- Represent our security & compliance stance to customers, auditors, and internal stakeholders.
- Translate complex technical and regulatory requirements into clear, strategic communication.
- Guide internal teams (Sales, Marketing, Engineering, Leadership) on what we can claim and what we must do to maintain compliance integrity.
- Own customer-facing security questionnaires, due diligence responses, proposal requirements, and compliance-focused meetings.
- Define and articulate our directional compliance strategy (FedRAMP Moderate, SOC 2, HIPAA, ISO, GDPR).
- Act as the primary spokesperson for our company's security posture to customers, prospects, partners, and auditors.
- Lead customer-facing meetings involving security, compliance, and risk management discussions.
- Translate technical and regulatory details into clear, accurate explanations suitable for executives, security teams, and procurement officials.
- Manage inbound compliance-related requests from Sales, Marketing, Customer Success, and Leadership.
- Ensure messaging on compliance readiness and roadmap is consistent and honest across the company.
- Set expectations internally to prevent overcommitment or misrepresentation regarding FedRAMP, SOC 2, HIPAA, ISO, and GDPR status.
- Work closely with Legal, Product, and Engineering leadership to align compliance claims with actual technical capabilities.
- Manage a team of four (Compliance PM, 3 Systems Engineers) as well as external compliance vendors, assessors, and 3PAOs.
- Prioritize team workloads based on risk, deadlines, customer urgency, and compliance roadmap.
- Ensure the team has what it needs to execute efficiently while preventing burnout and unmanaged expectations.
- Own the process of completing customer-provided security questionnaires, RFP/RFI responses, and vendor due diligence forms.
- Ensure all responses accurately reflect current controls, policies, security architecture, and compliance progress.
- Maintain a library of reusable, approved compliance answers, block diagrams, system overviews, and architectural descriptions.
- Shape the compliance roadmap and represent it clearly to internal leadership.
- Ensure the organization understands the steps required for FedRAMP Moderate Authorization and ongoing SOC 2, HIPAA, GDPR, and ISO adherence.
- Stay current on relevant regulatory changes and advise leadership on potential impact.
- Assist in the development of corporate-level security strategy, documentation, and messaging-without being responsible for technical implementation.
- Create and maintain block diagrams, system flow overviews, and high-level architecture visuals used for compliance and customer discussions.
- Work with engineering to understand design changes and articulate them to auditors or customers.
- Communicate how our product handles data, enforces access controls, manages encryption, and aligns with regulatory controls.
- 5-10+ years of experience in security, compliance, technical program management, or a related leadership role.
- Experience supporting or representing compliance programs such as FedRAMP, SOC 2, HIPAA, ISO 27001, NIST 800-53, and GDPR.
- Exceptional ability to learn complex technical systems and communicate them clearly to non-technical audiences.
- Strong customer-facing communication skills-comfortable presenting to CISOs, procurement teams, auditors, and executives.
- Experience managing or coordinating cross-functional teams.
- High integrity and judgment-able to balance transparency, sales pressure, and regulatory accuracy.
- Experience in a high-growth startup environment or working with small, cross-functional teams.
- Familiarity with AWS cloud architecture and modern SaaS security patterns.
- Prior work with 3PAOs, auditors, or government compliance workflows.
- Experience developing block diagrams, technical overviews, or compliance architecture documents.
- Security, privacy, or compliance certifications (CISM, CISSP, CCSP, CIPP/E, ISO Lead Implementer/Auditor, etc.).
- A calm, authoritative presence that inspires confidence with customers and internal teams alike.
- Strong organizational and communication skills, combined with the ability to synthesize information quickly.
- A thoughtful, strategic approach to compliance that balances business needs with regulatory requirements.
- The ability to protect the compliance team's capacity by serving as the front door and translator for all incoming security/compliance requests.
- Take a leadership role in shaping the compliance reputation of a fast-growing SaaS company.
- Become the trusted advisor to both internal teams and customers on all things security and compliance.
- Work with a small, high-impact team where your clarity and communication directly influence company growth, customer trust, and FedRAMP success.
-
· Knowledgeand Skills: · Strong knowledgeof cybersecurity principlesstandards,and best practices · ...
United States1 month ago
-
Aretec seeks a Security Lead for a 100% remote opportunity with a minimum of 10 years of experience leading a security delivery team with experience: · collaborating with ISSOs to define and develop cybersecurity test plans utilizing cloud automation capabilities · prioritizing ...
United States2 days ago
-
Weareattheforefrontofaglobaltechnologynovolutiontransformingindustriesthroughcutting-edge digitalsolutionsandnext-generationAI. · Weempowerbusinesses—andtheircustomers—toachieve morethroughinnovation, automation,andintelligentinsights.ActasubjectmatterexpertforPresidi'sCybersecur ...
United States2 weeks ago
-
We are seeking a senior technical lead to architect and manage the security posture for a high-growth aerospace technology firm. · Authorization Leadership: Direct the end-to-end execution of CMMC Level 2 and FedRAMP High certifications, including architecture design, gap remedia ...
United States1 month ago
-
Bounteous is a premier end-to-end digital transformation consultancy dedicated to partnering with ambitious brands to create digital solutions for today's complex challenges and tomorrow's opportunities. · ...
United States1 week ago
-
Docusign brings agreements to life. You will play a critical role in protecting Docusign's products and customers by spearheading offensive security testing initiatives. · ...
United States1 month ago
-
We're looking for a Lead Information Security · A U.S. based role within the Eastern Standard Time Zone. This role reports to Hamilton's global Chief Information Security Officer. · The Lead Information Security professional provides leadership and subject- · matter expertise ac ...
United States1 week ago
-
Every day at Disney Cruise Line we take pride in bringing the magic of Disney to life. We find joy in creating cherished memories and form genuine connections with our guests. We hold each other to the highest degree and always act responsibly while ensuring the safety of fellow ...
United States $90,000 - $150,000 (USD) per year3 days ago
-
· Description · Security Analyst Team Lead – NAM · Location: US – Remote (Job travel up to 10%) · Reports to: Manager, Incident Response · About the Role: · Varonis' Incident Response team is a globally distributed, outcome-driven organization focused on delivering exceptional p ...
United States1 hour ago
-
· Create Your Experience of a Lifetime · Come work and play in the mountains Whether it's your first time seeing the mountains, or you already call them home, joining our team means discovering (or re-discovering) a passion for the outdoors while building lifelong connections ...
United States $20,000 - $40,000 (USD) per year1 week ago
-
The Lead Cybersecurity Architect will be responsible for spearheading the design, implementation, · and evolution of secure architectures that protect Sysco's enterprise systems, · data, and infrastructure.Duties and Responsibilities · Lead the design, · development, and deployme ...
United States Full time3 weeks ago
-
· At Anchorage Digital, we are building the world's most advanced digital asset platform for institutions to participate in crypto. · Anchorage Digital is a crypto platform that enables institutions to participate in digital assets through custody, staking, trading, governance, ...
United States5 days ago
-
This senior-level role focuses on leading cloud-centric and endpoint security incident response with a primary emphasis on AWS environments. · Lead end-to-end investigations of high-severity security incidents across AWS, endpoint, identity, and SaaS environments · ,Track emergin ...
United States1 month ago
-
The Lead Offensive Security Engineer will participate in and lead the design and execution of both campaign-based adversary simulation assessments and tactical assessments, while contributing to collaborative purple team exercises. · ...
United States1 month ago
-
The Lead Security Platform Architect owns the technical foundation of a next-generation security intelligence platform. · ...
United States1 month ago
-
The mission of an Engineering Lead for Security Operations is to drive the healthy growth of a high-performing security engineering team. · ...
United States1 month ago
-
Bounteous is a premier end-to-end digital transformation consultancy dedicated to partnering with ambitious brands to create digital solutions for today's complex challenges and tomorrow's opportunities. With uncompromising standards for technical and domain expertise, we deliver ...
United States1 week ago
-
We are seeking a skilled Cyber Security Incident Response Lead investigator to join our team. · Lead reactive incident response cases for some of the most esteemed businesses in the world. · Build trust and drive significant change in any business they come into contact with. · ...
United States1 month ago
-
This position is responsible for leading in the analysis of customer training needs, development and organization of the training service, and delivery of training for assigned applications. · ...
United States1 month ago
-
We are seeking a Lead Penetration Tester to serve as the on-site technical authority for web application security assessments supporting a NATO/defense customer in Mons, Belgium. This is a senior, hands-on role responsible for leading grey-box web penetration testing in restricte ...
United States1 month ago
-
We're looking for a Senior Manager of Corporate Communications to join our marketing team and lead our analyst and public relations efforts. · ...
United States Full time2 weeks ago
Security Lead - United States - ECA Staffing Solutions, Inc.
Description
About the RoleWe are seeking a Security Lead & Corporate Compliance Representative to serve as the primary voice of our company's security and compliance posture-internally and externally. This role manages a small team (3) and coordinates multiple external security partners, consultants, and contractors.
You will:
Key Responsibilities
Security & Compliance Representation
-
Security Lead
Only for registered members United States
-
Security Lead
Only for registered members United States
-
Practice Lead, Security
Only for registered members United States
-
Security & Compliance Lead
Only for registered members United States
-
Information Security Lead
Only for registered members United States
-
Lead Security Engineer
Only for registered members United States
-
Lead Information Security
Only for registered members United States
-
Lead Security Officer
Only for registered members United States
-
Security Analyst Team Lead
Only for registered members United States
-
Field Lead Security Officer
Only for registered members United States
-
Lead Cyber Security Architect
Full time Only for registered members United States
-
Engineering Lead, Security Operations
Only for registered members United States
-
Lead Security Analyst, Cloud
Only for registered members United States
-
Lead Offensive Security Engineer
Only for registered members United States
-
Lead Security Platform Architect
Only for registered members United States
-
Engineering Lead, Security Operations
Only for registered members United States
-
Security Access Management Lead
Only for registered members United States
-
Cyber Security Incident Response Lead
Only for registered members United States
-
Information Security Training Specialist Lead
Only for registered members United States
-
Lead Penetration Tester – Web Application Security
Only for registered members United States
-
Senior Manager of Corporate Communications
Full time Only for registered members United States