
11 - 50 employees
Founded 2019
🔒 Cybersecurity
☁️ SaaS
🔌 API
💰 $20M Series A on 2022-04
Cybersecurity • SaaS • API
Doppler is a cloud platform that offers centralized secrets management, allowing organizations to securely manage, orchestrate, and govern secrets and non-human identities at scale. It integrates with popular DevOps tools and CI/CD frameworks to automate secrets management within the development workflow. Doppler provides a unified interface that minimizes the need for direct cloud provider access and enhances security. The platform also features user-based pricing and SOC 2 verified compliance, making it ideal for teams of any size to manage their DevOps infrastructure securely and efficiently.
🕒 May 23
Improve your chances of getting an interview by checking your resume score before you apply.

11 - 50 employees
Founded 2019
🔒 Cybersecurity
☁️ SaaS
🔌 API
💰 $20M Series A on 2022-04
Cybersecurity • SaaS • API
Doppler is a cloud platform that offers centralized secrets management, allowing organizations to securely manage, orchestrate, and govern secrets and non-human identities at scale. It integrates with popular DevOps tools and CI/CD frameworks to automate secrets management within the development workflow. Doppler provides a unified interface that minimizes the need for direct cloud provider access and enhances security. The platform also features user-based pricing and SOC 2 verified compliance, making it ideal for teams of any size to manage their DevOps infrastructure securely and efficiently.
• Maintain Doppler's SOC 2 Type II and ISO 27001 certifications end-to-end: evidence collection, control monitoring, audit coordination, and deficiency remediation • Lead the compliance work for our next certifications, including gap assessments, policy updates, and required documentation • Evaluate additional certifications and attestations on an ongoing basis as customer and market requirements evolve • Own day-to-day administration of our GRC platform (Vanta), including control mapping, evidence workflows, and audit readiness • Lead our security working group: facilitate regular risk identification sessions, policy updates, maintain the threat register, track remediation progress, and drive accountability across teams • Design and maintain security controls mapped to our chosen frameworks (SOC 2, ISO 27001, etc.), ensuring they're practical and consistently operating • Coordinate penetration testing cycles and work directly with engineering to track and close findings • Author and maintain security policies that are enforceable and grounded in regulatory requirements (GDPR, PCI, and others relevant to a secrets management provider) • Support business continuity and disaster recovery governance • Respond to security questionnaires and RFPs promptly and accurately • Participate in customer security reviews and calls; represent our compliance posture credibly to security teams, procurement, and compliance officers • Maintain public-facing trust documentation that reflects our actual program • Partner with sales on security-sensitive enterprise deals, especially in regulated industries or where compliance is a gating factor • Translate compliance status and risk posture into clear, non-jargon updates for leadership and cross-functional stakeholders • Lead security awareness and compliance training for internal teams • Influence engineering and product roadmaps where security controls intersect with product decisions
• 5+ years in security, compliance, or GRC, with direct ownership of SOC 2 Type II and ISO 27001 programs in a cloud product environment where you've run audit cycles, not just supported them • Hands-on experience with Vanta (or a comparable GRC platform) and a genuine interest in automating compliance workflows rather than relying on spreadsheets • Technical fluency: you can read a pen test report, understand cloud architecture decisions, and have substantive conversations with engineers about control design and risk tradeoffs • Strong understanding of how auditors think, ideally from having been on the auditor side, or from running enough cycles that you've internalized their perspective • Familiarity with PCI DSS and GDPR requirements; experience with self-attestation or certification work is a strong plus • Experience supporting enterprise sales cycles where security is a procurement requirement, including responding to complex security questionnaires • Excellent communication skills across audiences. You can brief the CEO on risk posture and turn around and explain the same issue to an engineer in implementation terms • Relevant certifications (CISA, CISSP, CISM, CRISC, or equivalent) preferred.
• Equity at an early-stage, fast-growing startup • Premium health insurance (medical, dental, vision) • Guilt Free Unlimited PTO - 3-week minimum strongly encouraged! • Upward Mobility • Learning and Development Stipend • Wealth Advisor • 401k • Pregnancy & Family Leave • Fertility & Adoption Benefits • Equal Compensation (regardless of gender or race)
Apply Now🕒 May 22
Senior Governance, Risk, and Compliance Engineer at IonQ focused on cybersecurity compliance and CMMC implementation. Collaborating with teams to ensure compliance and security in quantum computing.
🇺🇸 United States – Remote
💵 $110.3k - $144.5k / year
⏰ Full Time
🟠 Senior
🚔 Compliance
🦅 H1B Visa Sponsor
🕒 May 22
Import Coordinator overseeing customs compliance and import documentation for Saks Global. Collaborating with internal and external stakeholders to streamline import processes and improve efficiency.
🇺🇸 United States – Remote
💵 $46k - $58k / year
⏰ Full Time
🟡 Mid-level
🟠 Senior
🚔 Compliance
🦅 H1B Visa Sponsor
🕒 May 22
Compliance & Ethics Specialist developing insights and training materials for patient care at iRhythm. Analyzing data and collaborating across functions to support strategic initiatives.
🕒 May 22
Senior Compliance Analyst at InvestCloud managing security and compliance controls. Collaborating with technical teams to ensure adherence to regulations and standards.
🕒 May 22
Senior Engineer overseeing audit and compliance programs at NextGen Healthcare, ensuring alignment with regulatory and security requirements. Leading audit lifecycle and optimizing GRC solutions for efficient compliance operations.
🇺🇸 United States – Remote
💰 Venture Round on 2015-02
⏰ Full Time
🟠 Senior
🚔 Compliance
🦅 H1B Visa Sponsor