Security Compliance Manager

🕒 August 26

🇺🇸 United States – Remote

💵 $130k - $190k / year

⏰ Full Time

🟠 Senior

🔴 Lead

🚔 Compliance

👻 Ghost score 15%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Sardine

Sardine

51 - 200 employees

Founded 2020

🔒 Cybersecurity

📋 Compliance

💳 Fintech

Cybersecurity • Compliance • Fintech

Sardine is a cutting-edge platform focused on fraud prevention and compliance. The company offers a behavior-based system for fraud detection, identity verification, and transaction monitoring that helps leading banks, online retailers, and fintechs protect themselves from scams and financial crime. Sardine's technology integrates advanced behavioral biometrics and device intelligence to combat identity fraud, payment fraud, and account takeovers. The platform also streamlines compliance checks such as KYC (Know Your Customer) and AML (Anti-Money Laundering) transaction monitoring. Sardine's comprehensive solution empowers its clients to automate risk decisioning, identify high-risk users early, and manage fraud across the customer journey effectively.

📋 Description

• Own compliance planning and the compliance program across SOC 2 Type II, PCI DSS Level 1 Service Provider, ISO 27001, GDPR, CCPA, and DORA • Drive Sardine's FedRAMP effort, including NIST SP 800-53 control implementation, 3PAO assessment, and continuous monitoring across engineering and IT • Serve as the primary interface to auditors, regulators, and industry stakeholders • Partner with engineering, IT, product, security, and legal teams to drive reviews to clean outcomes • Present objectives, scope, and results to senior management and the board via the CISO • Own the control framework and rationalize overlapping controls into a coherent, evidence-efficient set • Own the security policy and standards library • Own the risk register, risk quantification, and reporting cadence • Validate that actions addressing risks are appropriate and accurately reported • Own the customer assurance and trust program, including security questionnaires, attestations, and trust artifacts • Coordinate assimilation of evidence, scans, and artifacts • Lead process improvements in response to findings and maturity assessments • Build product and technical fluency to ground control design and risk decisions in the platform architecture • Identify alternative solutions that promote consistency and enable streamlining and automation • Produce executive-ready documentation and presentations and run meetings with regulators and internal stakeholders • Lead and develop the Security Compliance Analyst and scale the function as obligations grow

🎯 Requirements

• 7+ years in security compliance, GRC, or audit, including end-to-end ownership of audit or certification programs (SOC 2, PCI DSS, and/or ISO 27001) • Deep knowledge of security and privacy frameworks — PCI DSS, SOC 2, ISO 27001, GDPR/CCPA, and DORA • Familiarity with control frameworks such as NIST CSF and CIS • Ability to build fluency in a technical product and hold your own with engineering and product teams • Strong written and verbal skills, executive-ready documentation, and credible presence with auditors, regulators, and leadership • Experience in fast-paced, high-growth environments; fintech or payments strongly preferred • Ability to work as a leader, a partner, and an individual contributor as needed • Ability to travel as needed • Experience leading, mentoring, or managing others, or clear readiness to manage a direct report • Direct experience running a PCI DSS Level 1 service provider program is a bonus • Hands-on exposure to DORA requirements is a bonus • Familiarity with GRC and security tooling, including Vanta, Rippling, and macOS environments, is a bonus

🏖️ Benefits

• Generous compensation in cash and equity • Early exercise for all options, including pre-vested • Work from anywhere: Remote-first Culture • Flexible paid time off and Year-end break • Health insurance, dental, and vision coverage for employees and dependents - US and Canada specific • 4% matching in 401k / RRSP - US and Canada specific • MacBook Pro delivered to your door • One-time stipend to set up a home office — desk, chair, screen, etc. • Monthly meal stipend • Monthly social meet-up stipend • Annual health and wellness stipend • Annual Learning stipend

Apply Now

Similar Jobs

🕒 August 25

Guild Mortgage

1001 - 5000

🏗️ Construction

💸 Finance

🏠 Real Estate

Senior Compliance Analyst supporting Guild Mortgage, a mortgage banking firm, with complaints, examinations, and risk-based compliance monitoring. Researching regulations and strengthening compliance controls.

🇺🇸 United States – Remote

💵 $67k - $90k / year

⏰ Full Time

🟠 Senior

🚔 Compliance

🕒 August 25

Jasper

51 - 200

🤖 Artificial Intelligence

📣 Marketing

☁️ SaaS

Senior GRC Lead owning audits, risk, vendor security, and AI governance. Supporting Jasper’s enterprise marketing agents platform with scalable compliance controls.

🇺🇸 United States – Remote

💵 $174.3k - $205k / year

⏰ Full Time

🟠 Senior

🚔 Compliance

🦅 H1B Visa Sponsor

infoinfo

🕒 August 25

CVS Health

10,000+ employees

🏥 Healthcare

⚕️ Healthcare Insurance

🛒 Retail

CVS Health regulatory advisor ensuring Pharmacy Network compliance with local, state, and federal healthcare regulations. Translating requirements into processes, systems, and risk decisions.

🇺🇸 United States – Remote

💵 $75.4k - $166k / year

⏰ Full Time

🟠 Senior

🚔 Compliance

🕒 August 25

Sphere Labs

11 - 50

₿ Crypto

💳 Fintech

🔌 API

Head of Compliance building scalable AML/KYC/KYB programs for Sphere Labs' crypto-native cross-border payments infrastructure. Leading investigations, SAR filings, transaction monitoring, SOPs, and compliance operations.

🇺🇸 United States – Remote

💵 $180k - $220k / year

💰 $5M Venture Round - Sphere on 2024-12

⏰ Full Time

🔴 Lead

🚔 Compliance

🕒 August 25

Zai Lab

1001 - 5000

🏥 Healthcare

🧬 Biotechnology

💊 Pharmaceuticals

Senior Director leading global CMC regulatory strategy for Zai Lab’s small-molecule and biologic therapies. Managing submissions, health-authority interactions, regulatory risk, and CMC professionals.

🇺🇸 United States – Remote

💵 $258k - $320k / year

💰 $857.5M Post-IPO Equity on 2021-04

⏰ Full Time

🟠 Senior

🚔 Compliance

🗣️🇨🇳 Chinese Required