Source Job

Global

  • Manage the Compliance and Security workstream, coordinating SOC 2, ISO 27001, GDPR, and related audit-readiness activities.
  • Build and maintain execution plans with clear owners, milestones, dependencies, risks, and decision points.
  • Facilitate workshops, track evidence, and escalate risks to keep audits on schedule.

Project Management Compliance Security SOC 2 ISO 27001

20 jobs similar to Project Manager, Compliance and Security

Jobs ranked by similarity.

Global

  • Lead global security and compliance programs across multiple business units.
  • Manage SOC 2 Type II audits and customer trust initiatives.
  • Drive AI governance and security awareness training efforts.

The partner company is a technology organization that prioritizes security and compliance to build customer trust. It operates in a growing, multi-business environment with a remote-first culture and a focus on operational excellence.

$105,000–$125,000/yr
US

  • Own and continuously improve the company's compliance program across SOC 2, GDPR, ISO 27001, and other frameworks.
  • Lead external audits, develop security policies, and partner with engineering teams to implement controls.
  • Manage third-party risk, respond to customer security questionnaires, and build compliance metrics for executive reporting.

10a Labs is the safety and threat-intelligence layer trusted by frontier AI labs, AI unicorns, Fortune 10 companies, and leading global technology platforms. They are a high-growth technology company with a collaborative culture, operating in a fast-moving environment.

US

  • Manage and maintain version control of all documentation related to compliance for each standard and track implementation status of security controls.
  • Oversee preparation and execution of external compliance audits, including facilitating security assessments.
  • Support mapping of compliance requirements to security control implementation using agile development processes.

Hypori is a high-growth cybersecurity SaaS company providing a virtual workspace platform for secure mobile access. Backed by $55M in funding, the company is expanding into commercial and regulated markets with a focus on innovation and security.

US

  • Lead compliance initiatives across commercial and federal lines, driving FedRAMP, CMMC, ISO 27001, SOC 2, and HITRUST programs.
  • Coordinate internal and external audits, ensuring stakeholder readiness and timely remediation of findings.
  • Manage program roadmaps, risk registers, and cross-functional execution to translate regulatory requirements into actionable plans.

We provide an AI-infused scenario planning and analysis platform to optimize business decision-making. We serve over 2,400 global customers including Fortune 50 companies and foster a Winning Culture focused on innovation, diversity, and leadership.

$127,200–$205,100/yr
Global Unlimited PTO

  • Own and continuously improve Camunda's Information Security Management System (ISMS), driving measurable improvements.
  • Drive security audit cycles for ISO 27001, SOC 2, and future frameworks with minimal supervision.
  • Review information security requirements in customer contracts and lead responses to complex security questionnaires.

We are the enterprise platform for agentic orchestration, enabling organizations to coordinate AI agents, people, and systems across complex business processes. We are a fully remote, global team trusted by over 700 organizations, named a GP Bullhound Next Unicorn and Great Place to Work certified.

$139,000–$218,000/yr
US

  • Maintain and mature the ISMS, including the Statement of Applicability, risk treatment plans, and Management Review Meetings.
  • Support ISO 27001 and SOC 2 Type 2 audits from readiness through certification, including evidence preparation.
  • Lead the security policy program and collaborate across teams to translate compliance requirements into practical practices.

Mozilla Corporation is a non-profit-backed tech company behind Firefox, focused on making the internet better. With 225+ million monthly users, it is a wholly owned subsidiary of the Mozilla Foundation, promoting privacy, AI, and open-source.

Europe 5w PTO

  • Own and drive the compliance roadmap across multiple frameworks like ISO 27001, TISAX, and SOC 2.
  • Implement ISO 27001 end-to-end for customers and mentor junior compliance specialists.
  • Act as the senior compliance voice for customers, auditors, and product, partnering with CS and founders.

Secfix automates security compliance in Europe, helping companies achieve ISO 27001, GDPR, TISAX, and SOC 2 quickly and easily. We are a 100% remote team with hubs in Munich, Berlin, and London, backed by top VCs with a high-performing, ownership-driven culture.

$60,000–$60,000/yr
Argentina Mexico Brazil Chile Uruguay Colombia Ecuador

  • Lead customer security reviews, RFPs, RFIs, and questionnaires to keep deals moving.
  • Own SOC 2 Type II program management and the customer-facing trust portal.
  • Author security policies and manage AI compliance frameworks.

Sparkrock helps social benefit organizations like nonprofits, school boards, and government agencies reach their full potential through technology. They are a best-in-class, 100% remote organization with a focus on culture and growth, serving over 150,000 users.

Global

  • Assist in monitoring compliance with frameworks like ISO 27001, SOC 2, and Cyber Essentials.
  • Maintain the central Risk Register and track remediation progress across departments.
  • Support policy management and compliance training across the organization.

We are a global Physical AI company using data and AI to improve critical industries like healthcare, water, energy, and telecom. Our teams are ambitious, curious, and practical, with colleagues across Africa, Europe, the UK, and the US.

US

  • Own IRAP and ISMAP program strategy and execution across Australia and Japan.
  • Coordinate with regional assessors and government agencies to maintain compliance.
  • Design and maintain compliance documentation and manage continuous monitoring.

For over 20 years, Smartsheet has empowered teams to manage work seamlessly and scale solutions smarter. They are now uniting human teams with AI agents to automate tasks and uncover insights.

$115,000–$145,000/yr
Global

  • Serve as a hands-on GRC advisor for customers, guiding them through risk assessments, audit preparation, and control rollouts.
  • Help customers navigate audits like SOC 2, ISO 27001, HIPAA, PCI-DSS, and NIST, translating requirements into practical steps.
  • Spot GRC complexity early and partner with Support and Customer Success to own escalations requiring real GRC expertise.

Compyl is a GRC and automated security compliance platform built by security practitioners. Backed by Venture Guides, Contour Venture Partners, and Armory Square Ventures, it is a high-growth Series A company.

Canada Unlimited PTO

  • Own the security compliance program end-to-end, including audits, customer trust, vendor risk, and vulnerability management.
  • Automate evidence collection and control monitoring to be audit-ready year-round, not just during the August–November season.
  • Act as the external security face for enterprise prospects and translate AI regulatory changes into requirements.

Ada is an AI customer service company that helps enterprises automate customer conversations with AI agents. Founded in 2016, we've powered over 5.5 billion interactions and raised over $250M from top investors.

UK

  • Lead and coordinate multiple compliance-related projects and workstreams.
  • Develop and maintain project plans, governance frameworks, milestones and reporting.
  • Manage stakeholders across different business functions and international markets.

Leading veterinary services provider in Europe and North America with over 2,500 clinics and 41,000 employees. Committed to improving animal health and welfare globally.

$80,000–$130,000/yr
US

  • You will own end-to-end compliance audits (SOC 1, SOC 2, HITRUST) and manage compliance automation platforms.
  • You will run the vulnerability management program and remediate security findings across AWS.
  • You will support security incident response, fraud investigations, and third-party risk assessments.

We are transforming post-acute care as the leading digital ordering platform for medical equipment and supplies. We connect major health systems, health plans, and suppliers to help patients get life-saving products at home, with a network of 300,000+ clinicians and 3,000+ supplier locations across all 50 states.

Brazil

  • Perform testing and validation of ITGC and security controls.
  • Assess control effectiveness and support remediation efforts.
  • Support internal and external audits including SOC 2 and ISO 27001.

Marlabs is a global AI and Digital Solutions Consulting firm that delivers intelligent solutions across AI, data, analytics, and product engineering. Since 2000, they have partnered with large organizations worldwide, fostering a culture of innovation and collaboration.

Europe 5w PTO

  • Lead security compliance initiatives across ISO 27001, SOC 2, GDPR, and more.
  • Conduct internal audits and mentor junior specialists.
  • Collaborate with product teams to integrate compliance requirements.

Our partner is a fast-growing technology company specializing in security compliance and automation for European businesses. They have a startup culture with a focus on innovation and collaboration.

Ireland 5w PTO

  • Lead the design and evolution of a multi-framework compliance offering for European businesses.
  • Drive end-to-end ISO 27001 implementations and manage a team of compliance specialists.
  • Act as a senior security partner to customers, sales, and product teams.

This company provides a security and compliance platform that helps modern businesses achieve certifications across frameworks like ISO 27001 and SOC 2. It is a fast-growing, remote-first technology environment with a strong emphasis on collaboration and team connection.

US

  • Lead and mature the GRC program across SOC 2, ISO 27001, PCI DSS, and other compliance frameworks, including audit preparation and evidence collection.
  • Own the annual security risk assessment process using NIST SP 800-30 methodology, including stakeholder interviews and risk scoring.
  • Drive security awareness training, AI governance, and Data Loss Prevention program development while collaborating with cross-functional teams.

RainFocus is a rapidly growing software company that provides an industry-disrupting event management platform for Fortune 500 companies like Adobe, Cisco, and IBM. The company is well-funded, growing fast, and building a culture that is challenging, fun, and exciting.

US Unlimited PTO

  • Manage and implement complex controls frameworks for large systems consisting of Cloud infrastructure and SaaS services.
  • Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services.
  • Conduct risk assessments across business units and processes, identifying risk findings and recommending remediation strategies.

Virtru is a data protection platform that enables secure sharing without sacrificing security or privacy. Backed by top venture capital firms, the company helps Fortune 500 companies and government agencies achieve true data security with freedom to share.

United States Unlimited PTO

  • Own and strengthen the controls environment, ensuring compliance requirements are effectively implemented and maintained.
  • Support and mature the GRC program, including SOC 2 operations and alignment with frameworks such as NIST.
  • Manage vendor risk assessments, regulatory licensing, and security issue lifecycle across jurisdictions.

Mesh enables consumers to pay and be paid with any asset, bridging crypto payments into everyday commerce. Backed by investors like PayPal Ventures and Paradigm, the company is building infrastructure for the global economy with a small, fast-moving team.