Principal Security & Compliance Advisor, Outpost

🔥 21 horas atrás

🇺🇸 Estados Unidos – Remoto (EUA)

💵 $150.000 - $180.000 / ano

⏰ Tempo Integral

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

Candidatar-se
Encontrar Vagas Remotas Similares

📊 Verifique sua pontuação de currículo para esta vaga

Melhore suas chances de conseguir uma entrevista verificando sua pontuação de currículo antes de se candidatar.

Logo of Pliancy

Pliancy

51 - 200 funcionários

🏢 Corporativo

☁️ SaaS

🔐 Segurança

Enterprise • SaaS • Security

A Pliancy é uma empresa de serviços profissionais habilitada por tecnologia que oferece soluções de TI para empresas emergentes e arrojadas. Especializada em serviços de TI de alta interatividade e suportados por tecnologia, a Pliancy oferece serviços abrangentes, incluindo gestão de e-mails, gerenciamento de arquivos, gerenciamento de identidade, segurança e relatórios, permitindo que as empresas se concentrem em sua missão principal sem se preocupar com as operações diárias de tecnologia. A empresa é impulsionada por uma equipe de especialistas criativos e empáticos em TI e é compliance SOC2, garantindo a segurança dos dados. Eles trazem uma abordagem centrada nas pessoas e de alta interatividade para serviços em nuvem, oferecendo arquitetura, reconstruções e auditorias para reduzir desperdícios e custos. A Pliancy também oferece um serviço de Diretor de TI fracionado, permitindo que empresas de alto crescimento alinhem suas iniciativas técnicas com objetivos de longo prazo. Seu programa "Crescer Juntos" colabora com fundadores visionários para projetar e construir sistemas escaláveis.

Descrição

• Serve as a senior security and compliance advisor for Outpost clients, with an emphasis on finance firms, including VC, PE, hedge funds, family offices, both ERAs and RIAs, and other investment firms, as well as select technology and biotech startups. • Lead consultative client conversations around governance, risk, controls, compliance readiness, secure AI adoption, security roadmaps, vendor selection, audit preparation, DDQs, cybersecurity insurance, incident preparedness, and operational workflows. • Translate client business objectives into practical security and compliance action plans that are clear, prioritized, and realistic. • Help clients understand, evaluate, and securely adopt AI tools, including usage policies, data handling expectations, vendor risk considerations, access controls, employee guidance, and practical governance models. • Help design, document, and continuously improve Outpost’s service delivery playbooks, templates, project plans, assessment methods, and client-facing deliverables. • Deliver leadership-level roadmapping and project ownership across ongoing client engagements. • Support clients working toward or maintaining compliance with frameworks and requirements such as SOC 2, ISO 27001, NIST CSF, CIS Controls, CCPA, GDPR, HIPAA-adjacent requirements, and other relevant security or privacy obligations. • Assess and improve client processes such as onboarding, offboarding, access reviews, vendor risk management, business continuity, disaster recovery, incident response, policy management, and control monitoring. • Advise on and help implement systems and tools across categories such as compliance automation, identity and access management, endpoint security, MDR, SIEM, vulnerability management, MDM, backup and recovery, AI productivity platforms, and security awareness. • Partner with Pliancy teams to connect security and compliance recommendations to the underlying IT systems, workflows, and support model required to make them stick. • Create high-quality internal and client-facing documentation that improves clarity, repeatability, and client experience. • Share market observations, client feedback, recurring pain points, and delivery lessons with Outpost leadership to help productize the offering. • Help shape future hiring, operating processes, and service standards as Outpost grows.

🎯 Requisitos

• 5+ years of experience in security, compliance, GRC, vCISO, security consulting, advisory, MSP/MSSP, or a comparable client-facing security role. • Strong working knowledge of security and compliance domains such as governance, risk management, control assessments, access controls, audit readiness, vendor risk, incident response, vulnerability management, business continuity, and data protection. • Experience advising executives or senior operators on security and compliance decisions. • Experience translating frameworks, audit requirements, regulatory expectations, or emerging technology risks into practical workstreams. • Familiarity with frameworks and standards such as ISO 27001, NIST CSF, NIST 800-53, CIS Controls, CCPA, GDPR, and HIPAA. • Comfort working with finance, investment management, venture capital, private equity, hedge fund, family office, startup, technology, or biotech clients. • Comfort advising clients on responsible AI usage, including secure adoption, acceptable use, data protection, vendor review, employee enablement, and business-process implications. • Ability to communicate clearly with both technical and non-technical audiences. • Strong client-service instincts, including follow-up, follow-through, responsiveness, expectation-setting, and good judgment under pressure. • Ability and willingness to properly document processes, decisions, risks, controls, assets, and recommendations. • A practical understanding of common security tooling categories, including IAM, MDM, EDR/XDR, MDR, SIEM, vulnerability management, backup and recovery, compliance automation, and security awareness platforms. • A practical understanding of how AI tools are being adopted inside modern businesses, including common risks around sensitive data, access, vendor terms, employee usage, workflow design, and governance. • Demonstrated ability to learn new technologies, client environments, and business contexts quickly. • A sense of ownership and pride in your work. • A team-centric mentality, with a focus on collaboration, communication, documentation, improving processes, and succeeding together. • Authorization to work in the United States for any employer.

🏖️ Benefícios

• Healthcare: Premiums for our base-level healthcare plan are 100% covered for employees and 50% covered for dependents, with the option to upgrade plus optional dental and vision plans. • Company-funded HRA account to help cover medical copays, deductibles, and coinsurance. • 401(k) match offered to help you plan for your long-term future. • Unlimited PTO. • Paid leave for new parents, including adoptive parents, to support your family’s growth. • Employee stock options so you can share in Pliancy’s success.

Candidatar-se

Vagas Similares

🔥 22 horas atrás

QTS Data Centers

1001 - 5000

Development Program Manager overseeing Q-Systems & Security for data centers. Engaging with project teams and ensuring operational capabilities meet design requirements.

🇺🇸 Estados Unidos – Remoto (EUA)

⏰ Tempo Integral

🟠 Sênior

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório

🔥 22 horas atrás

Databricks

1001 - 5000

🤖 Inteligência Artificial

🏢 Corporativo

☁️ SaaS

Staff Security Assurance Engineer at Databricks ensuring security compliance across cloud-based projects. Lead initiatives with high visibility and collaboration among various teams.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Ontem

DoorDash

10.000+ funcionários

🛍️ Comércio Eletrônico

🚗 Transporte

Lead Security Engineer serving as the main cybersecurity partner for DoorDash's Customer Support and Integrity teams. Establishing strategies to secure support operations and workflows.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Ontem

Included Health

1001 - 5000

☁️ SaaS

🤝 B2B

👥 RH Tech

Staff Cloud Security Engineer responsible for engineering and automating security controls in AWS cloud environments. Collaborate with teams to enhance cloud security posture preventing unauthorized access.

🗣️🇺🇸🇬🇧 Inglês obrigatório

🕒 Ontem

Fullscript

201 - 500

⚕️ Seguro de Saúde

🧘 Bem-estar

☁️ SaaS

Staff Security Engineer at Fullscript focusing on application and product security solutions. Leading security initiatives across platforms while collaborating with engineering teams.

🇺🇸 Estados Unidos – Remoto (EUA)

💰 $240.000.000 Private Equity Round em 2021-11

⏰ Tempo Integral

🔴 Especialista

👮‍♂️ Cibersegurança / Engenheiro de Segurança

🗣️🇺🇸🇬🇧 Inglês obrigatório