Remote Cyber security Jobs · Compliance

Job listings

  • Serve as the outsourced CISO for 8–12 clients, providing executive-level security leadership on a fractional basis
  • Conduct security risk assessments, gap analyses, and penetration testing oversight for prospective and current clients
  • Develop and maintain security programs, policies, and incident response plans tailored to each client's risk profile and regulatory environment

Reputation Management Consultants (RMC) is an affiliated organization with a premier advisory firm specializing in reputation management and strategic consulting for mid-market companies and high-profile clients. They are launching a dedicated cybersecurity division to address a critical truth our clients face every day: a data breach is a reputation event; and are building an AI-powered cybersecurity practice from the ground up.

Field CTO

GitLab
Global Unlimited PTO

  • Engage with customers in a technical consulting and advisory role during the pre-sales process.
  • Deliver executive-level thought leadership on DevSecOps, security, and compliance for strategic opportunities.
  • Build and maintain relationships with customer leaders such as Chief Information Security Officers.

GitLab is the intelligent orchestration platform for DevSecOps, enabling organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. The company embraces AI and has a high-performance culture driven by their values.

$151,000–$170,000/yr
Global Unlimited PTO 11w maternity

  • As the first dedicated InfoSec hire, you'll secure organizational systems, data, and operations.
  • You will develop and maintain a practical framework for securely deploying AI tools across the organization.
  • You will lead security incident response, investigate alerts, and coordinate containment.

Customer.io's platform is used by over 8,000 companies to send billions of messages daily. They power automated communication and help teams send smarter messages using real-time behavioral data, operating as a globally distributed, remote-first company.

US Unlimited PTO

  • Supports security aspects of DevSecOps implementations, ensuring systems meet security and compliance standards.
  • Works with DevSecOps engineers and developers to integrate and validate security controls.
  • Implements security tools, conducts vulnerability assessments, and supports compliance activities.

Edgesource Corporation provides innovative technology services for the Department of Defense (DOD), Department of Homeland Security (DHS), and other federal, state, and commercial clients. As an ISO 9001:2015 certified and CMMI Level 3 appraised small business, they offer various technical solutions.

  • Develop, maintain, and continuously improve GRC policies, standards, procedures, and control frameworks.
  • Lead and support SOC 2 Type II, ISO 27001, PCI DSS and other compliance initiatives, including evidence collection, control validation, and remediation tracking.
  • Partner with Security and Platform teams to ensure controls are technically implemented, not just documented.

HighLevel is an AI powered, all-in-one white-label sales & marketing platform that empowers agencies, entrepreneurs, and businesses to elevate their digital presence and drive growth. With over 1,500 team members across 15+ countries, we operate in a global, remote-first environment.

  • Support the delivery of Microsoft security, compliance, identity, and endpoint management solutions under guidance from senior consultants.
  • Assist with customer engagements, including discovery sessions, documentation, demonstrations, and implementation.
  • Contribute to security reviews, basic assessments, and gap analyses.

Threatscape's Microsoft Security Practice is growing. They value people who have high agency, contagious enthusiasm, communicate clearly, enjoy collaborating, are curious, proactive learners, and show professionalism, empathy, and attention to detail.

$163,121–$203,901/yr
US 4w PTO

  • Secure cloud-based environments by designing and implementing native security solutions using services.
  • Drive Continuous RMF practices, automating control implementation and reporting through modern methodologies like Continuous Authorization to Operate.
  • Automate provisioning and configuration of IT environments and implement and manage security measures like firewalls, IDS/IPS, vulnerability scanning, encryption, and ICAM solutions.

Rise8 builds custom, secure software for government organizations, measuring success by impact: lives saved, time returned, and missions advanced. They believe customer experience starts with employee experience, so they take care of their employees and offer competitive pay and benefits, autonomy, growth, and a culture rooted in kindness, candor, and continuous learning.

Canada 6w PTO

  • Support the execution and continuous improvement of Qohash’s security program.
  • Support risk assessments, track identified risks, and help coordinate remediation efforts.
  • Maintain security policies, standards, awareness materials, and support internal security training initiatives.

Qohash is building a foundational pillar of Canada’s digital sovereignty, believing security must scale differently. They look for bold, mission-driven individuals with technical depth and strategic clarity who collaborate across disciplines to protect sensitive data.

  • Accelerate Onebrief’s execution of GRC programs supporting NIST RMF, FedRAMP High, CMMC, and SOC2 authorizations
  • Develop and manage integrated project plans for control implementation, remediation, and continuous monitoring
  • Coordinate cross-functional teams (Infrastructure, Engineering, Product) to ensure timely delivery of compliance requirements

Onebrief provides collaboration and AI-powered workflow software designed specifically for military staffs, aiming to make them faster, smarter, and more efficient. Valued at $2.15B, the company has raised $320m+ from top-tier investors and operates as an all-remote company.

  • Implement and maintain enterprise security tooling and approved configuration baselines across endpoints, browsers, SaaS platforms, and identity systems.
  • Partner with Corporate Security Engineering leadership and Vulnerability Management to ensure configuration controls and remediation efforts are aligned, measurable, and enforceable.
  • Continuously improve security configurations by reducing drift, expanding automation, and strengthening documentation and evidence collection to support audit readiness.

Onebrief provides collaboration and AI-powered workflow software specifically for military staffs, enhancing their speed, intelligence, and efficiency. It's a remote-first company with a team of veterans and technologists, valued at $2.15B, backed by top-tier investors.