Lead ISO 27001 and SOC 2 audit cycles end-to-end, owning compliance and audit.
Own customer trust by responding to security questionnaires and representing InfoSec to enterprise clients.
Drive risk management, vendor security, and incident response while building AI-assisted workflows.
We are the first AI-native Employee Experience Platform, helping organizations unlock inspirational communication. Our diverse team of 550+ employees supports over 1,500 customers, and we are a unicorn company valued at over $1 billion.
Lead the design, implementation, and maintenance of Hyland's enterprise ISO governance and certification program across multiple certifications, business units, and regions.
Drive strategic expansion of ISO scope, including advanced certifications like TISAX and C5, and establish governance models and control ownership across teams.
Measure and report ISO program health through metrics, dashboards, and reporting, while providing leadership and mentorship to compliance specialists.
Hyland is the pioneer of the Content Innovation Cloud, delivering enterprise intelligence through solutions that unlock actionable insights and drive automation. Trusted by thousands of organizations worldwide, including many Fortune 100 companies, Hyland has nearly 4,000 employees and fosters an employee-centric, inclusive culture.
Build and maintain compliance frameworks in the Secfix platform, including ISO 27001, TISAX, SOC 2, GDPR, and more.
Own internal audits end-to-end for customers, ensuring they are prepared for external audits.
Collaborate with product and engineering to translate compliance gaps into structured product work and enhance platform quality.
Secfix automates security compliance for European companies, helping them achieve ISO 27001, GDPR, TISAX, and SOC 2 efficiently. They are a 100% remote team with hubs in Munich, Berlin, and London, recently raised a $12M Series A, and are backed by top VCs.
Own global certification programs like ISO 27001 and SOC 2, and advise engineering teams on secure development.
Collaborate directly with engineers to audit cloud infrastructure, CI/CD pipelines, and AI-driven security controls.
Assess risks of emerging technologies and drive continuous compliance improvements across the organization.
Picus Security is an exposure validation company that proves what attackers can exploit and what defenses stop, turning exposures into defensible decisions. As a fast-growing global remote team, it values continuous security validation and has a 95% recommendation rate.
Maintain and enhance Anovia's ISO/IEC 27001 ISMS, including policies, controls, risks, and audit coordination.
Support SOC 2, HIPAA, and other compliance programs, including vendor assessments, vulnerability management, and incident response.
Lead ambiguous technical and operational initiatives from planning through implementation, coordinating stakeholders and driving completion.
Anovia is an industry-leading technology outsourcing support provider specializing in workflow and knowledge processes, technical support, helpdesk, and multilingual services. With over 200 experts globally, we serve Fortune 500 companies and value growth, learning, and work-life balance.
Act as part vCISO and account manager, guiding clients through security and compliance programs.
Assess security posture, provide recommendations, and design programs using NIST, SOC 2, and ISO 27001.
Liaise with auditors and internal teams to translate programs into policies, procedures, and configurations.
Oneleet provides a platform for companies to build, manage, and monitor cybersecurity programs and achieve SOC 2 and ISO 27001. It raised a $33M Series A and is a fast-growing, remote-first team with an opinionated culture.
Lead and expand the security function across application security, security compliance, infrastructure & cloud security, and business application security.
Build and run the AppSec program with AI-assisted code review and integrate security into CI/CD pipelines.
Own ISO 27001 and SOC 2 certification, manage audits, and secure cloud and business applications.
Constructor provides an all-in-one platform for education and research using machine intelligence and data science to address educational challenges like access inequality and low engagement. The company is led by a gender-balanced board and fosters an inclusive culture, though employee size is not specified.
Prepare and be part of internal and external audits of a cloud platform within a dedicated team of specialists.
Ensure compliance requirements for various IT audits and create and map requirements catalogs of different standards.
Act as a trusted advisor to cross-functional teams on information and IT security during audits of the platform.
Deutsche Telekom IT Solutions is a subsidiary of the Deutsche Telekom Group providing a wide portfolio of IT and telecommunications services. With more than 5,300 employees across four Hungarian sites, it has been recognized as Hungary's most attractive employer in 2025.
Lead and mature the information security program, building on ISO 27001 and SOC 2 foundations.
Develop and operationalize security policies, risk management, and incident response.
Partner with Engineering and Product to integrate security into software development.
This is a partner company role managed by Jobgether, a platform that uses AI-powered matching to connect candidates with hiring companies. The partner is a rapidly scaling SaaS and cloud technology environment, with a growing security team and established ISO 27001 and SOC 2 programs.
You will prepare and participate in internal/external audits of an Open cloud platform within a dedicated specialist team.
You will ensure compliance requirements for various IT audits and map requirements catalogs of different standards such as SOC1, SOC2, C5, and ISO.
You will act as a trusted advisor for cross-functional teams on information and IT security during audits, answer stakeholder questions, and escalate risks.
Deutsche Telekom IT Solutions Slovakia provides innovative information and communication technology services. The company has grown to more than 3,900 employees and is the second largest employer in eastern Slovakia.
Lead cloud security, compliance, and infrastructure automation across AWS, Kubernetes, and CI/CD pipelines.
Translate HIPAA and SOC 2 requirements into practical technical controls and support audits.
Collaborate with Engineering and Data teams to automate workflows and maintain reliable system monitoring.
Synapticure is the largest specialty care and life sciences company for neurodegenerative diseases like Alzheimer's, Parkinson's, and ALS, operating in all 50 states. Founded by patients and caregivers, it is a remote-first company with a team across the US, driven by a mission to transform care and research.
Support day-to-day execution of IT risk, compliance, privacy, and governance programs.
Review client agreements and security questionnaires, coordinating redlines with legal.
Manage control evidence, vendor risk, data retention, and compliance policies.
Our partner provides IT risk, compliance, privacy, and governance services for clients. They have a small, collaborative team and value diverse perspectives and authentic contributions.
Implement and maintain AWS security configurations across development, staging, and production environments.
Operate SAST, DAST, and SCA tools integrated into CI/CD pipelines to remediate vulnerabilities.
Support compliance efforts such as SOC 2 Type II and ISO 27001 audits and improve security processes.
Pacvue is a leading software suite for eCommerce advertising, sales, and intelligence, helping brands grow on Amazon, Walmart, Instacart, and other marketplaces. The team is energetic, passionate, and focused on innovation, with a mission to help brands and sellers succeed.
Design and maintain secure architectures across AWS, Azure, and GCP with infrastructure-as-code and policy-as-code enforcement.
Secure AI/ML pipelines and LLM applications, addressing OWASP Top 10 for LLMs and implementing guardrails and content-filtering controls.
Drive security operations, including SIEM monitoring, incident response, and supporting HIPAA/HITRUST/SOC 2 compliance.
Reveleer delivers a unified platform for risk adjustment, quality improvement, clinical intelligence, and member management for health plans and provider organizations in value-based care. Trusted by 80+ customer organizations nationwide, the company fosters a collaborative, compliance-focused culture with transparent, human-in-the-loop AI at its core.
Lead and grow a small security team while owning Canary's security and compliance program end-to-end.
Serve as the primary security voice to customers, partners, and auditors, translating security posture for varied audiences.
Set technical direction for security tooling and stay hands-on in architecture and threat-model reviews.
Canary Technologies is a leading agentic AI platform for hotel and guest management, powering digital infrastructure for over 20,000 hotels in 125+ countries. With nearly $200M raised, they are a top-funded hotel tech company, recognized for growth and workplace excellence.
Guide customers through setup and go-live, ensuring they reach their first audit milestone.
Collaborate with founders, CTOs, and security teams to map goals to actionable milestones.
Own next steps when stuck, partnering with internal teams to keep the project moving.
Sprinto is an autonomous trust platform that centralizes compliance, audits, risk management, and more for organizations worldwide. Backed by top investors, it serves over 4,000 companies in 75+ countries and fosters a remote-first, ownership-driven culture.
Perform cybersecurity and technology risk assessments across systems, vendors, and business processes.
Support compliance with SOC 2, HIPAA, HITRUST, and PCI DSS frameworks.
Manage third-party risk assessments and track remediation of security findings.
Jobgether is a platform that uses AI-powered matching to connect candidates with job opportunities. They partner with companies to manage applications and hiring processes, offering remote roles and streamlined recruitment.
Own SOC 2 end to end, run auditor relationships, and keep the program audit-ready year round.
Run risk management, policy, BC/DR, and vendor/subprocessor programs with automated evidence.
Lead security questionnaires and TPRM reviews to close deals and scale compliance across frameworks.
Aegis AI is a security company founded by ex-Google engineers who built Safe Browsing and reCAPTCHA, now stopping adversarial AI attacks. The team is flat, flexible, and fast, with clear KPIs and a focus on owning decisions while moving at real-world speed.