Own the full technology and security remit, including enterprise infrastructure, security, identity, applications, and workplace technology.
Lead and grow three functions: IT & Security Operations, Cloud Platform Engineering, and GRC.
Mature security operations with automation and serve as customer zero for the company's own platform.
UpGuard builds a Cyber Risk Posture Management platform that integrates security ratings, threat intel, and agentic AI to help organizations manage cyber risk. They are a certified Great Place to Work with a lean, high-growth culture and a global remote team.
Own internal IT, security, and compliance strategy across the organization.
Lead the migration from MSP to an in-house IT function and manage a SecOps team.
Drive enterprise incident response, business continuity, and disaster recovery planning.
Karbon is the global leader in AI-powered practice management software for accounting firms. The company is well-funded, ranked #1 on G2, and has a people-first culture recognized with Great Place To Work certification and on Fortune's Best Small Workplaces list.
Lead vulnerability management and SOC 2 compliance across SaaS products and cloud infrastructure.
Harden Azure and Microsoft security tooling (Defender, Intune) and respond to security alerts.
Partner with engineering, IT, and legal to drive secure SDLC, policies, and customer security reviews.
HSP Group is a premier provider of global expansion services, helping companies with legal setup, HR, payroll, compliance, and tax across international markets. The company partners with scale-ups and innovative technology firms to reduce risk and scale faster, fostering a trusted-partner culture.
Lead the GRC strategy, shifting from bureaucratic to strategic enabler focused on real business risk.
Manage cyber risk quantification, third-party risk, and continuous compliance programs.
Oversee information security governance, AI governance, and IAM governance, reporting to the CISO.
Grupo QuintoAndar is the largest real estate ecosystem in Latin America, covering all phases of the housing journey. The company is valued at over USD 5.1 billion, with a culture of innovation, collaboration, and high performance working with top professionals.
Own cybersecurity strategy and operations across all AIOS entities.
Lead identity, access, endpoint, application, and infrastructure security.
Drive risk and compliance for HIPAA, GDPR, SOC 2, and ISO 27001.
AIOS is building the world's first full-stack AI doctor, serving 150k monthly patients through Bolt Pharmacy. We're a profitable, founder-led company scaling from $10M to $350M ARR in 12 months, with a culture of extreme ownership and speed.
Lead Enterprise Security Engineering and SecOps, directing a high-performing team while owning operational defense.
Architect Zero Trust Architecture transition, implementing micro-segmentation and identity-based controls.
Oversee 24/7 MDR/SOC partnerships, incident response, and risk-based vulnerability management.
Virta Health is on a mission to reverse metabolic disease in one billion people through innovations in technology, personalized nutrition, and virtual care delivery. They have raised over $350 million and partner with large health plans, employers, and government organizations, with a values-driven culture emphasizing ownership, transparency, and evidence-based decision-making.
Own the Secure + MDR offering end-to-end, including security operations, compliance programs, and client-facing credibility.
Manage SecOps tooling, incident response, and compliance automation platforms such as Drata, Vanta, or Secureframe.
Build and lead the security operations team, establishing metrics and reporting for leadership and board.
van den Boom & Associates is a managed security service provider (MSSP) building a security-led practice for life sciences clients. As a growing organization, they seek a hands-on leader to own their Secure + MDR offering and establish security operations from the ground up.
Lead end-to-end response to product security incidents, from discovery to disclosure.
Own and evolve 1Password's PSIRT function, including severity frameworks and playbooks.
Drive coordinated vulnerability disclosure and partner with external security researchers.
1Password is a cybersecurity company providing enterprise password management and Unified Access Management, trusted by over 180,000 businesses. With $400M ARR and a remote-first culture, it values collaboration, transparency, and innovation.
Develop and implement effective cybersecurity strategies aligned with client objectives and industry best practices.
Design and implement advanced security controls and technologies, including SIEM, DLP, and endpoint protection.
Lead complex cybersecurity projects, manage client relationships, and contribute to thought leadership.
Avertium provides cybersecurity consulting and managed security services, focusing on Microsoft Cloud and other platforms. The company fosters a culture of remote teamwork, self-discipline, and innovation, leveraging industry best practices to deliver cost-effective solutions.
Design and evolve security architecture across cloud infrastructure, applications, and CI/CD pipeline.
Conduct threat modeling, architecture reviews, and define secure design patterns for GCP-based environment.
Evaluate emerging technologies like AI and GenAI platforms to identify risks and define secure adoption patterns.
Airship provides a no-code, AI-powered platform for brands like Alaska Airlines and BBC to create personalized cross-channel customer experiences. The company fosters a digital-first, flexible remote culture with a collaborative team across time zones.
Lead security and IT for Cardlytics, overseeing security engineering, IT operations, and compliance for a fully remote team.
Manage SOX/SOC 2 compliance, identity and access management, and cloud security across AWS environment.
Drive AI adoption company-wide while partnering with executives and the board to align security priorities with business strategy.
Cardlytics is a purchase intelligence and incentives platform that helps businesses attract and incentivize consumers through digital reward programs. As a public company (NASDAQ: CDLX) with a lean, high-trust team, they prioritize integrity and growth.
Lead, coach, and develop a team of security engineers and analysts, setting clear expectations and building capabilities.
Guide the team through vulnerability management, incident detection and response, and identity and access management.
Drive execution of multi-year security initiatives, partnering with senior stakeholders to develop policies and plans.
We create innovative learning materials and world-class guest experiences for teachers, parents, and children. Since 1954, we have grown into a global community with a thriving e-commerce business, multiple catalogs, over 50 stores, and a national sales force, and we invest in a diverse team of top talent.
Own the technical operations domain covering IT, security, DevOps, and infrastructure for an AWS-native platform.
Build and lead a lean team, leveraging AI agents and tooling to automate DevOps, security, and compliance tasks.
Partner with engineering leadership to ensure reliability, scalability, and HIPAA/CMS compliance in a regulated environment.
Spark Advisors builds healthcare technology for Medicare advisors, helping seniors navigate complex coverage. They are a fast-growing platform backed by Primary Ventures and Viewpoint Ventures, recognized as one of Inc. Magazine's Best Workplaces of 2025.
Act as a trusted consultant guiding clients through complex security and compliance challenges.
Develop security strategies aligned with frameworks like CMMC, NIST 800-171, and NIST 800-53.
Design and implement AWS and/or GCP security tools with deep expertise in cloud security.
Aprio is a Top 20 CPA and advisory firm that provides compliance and advisory services to fast-growing industries. With over 3,200 team members across 40 US and international offices, they foster a top-rated culture and collaborative environment.
Manage and conduct penetration testing, antivirus scanning, and SIEM tooling to ensure system security.
Assess software systems for security posture and maintain compliance frameworks like SOC2, NIST, and CJIS.
Respond to security questionnaires, manage training programs, and improve Business Continuity and Disaster Recovery plans.
GovWorx helps public safety agencies address the loss of experience through its AI-powered platform, CommsCoach. It is a growing technology company with a high-performing team focused on AI, engineering, product, and data science.
Act as a regional anchor for security compliance, managing controls and audits.
Develop and maintain security documentation, including policies and metrics.
Implement AI and automation to streamline compliance and security work.
Airwallex provides a unified payments and financial platform for global businesses, empowering over 250,000 companies with integrated solutions. With over 2,300 employees across 27 global offices, the company values innovation and ambitious work.
Secure cloud infrastructure, applications, APIs, and AI-driven workflows.
Partner with engineering to embed security controls into production.
Lead vulnerability management and incident response activities.
Jobgether is an AI-powered job matching platform that connects candidates with hiring companies. The company is a high-growth startup with a remote-first culture, emphasizing transparency, autonomy, and technical craftsmanship.
Conduct third-party security assessments and evaluate vendor security controls to manage risk.
Build and maintain automation using Python and agentic coding tools to replace manual GRC workflows.
Partner with cross-functional teams including Procurement, Legal, Engineering, and Compliance on risk-informed decisions.
Affirm is a financial technology company that reinvents credit to make it more honest and friendly, giving consumers the flexibility to buy now and pay later without hidden fees. It is a remote-first company with a culture focused on innovation and engineering-driven security.
Operate as a trusted advisor to executive teams, guiding them through complex cybersecurity challenges and building security programs.
Develop enterprise security strategies, roadmaps, and governance frameworks, translating technical risks into business impact.
Lead risk assessments, incident response planning, and compliance initiatives aligned with NIST, CIS, and ISO frameworks.
DYOPATH simplifies technology for clients while investing deeply in its people. Recognized as a Great Place to Work for five consecutive years, the company prides itself on building exceptional teams to deliver secure solutions.
Partner with Sales, Customer Success, and Marketing on strategic enterprise opportunities, bringing security and GRC expertise into customer conversations.
Lead executive briefings and CISO-to-CISO conversations to build trust and confidence in Drata's platform.
Represent Drata at industry conferences, CISO dinners, and roundtables across the Americas, EMEA, and APAC, building relationships and credibility.
Drata helps companies earn and keep trust by providing a proof layer that shows they deserve it. The company has over 600 employees worldwide and fosters a culture built on trust, speed, and continuous growth.