Remote Cyber security Jobs · Risk Management

Job listings

$175,000–$190,000/yr

  • Translates high-level departmental strategy into team-level goals.
  • Takes responsibility for the performance, reliability, and culture of the team.
  • Drives continuous improvement across workflows, processes, and operational practices.

Automox is a cloud-native IT operations platform that helps modern organizations. They are trusted by more than 2,500 leading companies and MSPs worldwide, including NASA, Yale, Xerox, Allbirds, and Unicef.

  • Lead IT system security consultation within CMMC, NIST, and other regulatory frameworks.
  • Develop System Security Plans and supporting documentation for clients.
  • Manage project tasks and priorities to meet delivery targets.

Jobgether is a platform that helps connect candidates with companies. They use an AI-powered matching process to ensure applications are reviewed quickly, objectively, and fairly.

4w PTO

  • Monitor and analyze cyber threats, vulnerabilities, and geopolitical developments impacting critical infrastructure.
  • Correlate multi-source intelligence to create unified situational reports and derive actionable recommendations for decision-makers.
  • Support crisis management and identify risks across critical sectors like energy and telecommunications through structured assessments.

Deutsche Telekom IT Solutions provides a wide portfolio of IT and telecommunications services as a subsidiary of the Deutsche Telekom Group. It operates with more than 5300 employees across four Hungarian sites, serves large corporate customers across Europe, and is recognized as an attractive and ethical employer.

  • Own and continuously improve the GRC program across ISO 27001, SOC 2, ISO 27701, and ISO 42001, driving audit readiness and making compliance repeatable.
  • Build relationships with technical teams to evaluate implementations and translate technical reality into clear audit narratives without losing accuracy.
  • Contribute to risk identification and assessment, maintain risk registers, and support leadership reporting to surface themes that lead to real decisions.

Synthesia is the world's leading AI video platform for business, used by over 90% of the Fortune 100 to enhance visual communication and enterprise skill development. Founded in 2017 and valued at $4 billion, the company has a culture focused on building, hiring smart and kind people, and empowering them with clear work principles to move fast.

$65,000–$85,000/yr

  • Collaborate with business leadership, Legal, Procurement, and Cyber to review terms and conditions, ensuring vendor and client obligations align with internal cyber controls.
  • Track and monitor the status and completeness of risk remediations in the risk register with business stakeholders, and educate on risks and controls.
  • Contribute to program enhancements and drive automation with IT and Cybersecurity stakeholders while maintaining a deep understanding of organizational objectives and emerging risks.

NBCUniversal is a leading media and entertainment company that creates world-class content distributed across film, television, and streaming, and operates global theme parks. It has a large workforce focused on an inclusive culture and community impact, delivering a wide range of content reflecting the world.

  • Own and maintain security and compliance documentation, including policies and procedures.
  • Support commercial teams in complex information security and compliance negotiations.
  • Manage ISO 27001 compliance, certification maintenance, and audit preparations.

Gearset handles Salesforce DevOps for some of the world's largest companies. The company operates with a modern approach to security and compliance in a growing, ambitious environment.

US 4w PTO 12w maternity 12w paternity

  • Build and scale the enterprise GRC program, including risk management, compliance, and policy frameworks.
  • Lead compliance certification programs like SOC 2, HIPAA, and HITRUST, managing audit preparedness and execution.
  • Oversee GRC platforms and control monitoring while developing policies aligned with frameworks such as NIST and ISO 27001.

Aledade is a public benefit corporation that empowers independent primary care practices to thrive in value-based care by creating value-based contracts across various health plans.The company is the largest network of independent primary care in the country, featuring a collaborative, inclusive, remote-first culture driven by a shared passion for public health.

$200,000–$280,000/yr

  • Define and evolve a multi-year enterprise security roadmap aligned to business objectives and risk appetite across all business units.
  • Lead the unification of security programs, toolsets, and policies inherited from Transact and CBORD into a single enterprise-class operation.
  • Own and maintain compliance programs including SOC 2, PCI DSS, HITRUST, TX-RAMP, GovRAMP, FERPA, and HIPAA, securing SaaS platforms and cloud environments.

Illumia provides secure, intelligent technology solutions to streamline operations for education, healthcare, and corporate enterprises. As a portfolio company of Roper Technologies with over 1,750 client institutions, we foster an inclusive culture built on values of Authenticity, Responsibility, Passion, and Excellence, empowering diverse teams to deliver their best work.

$87,500–$111,500/yr
US Unlimited PTO

  • Conduct risk assessments for critical and operationally significant third-party entities.
  • Identify, track, and drive remediation of control gaps and security risks uncovered throughout the assessment lifecycle.
  • Partner closely with cross-functional teams to manage third-party risk holistically and stay ahead of emerging risks, including generative and agentic AI.

HealthEquity's mission is to save and improve lives by empowering healthcare consumers. They envision making HSAs as widespread and popular as retirement accounts and they are passionate about providing a solution that allows American families to connect health and wealth.

  • Drive the implementation and continuous improvement of the ISO 27001 Information Security Management System.
  • Support SOC 2 Type II compliance efforts, including control implementation and evidence collection.
  • Own and evolve the company-wide risk management program, including risk register and scoring methodology.

Insider One provides a platform that brings marketing and customer engagement teams everything they need in one place. They are powered by 1,500+ team members representing 50+ nationalities across 30+ offices and are trusted by 2000+ customers.