Head of Trust and Security

Stelle nicht auf LinkedIn

🕒 vor 21 Tagen

🇺🇸 Vereinigte Staaten – Remote

💵 $190.000 - $210.000 / Jahr

⏰ Vollzeit

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🦅 H1B-Visum-Sponsor

info

🗣️🇺🇸🇬🇧 Englisch erforderlich

Jetzt Bewerben
Ähnliche Remote-Jobs finden

📊 Überprüfen Sie Ihre Lebenslauf-Bewertung für diese Stelle

Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

Logo of Filevine

Filevine

201 - 500 Mitarbeiter

☁️ SaaS

⚖️ Rechtswesen

🤖 Künstliche Intelligenz

💰 €108.000.000 Series D im 2022-04

SaaS • Legal • Artificial Intelligence

Filevine ist eine umfassende Rechts-Technologieplattform, die eine breite Palette von Dienstleistungen bietet, die auf Anwaltskanzleien und juristische Fachkräfte zugeschnitten sind. Die Plattform bietet Lösungen für das Fallmanagement, Dokumentenmanagement und Vertragsmanagement sowie Leadmanagement und Geschäftsanalysen. Mithilfe fortschrittlicher KI-Technologien verbessert Filevine den juristischen Arbeitsablauf mit Tools wie DemandsAI, ImmigrationAI und FilevineAI zur Automatisierung von Aufgaben und Steigerung der Produktivität. Es integriert sich nahtlos mit beliebten Tools wie QuickBooks und Gmail und sorgt so für ein vollständiges Legal-Tech-Stack. Filevine bietet auch eSignature-Funktionen, Zeit- und Abrechnungsfunktionen sowie ein Kundenportal zur Förderung der Kommunikation. Die Plattform wird von verschiedenen Arten von Anwaltskanzleien genutzt, darunter Personenschaden, Familienrecht, Massenschäden und mehr, und ist bekannt für ihre robusten Sicherheitsstandards und Compliance-Zertifizierungen wie SOC 2 Typ II und HIPAA.

Beschreibung

• Own Filevine’s FedRAMP 20x Moderate strategy, delivery plan, certification readiness, and ongoing compliance posture. • Lead the design and execution of FedRAMP evidence automation, continuous monitoring, and reporting required for Marketplace certification and sustained authorization. • Serve as the single-threaded owner for FedRAMP engagements with 3PAOs, the FedRAMP PMO, agency stakeholders, and internal executive sponsors. • Set the roadmap and priorities for dedicated FedRAMP engineering resources, ensuring regulatory requirements become shipped technical controls, automated evidence, and operationally sustainable processes. • Own POA&M governance, risk acceptance workflows, certification readiness reporting, and remediation planning across product and platform teams. • Ensure FedRAMP implementations are pragmatic, risk-based, technically grounded, and appropriately scoped for Filevine’s architecture, maturity, and business priorities. • Provide clear, consistent executive reporting on progress, risk, tradeoffs, dependencies, resourcing needs, and certification readiness. • Drive governance for vulnerability findings from scanning tools, penetration tests, customer reviews, audits, and bug bounty programs, including risk adjustment, remediation ownership, escalation, and executive tradeoff decisions. • Maintain a single source of truth for security/compliance status, control gaps, remediation commitments, and customer-facing trust claims. • Ensure trust center materials, customer security responses, sales enablement messaging, and public compliance claims are accurate, current, and defensible. • Translate privacy obligations and customer commitments into product, engineering, and operational requirements. • Support AI and data governance efforts by ensuring privacy, security, and customer trust requirements are reflected in product and operational decisions. • Drive alignment between compliance goals, engineering capacity, product strategy, customer commitments, and business risk.

🎯 Anforderungen

• Bachelor’s degree or equivalent practical experience. • 10+ years of experience in security compliance, GRC, product/program leadership, privacy, trust, or related roles within SaaS, cloud, or high-trust technology environments. • Direct ownership of FedRAMP Moderate, FedRAMP High, FedRAMP 20x, or a comparable federal cloud authorization program. • Proven experience translating regulatory, security, and privacy requirements into technical implementation plans with engineering teams. • Experience leading complex, cross-functional initiatives with executive visibility, ambiguous requirements, and multi-quarter delivery timelines. • Experience partnering with security engineering, infrastructure, product, legal, audit, and customer-facing teams. • Deep knowledge of FedRAMP, NIST 800-53, FedRAMP 20x automation concepts, continuous monitoring, POA&M governance, 3PAO engagement, and federal cloud authorization workflows. • Strong working knowledge of security and compliance frameworks such as SOC 2, ISO 27001, HIPAA, PCI-DSS, and customer security review processes. • Strong working knowledge of privacy operations, consent management, data governance, DSR workflows, subprocessors, DPAs, retention, and privacy-by-design practices. • Ability to translate regulatory and security requirements into actionable, value-driven product and engineering work. • Strong product and program management expertise, including roadmap development, prioritization, milestone definition, and executive reporting. • Pragmatic, analytical approach to risk management and decision-making in fast-paced environments. • Excellent stakeholder management, written communication, and executive presence. • Comfort operating with dedicated engineering resources while remaining accountable for prioritization, clarity, outcomes, and risk-based tradeoffs.

🏖️ Vorteile

• Medical, Dental, & Vision Insurance (for full-time employees) • Competitive & Fair Pay • Maternity & paternity leave (for full-time employees) • Short & long-term disability • Opportunity to learn from a dedicated leadership team • Top-of-the-line company swag

Jetzt Bewerben

Ähnliche Jobs

🕒 vor 21 Tagen

Logicalis GmbH

201 - 500

💼 Beratung

📦 Logistik

🏥 Gesundheitswesen

Professional Services Consultant responsible for delivering network solutions to enterprise clients using Fortinet products. Engaging with PMO and RMO to ensure project success while maintaining client satisfaction.

🇺🇸 Vereinigte Staaten – Remote

💵 $90.000 - $122.000 / Jahr

⏰ Vollzeit

🟠 Senior

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 21 Tagen

Confluent

1001 - 5000

🤖 Künstliche Intelligenz

☁️ SaaS

Join Confluent as a Staff Security Risk & Compliance Program Manager overseeing access management. Lead strategic direction and enforce security protocols for the data streaming platform.

🇺🇸 Vereinigte Staaten – Remote

💵 $222.100 - $261.000 / Jahr

💰 Secondary Market im 2021-06

⏰ Vollzeit

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🦅 H1B-Visum-Sponsor

info

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 22 Tagen

C Cubed Capital Partners, LLC

1 - 10

💸 Finanzen

💳 Fintech

⚖️ Rechtswesen

Director of IT & Cybersecurity leading enterprise IT operations and cybersecurity for C Speed, LLC. Managing IT staff, overseeing projects, and ensuring compliance with security standards.

🇺🇸 Vereinigte Staaten – Remote

⏰ Vollzeit

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Azure

Cloud

Cyber Security

DNS

Firewalls

🕒 vor 22 Tagen

iRhythm Technologies, Inc.

1001 - 5000

🏥 Gesundheitswesen

💼 Beratung

📦 Logistik

Product Security Manager ensuring FDA compliance and conducting security risk assessments for medical devices at iRhythm. Collaborating with multiple teams to enhance the security lifecycle.

🇺🇸 Vereinigte Staaten – Remote

💵 $127.000 - $165.000 / Jahr

⏰ Vollzeit

🟠 Senior

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Cloud

Cyber Security

SDLC

🕒 vor 22 Tagen

Tonal

501 - 1000

👥 B2C

🔧 Hardware

Director of IT & Security at Tonal managing end-to-end IT operations and ensuring compliance with security regulations. Leading a team while collaborating with senior leadership to meet the company’s objectives.

🗣️🇺🇸🇬🇧 Englisch erforderlich