Perform enterprise risk assessments using NIST CSF, SOC 2, and CIS frameworks.
Develop and execute security awareness programs including training and phishing simulations.
Support governance and control management by maintaining policies and control libraries.
Protective helps protect customers against life's uncertainties by providing insurance and peace of mind. The company offers a collaborative environment with a focus on employee wellbeing and work-life balance.
Lead the design and governance of control frameworks and risk workflows within the GRC platform, ensuring alignment with compliance requirements like HIPAA, HITRUST, and NIST.
Oversee risk assessments, control testing, and vendor evaluations to identify and mitigate security risks.
Manage policy lifecycle, audit coordination, and reporting on control effectiveness and risk indicators.
USAP is a healthcare organization focused on providing anesthesia services and patient safety. It is a growing company with a culture of security, compliance, and collaboration.
Own the Secure + MDR offering end-to-end, including security operations, compliance programs, and client-facing credibility.
Manage SecOps tooling, incident response, and compliance automation platforms such as Drata, Vanta, or Secureframe.
Build and lead the security operations team, establishing metrics and reporting for leadership and board.
van den Boom & Associates is a managed security service provider (MSSP) building a security-led practice for life sciences clients. As a growing organization, they seek a hands-on leader to own their Secure + MDR offering and establish security operations from the ground up.
Lead the end-to-end authorization process for FedRAMP High, while driving alignment with CMMC and MARS-E.
Manage ongoing FedRAMP continuous monitoring, including monthly deliverables and vulnerability management.
Collaborate with engineering, security, and operations teams to develop a 'comply once, satisfy many' strategy.
Amwell provides a technology-enabled care platform for healthcare organizations, offering services across the care continuum. With a team passionate about transforming care delivery, they have served large healthcare organizations for nearly two decades.
Own internal audits end to end for customers, from kickoff to final report.
Review evidence against ISO 27001 controls and identify non-conformities.
Write clear findings for non-technical founders and keep multiple audits on schedule.
Secfix automates security compliance for companies, helping them achieve ISO 27001, GDPR, TISAX, and SOC 2 certification. They are a 100% remote team with hubs in Munich, Berlin, and London, recently raised $12M Series A, and are backed by top VCs.
Lead GRC initiatives to protect the business and strengthen technology risk posture.
Translate complex risk data into clear insights and action plans for leadership.
Build and improve policies, standards, and procedures for governance and compliance.
Herbalife is a global nutrition company focused on developing and distributing dietary supplements and personal care products. The company employs thousands worldwide and fosters a collaborative, fast-paced environment with a culture of accountability and continuous improvement.
Operate as a trusted advisor to executive teams, guiding them through complex cybersecurity challenges and building security programs.
Develop enterprise security strategies, roadmaps, and governance frameworks, translating technical risks into business impact.
Lead risk assessments, incident response planning, and compliance initiatives aligned with NIST, CIS, and ISO frameworks.
DYOPATH simplifies technology for clients while investing deeply in its people. Recognized as a Great Place to Work for five consecutive years, the company prides itself on building exceptional teams to deliver secure solutions.
Own FedRAMP and GovRAMP certifications and roadmaps, including package management and compliance timelines.
Manage 3PAO relationships and assessments, coordinating scoping, evidence, and results validation.
Lead continuous monitoring, POA&M processes, and drive compliance automation and efficiency.
Smartsheet empowers teams to manage work seamlessly and scale solutions smarter, now uniting human teams with AI agents. It is an equal opportunity employer committed to fostering an inclusive environment with the best employees.
Provide expert cybersecurity advisory to alternative asset firms and family offices.
Build, maintain, and operate full Cybersecurity Programs for clients.
Work on project-based engagements that fit around existing commitments.
We are a talent solutions firm purpose-built for the alternative investment industry. We have a network of 700+ vetted advisors and cover the full talent spectrum from entry to exit.
Lead Playlab's security engineering, compliance, and privacy programs with end-to-end ownership of risk and customer assurance.
Drive security automation, incident response, and SOC 2/SIEM implementations to safeguard educational data globally.
Collaborate cross-functionally to build partnerships and promote thoughtful decision-making in a fast-growing organization.
Playlab is a tech non-profit dedicated to helping educators and students become critical consumers and creators of AI through open-source, community-driven tools. With over 60,000 educators using the platform, the team is mission-driven, small, and passionate about equity, creativity, and joyful learning.