Group Security & Compliance Manager

Job not on LinkedIn

🔥 1 minute ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Ionic Partners

Ionic Partners

11 - 50 employees

🏢 Enterprise

🤝 B2B

☁️ SaaS

Enterprise • B2B • SaaS

Ionic Partners is focused on helping mature, successful companies navigate the '2nd Chasm', a phase beyond the early majority in the Technology Adoption Curve where growth flattens. By creating a horizontal platform, they aim to merge similar '2nd Chasm' companies to scale, innovate with modern products, build with experienced leaders, and take their solutions global. Their mission is to assist companies in finding new markets and customer bases to rejuvenate business growth and avoid traditional decline.

📋 Description

• Lead customer security reviews, RFPs, RFIs, and questionnaires, turning around accurate, complete responses fast enough to keep deals moving • Stand up and maintain a customer-facing trust portal (SafeBase / Vanta / Drata or equivalent), including a dedicated AI/ML section • Own SOC 2 Type II program management, driving audits across portfolio companies (including Sparkrock's Type II conversion and CXT scoping), coordinating evidence with the Senior Group Security Engineer, and managing auditor relationships • Author and maintain security policies and documentation, including DPAs, sub-processor lists, and incident-communication templates • Own AI compliance and trust, including AI questionnaire responses, AI sub-processor management, framework tracking (EU AI Act, ISO 42001, NIST AI RMF), AI use disclosure, AI acceptable-use policy, and AI incident-comms playbooks • Run third-party vendor security reviews and renewals • Build and deliver internal security awareness training, and onboard customers through the required security setup • Draft and coordinate customer-facing incident communications, including breach/incident notifications with legal and engineering

🎯 Requirements

• 6+ years in security GRC, customer trust, or SaaS compliance. • Excellent spoken and written English. Articulate, polished, and credible in live calls with enterprise customers and third parties — this person represents the group externally. • SOC 2 audit experience as a primary point of contact (Type II strongly preferred). • Working understanding of cloud security concepts — able to read and translate technical findings, not produce them. • Awareness of the AI compliance landscape and willingness to own it. • CISSP / CISA / CIPP/E; Vanta / Drata / SafeBase experience. • PE-backed or multi-portfolio background. • ISO 42001 / NIST AI RMF familiarity; EU AI Act awareness.

🏖️ Benefits

• We are 100% remote and global. Live your best life wherever that may be, and never lose out on career opportunities because of it. • Flexible work hours. We work asynchronously and don’t care when you’re online, just that you deliver great results and are there for our customers. • We are dedicated to your growth with consistent and meaningful feedback, support in achieving your personal career goals, and access to leading-edge tools, playbooks, and technology to amplify your experience. • Introductions to thought leaders in the space and webinars on cutting-edge tech hot topics. • Stipend to help set up your ideal home office • Focus on culture: coffee chats, happy hours, cooking classes, book clubs, and more!

Apply Now

Similar Jobs

🔥 9 hours ago

Marathon Talent

1 - 10

💼 Consulting

🏥 Healthcare

📦 Logistics

Application Security Engineer focused on application security and vulnerability management at a fintech startup. Collaborates with DevOps and Software Development teams to enhance IT systems security.

Cloud

Kubernetes

Microservices

Go

🕒 July 4

Cashea

501 - 1000

💳 Fintech

🛍️ eCommerce

👥 B2C

Incident Response Engineer responsible for investigating security incidents and operating SIEM. Joining Cashea to enhance financial inclusion for Venezuelans with a buy now, pay later model.

🗣️🇪🇸 Spanish Required

Python

🕒 July 3

Cashea

501 - 1000

💳 Fintech

🛍️ eCommerce

👥 B2C

Data Security Engineer focused on safeguarding data for Cashea's financial inclusion mission. Collaborates on technical controls in GCP with various teams.

🗣️🇪🇸 Spanish Required

Cloud

Google Cloud Platform

Python

🕒 July 1

Silver.dev

1 - 10

🎯 Recruiter

👥 HR Tech

🤝 B2B

Senior security engineer at Canals securing production systems through risk assessments, tooling, and incident response. Leading remediation efforts, working in a remote-first environment with a focus on high-growth.

🕒 June 30

Cashea

501 - 1000

💳 Fintech

🛍️ eCommerce

👥 B2C

Semi-Senior Security & GRC Engineer enhancing ISMS for Cashea, a fintech promoting financial inclusion. Responsibilities include risk management and compliance with ISO/IEC 27001 standards.

🗣️🇪🇸 Spanish Required

Cloud