Develop, implement, and manage GRC strategies to support compliance with frameworks like FedRAMP, IRAP, and SOC 2.
Lead security assessments, audits, and certification processes, ensuring timely and successful completion.
Collaborate with cross-functional teams to integrate GRC requirements into operations and technology.
GitLab is the intelligent orchestration platform for DevSecOps, enabling organizations to increase developer productivity, improve operational efficiency, and reduce security and compliance risk. More than 50 million registered users and over 50% of the Fortune 100 trust GitLab, driven by a high-performance culture of continuous knowledge exchange.
Own assigned federal security and compliance workstreams from requirement interpretation through implementation, evidence collection, and remediation.
Drive recurring continuous monitoring and evidence workflows across multiple teams.
Support vulnerability detection and response, including reconciling findings from tools like Wiz, Nessus, and Burp.
Abnormal protects the humans behind the world's most critical organizations from AI-powered cybercrime. 4,500+ enterprises trust their behavioral AI platform.
Develop processes, tooling and automation to scale incident management response and mitigate risks.
Collaborate with security, engineering, product, support, and business operations to identify detection use cases.
Maintain security logging platform and stay updated on threats to improve detection mechanisms.
ClickHouse is a leading real-time analytics, data warehousing, observability, and AI workloads company with over 4,000 customers and rapid growth, validated by a $400M Series D funding round. The company values innovation and collaboration, offering a remote-friendly culture with a global team.
Lead security architecture, engineering standards, and verification practices across enterprise environments.
Provide technical leadership to ISSO and ISSE teams overseeing compliance and continuous monitoring.
Manage ATO activities, risk assessments, and vulnerability management while ensuring Zero Trust alignment.
VetsEZ is a healthcare IT consulting firm supporting federal government modernization projects. The company fosters a collaborative and inclusive culture with opportunities for training and growth.
Build and maintain automation using Python and agentic coding tools to reduce manual GRC workflows.
Partner with Procurement, Legal, Engineering, and other teams on risk reviews and risk-informed decisions.
Affirm is a financial technology company that offers buy now, pay later services. The company values security as critical to its success and has a culture focused on engineering-driven risk management.