Own the security compliance program end-to-end, including audits, customer trust, vendor risk, and vulnerability management.
Automate evidence collection and control monitoring to be audit-ready year-round, not just during the August–November season.
Act as the external security face for enterprise prospects and translate AI regulatory changes into requirements.
Ada is an AI customer service company that helps enterprises automate customer conversations with AI agents. Founded in 2016, we've powered over 5.5 billion interactions and raised over $250M from top investors.
Lead security and IT for Cardlytics, overseeing security engineering, IT operations, and compliance for a fully remote team.
Manage SOX/SOC 2 compliance, identity and access management, and cloud security across AWS environment.
Drive AI adoption company-wide while partnering with executives and the board to align security priorities with business strategy.
Cardlytics is a purchase intelligence and incentives platform that helps businesses attract and incentivize consumers through digital reward programs. As a public company (NASDAQ: CDLX) with a lean, high-trust team, they prioritize integrity and growth.
Own the security program day-to-day, pursuing ISO 27001 certification and FedRAMP readiness.
Manage GRC tool (Vanta), maintain SOC 2 Type II, and run vendor security reviews.
Answer customer security questionnaires and ensure compliance documents are accurate.
Massed Compute is building a modern GPU cloud platform for AI and high-performance compute workloads. We are a lean, ambitious team operating in one of the most important technology markets in the world.
Lead control implementation and audit readiness across multiple compliance frameworks including FedRAMP, SOC 2, ISO 27001, and TISAX.
Partner with engineering, product, and security teams to translate compliance requirements into practical controls.
Represent the compliance program in customer-facing discussions and security due diligence reviews.
Rescale is pioneering the future of engineering and scientific discovery through intelligent automation, applied AI, and data management. We are a diverse, collaborative, and mission-driven team that unlocks innovation across aerospace, energy, life sciences, and manufacturing industries.
Own the security boundary of Percy, including vault enclave and sandbox isolation for AI agents processing live PII.
Assess and harden encryption, key management, access control, and the append-only audit ledger across AWS Nitro Enclaves.
Drive product-security controls for SOC 2, PCI DSS, and GDPR audits, and run technical pentests.
Footprint builds Percy, an AI agent that automates financial crime investigations for banks and fintechs. Backed by QED, Index, and Box Group, the company is small, senior, and ships fast, having 5x'd revenue last year.
Own the internal technology backbone for a fully remote, global team, from device management and identity to SaaS administration and compliance.
Design and automate IT systems and workflows to scale as Yuno grows across 190+ countries, replacing manual work with scripting and automation.
Build and maintain security and compliance controls for SOC 2, PCI DSS, and ISO 27001, partnering with Security on vendor reviews.
Yuno is the AI-native operating system of global commerce, powering financial infrastructure for enterprise merchants, banks, and wallets. The company is a fully remote, global team serving over 1,000 payment methods and 460+ integrations across 190+ countries.
Manage the Compliance and Security workstream, coordinating SOC 2, ISO 27001, GDPR, and related audit-readiness activities.
Build and maintain execution plans with clear owners, milestones, dependencies, risks, and decision points.
Facilitate workshops, track evidence, and escalate risks to keep audits on schedule.
Miratech is a global IT services and consulting company that helps visionaries change the world through digital transformation. With nearly 1000 full-time professionals across 25+ countries, the company maintains a culture of Relentless Performance and has achieved over 99% project success since 1989.
Partner with the CISO to define and execute Sardine's security strategy and roadmap.
Help identify and prioritize the highest-risk areas across the business, including application security, compliance, and incident response.
Support customer-facing security conversations and represent Sardine's security program to auditors and stakeholders.
Sardine is the leading agentic risk platform for fighting financial crime, providing an integrated solution to stop fraud and automate fraud operations. The company is a fast-growing startup with a remote-first culture and hubs in the US, Canada, and Brazil.
Lead SOC 1 and SOC 2 examinations and support end-to-end SOX planning.
Partner with Security, Engineering, Data, and Finance to implement scalable IT controls.
Conduct controls assessments, drive remediation, and produce auditor-ready documentation.
Kraken is one of the world's longest-standing crypto platforms, trusted by over 10 million individuals and institutions globally, offering spot trading, margin, futures, staking, and OTC services. Part of Payward, it is powered by people from around the world and celebrates diverse talents, backgrounds, and unique perspectives.
Automate governance, risk, and compliance frameworks including ISO 27001, PCI-DSS, DORA, and UK Cyber Essentials.
Engineer GRC workflows with internal systems to support compliance by design.
Translate compliance requirements into technical specifications for engineering teams and non-technical stakeholders.
Pleo builds spend solutions that make managing money seamless for finance teams and employees. They are a driven, progressive team of 850+ people from over 100 nationalities, committed to delivering the future of business spending.
Manage IT Compliance program and strategy, including SOX ITGC and ITAC scoping, risk assessment, and testing readiness.
Conduct control design assessments and effectiveness testing, driving remediation and validation with cross-functional teams.
Own ITAC portfolio, system inventory, and compliance outcomes, embedding automation and guiding AI-enabled technology adoption.
HighLevel is an AI-powered business operating system for agencies, entrepreneurs, and SMBs to build, automate, and scale. With over 2,000 team members across 10+ countries, it operates as a global, remote-first organization known for speed and ownership.
Lead the market-facing security and compliance voice as Sprinto's first dedicated Field CISO in the US.
Build and deepen the advisory board into a real community of security leaders.
Walk into deals as a practitioner peer, shaping prospect vision and closing late-stage objections.
Sprinto is an Autonomous Trust Platform that centralizes trust requirements across security frameworks, vendors, and customers. Backed by top-tier investors, it is trusted by over 4,000 organizations across 75 countries and fosters a remote culture of ownership and collaboration.
Lead the design and evolution of a multi-framework compliance offering for European businesses.
Drive end-to-end ISO 27001 implementations and manage a team of compliance specialists.
Act as a senior security partner to customers, sales, and product teams.
This company provides a security and compliance platform that helps modern businesses achieve certifications across frameworks like ISO 27001 and SOC 2. It is a fast-growing, remote-first technology environment with a strong emphasis on collaboration and team connection.
Own and drive the compliance roadmap across multiple frameworks like ISO 27001, TISAX, and SOC 2.
Implement ISO 27001 end-to-end for customers and mentor junior compliance specialists.
Act as the senior compliance voice for customers, auditors, and product, partnering with CS and founders.
Secfix automates security compliance in Europe, helping companies achieve ISO 27001, GDPR, TISAX, and SOC 2 quickly and easily. We are a 100% remote team with hubs in Munich, Berlin, and London, backed by top VCs with a high-performing, ownership-driven culture.
Maintain and mature the ISMS, including the Statement of Applicability, risk treatment plans, and Management Review Meetings.
Support ISO 27001 and SOC 2 Type 2 audits from readiness through certification, including evidence preparation.
Lead the security policy program and collaborate across teams to translate compliance requirements into practical practices.
Mozilla Corporation is a non-profit-backed tech company behind Firefox, focused on making the internet better. With 225+ million monthly users, it is a wholly owned subsidiary of the Mozilla Foundation, promoting privacy, AI, and open-source.
Own cybersecurity strategy and operations across all AIOS entities.
Lead identity, access, endpoint, application, and infrastructure security.
Drive risk and compliance for HIPAA, GDPR, SOC 2, and ISO 27001.
AIOS is building the world's first full-stack AI doctor, serving 150k monthly patients through Bolt Pharmacy. We're a profitable, founder-led company scaling from $10M to $350M ARR in 12 months, with a culture of extreme ownership and speed.
Lead and mature the GRC program across SOC 2, ISO 27001, PCI DSS, and other compliance frameworks, including audit preparation and evidence collection.
Own the annual security risk assessment process using NIST SP 800-30 methodology, including stakeholder interviews and risk scoring.
Drive security awareness training, AI governance, and Data Loss Prevention program development while collaborating with cross-functional teams.
RainFocus is a rapidly growing software company that provides an industry-disrupting event management platform for Fortune 500 companies like Adobe, Cisco, and IBM. The company is well-funded, growing fast, and building a culture that is challenging, fun, and exciting.
Administer corporate identity, access, and user lifecycle across Google Workspace and business applications.
Manage endpoint security, device provisioning, and compliance controls to maintain audit readiness.
Provide IT support and maintain documentation for procedures and runbooks.
Epic Kids is the leading digital reading platform for children under 12, providing access to thousands of books and educational content. They are a collaborative, fast-paced global team passionate about improving children's literacy.
Own Eon's overall security strategy, roadmap, and budget, briefing the CEO and board.
Build and lead the security function, hiring and developing the team as the company scales.
Partner with engineering and product to embed secure-by-design principles and own detection, response, and vulnerability management.
Eon is transforming cloud backups into useful, active assets. Backed by leading investors, it has raised $500M and reached a $4B valuation, fostering a fast-paced startup culture.
Serve as the security subject matter expert on customer calls, owning responses to security questionnaires and due diligence requests.
Operate and tune security tools including CrowdStrike EDR, Entra ID identity controls, and vulnerability management.
Drive the SOC 2 Type 2 compliance program using Vanta, maintaining controls, policies, and vendor risk reviews.
AssetWatch is a remote-first industrial condition monitoring company that helps manufacturers predict equipment failure before it happens. The team includes world-renowned engineers and distinguished business leaders, united by a goal to build the future of predictive maintenance.