversee claims and vendor performance.
Bulletproof crafts products that fuse wellness and performance, creating a brand in health and nutrition. They are a passionate, entrepreneurial team backed by Grupo Mariposa, a fast-growing conglomerate, distributed across eCommerce, Amazon, and retail partners nationwide.
Improve and maintain AWS security configurations including IAM, GuardDuty, and CloudTrail.
Manage security tooling across the organization including EDR, MDM, DLP, and respond to SOC alerts.
Lead vulnerability management activities, coordinate patching, and support compliance assessments.
This company is a fully remote, international technology firm specializing in cloud and operational security. It has a diverse team of over 40 nationalities and a culture that values curiosity, ownership, and continuous improvement.
Own the security program day-to-day, pursuing ISO 27001 certification and FedRAMP readiness.
Manage GRC tool (Vanta), maintain SOC 2 Type II, and run vendor security reviews.
Answer customer security questionnaires and ensure compliance documents are accurate.
Massed Compute is building a modern GPU cloud platform for AI and high-performance compute workloads. We are a lean, ambitious team operating in one of the most important technology markets in the world.
Own the security compliance program end-to-end, including audits, customer trust, vendor risk, and vulnerability management.
Automate evidence collection and control monitoring to be audit-ready year-round, not just during the August–November season.
Act as the external security face for enterprise prospects and translate AI regulatory changes into requirements.
Ada is an AI customer service company that helps enterprises automate customer conversations with AI agents. Founded in 2016, we've powered over 5.5 billion interactions and raised over $250M from top investors.
Lead the security design, implementation, and controls for Jasper’s AI infrastructure and AI-powered internal workflows.
Own threat modeling for AI-specific risks and design controls for validating, logging, and auditing AI outputs.
Build security tooling and automated checks to let internal teams adopt AI capabilities without slowing down.
Jasper is the marketing agents platform that helps enterprises orchestrate AI agents for marketing execution. Founded in 2021, Jasper has team members across the U.S., Australia, and France, and is trusted by hundreds of enterprises including nearly 20% of the Fortune 500.
Maintain and mature the ISMS, including the Statement of Applicability, risk treatment plans, and Management Review Meetings.
Support ISO 27001 and SOC 2 Type 2 audits from readiness through certification, including evidence preparation.
Lead the security policy program and collaborate across teams to translate compliance requirements into practical practices.
Mozilla Corporation is a non-profit-backed tech company behind Firefox, focused on making the internet better. With 225+ million monthly users, it is a wholly owned subsidiary of the Mozilla Foundation, promoting privacy, AI, and open-source.
Own and drive the compliance roadmap across multiple frameworks like ISO 27001, TISAX, and SOC 2.
Implement ISO 27001 end-to-end for customers and mentor junior compliance specialists.
Act as the senior compliance voice for customers, auditors, and product, partnering with CS and founders.
Secfix automates security compliance in Europe, helping companies achieve ISO 27001, GDPR, TISAX, and SOC 2 quickly and easily. We are a 100% remote team with hubs in Munich, Berlin, and London, backed by top VCs with a high-performing, ownership-driven culture.
Embed security into every phase of the SDLC and champion secure design for Gen AI and agentic AI tools.
Perform secure code reviews, threat modeling, and establish secure API patterns across engineering teams.
Operate the application vulnerability management lifecycle and communicate risk to engineering and business leaders.
GameChanger builds a platform for youth sports, helping families elevate the next generation through community and technology. They are a remote-first, dynamic tech company based in New York City, solving major challenges in youth sports.