Principal Security & Compliance Advisor, Outpost

🕒 vor 5 Tagen

🇺🇸 Vereinigte Staaten – Remote

💵 $150.000 - $180.000 / Jahr

⏰ Vollzeit

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

Jetzt Bewerben
Ähnliche Remote-Jobs finden

📊 Überprüfen Sie Ihre Lebenslauf-Bewertung für diese Stelle

Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

Logo of Pliancy

Pliancy

51 - 200 Mitarbeiter

🏢 Unternehmen

☁️ SaaS

🔐 Sicherheit

Enterprise • SaaS • Security

Pliancy ist ein technologiegestütztes Dienstleistungsunternehmen, das IT-Lösungen für mutige, aufstrebende Unternehmen bietet. Pliancy, spezialisiert auf hochgradige, technologiegestützte IT-Dienste, bietet umfassende Dienstleistungen inklusive E-Mail-, Dateiverwaltung, Identitätsmanagement, Sicherheit und Berichterstellung, damit sich Unternehmen auf ihre Kernaufgaben konzentrieren können, ohne sich um ihre täglichen Technologieoperationen sorgen zu müssen. Das Unternehmen wird von einem Team kreativer und empathischer IT-Experten geleitet und erfüllt die SOC2-Standards, um Datensicherheit zu gewährleisten. Sie bringen einen menschenzentrierten, hochgradigen Ansatz für Cloud-Services und bieten Architektur, Umbauten und Audits, um Verschwendung und Kosten zu reduzieren. Pliancy bietet auch einen fractional IT Director-Service, mit dem hochwachsende Unternehmen ihre technischen Initiativen mit langfristigen Zielen in Einklang bringen können. Ihr "Grow Together"-Programm arbeitet mit zukunftsorientierten Gründern zusammen, um skalierbare Systeme zu entwerfen und aufzubauen.

Beschreibung

• Serve as a senior security and compliance advisor for Outpost clients, with an emphasis on finance firms, including VC, PE, hedge funds, family offices, both ERAs and RIAs, and other investment firms, as well as select technology and biotech startups. • Lead consultative client conversations around governance, risk, controls, compliance readiness, secure AI adoption, security roadmaps, vendor selection, audit preparation, DDQs, cybersecurity insurance, incident preparedness, and operational workflows. • Translate client business objectives into practical security and compliance action plans that are clear, prioritized, and realistic. • Help clients understand, evaluate, and securely adopt AI tools, including usage policies, data handling expectations, vendor risk considerations, access controls, employee guidance, and practical governance models. • Help design, document, and continuously improve Outpost’s service delivery playbooks, templates, project plans, assessment methods, and client-facing deliverables. • Deliver leadership-level roadmapping and project ownership across ongoing client engagements. • Support clients working toward or maintaining compliance with frameworks and requirements such as SOC 2, ISO 27001, NIST CSF, CIS Controls, CCPA, GDPR, HIPAA-adjacent requirements, and other relevant security or privacy obligations. • Assess and improve client processes such as onboarding, offboarding, access reviews, vendor risk management, business continuity, disaster recovery, incident response, policy management, and control monitoring. • Advise on and help implement systems and tools across categories such as compliance automation, identity and access management, endpoint security, MDR, SIEM, vulnerability management, MDM, backup and recovery, AI productivity platforms, and security awareness. • Partner with Pliancy teams to connect security and compliance recommendations to the underlying IT systems, workflows, and support model required to make them stick. • Create high-quality internal and client-facing documentation that improves clarity, repeatability, and client experience. • Share market observations, client feedback, recurring pain points, and delivery lessons with Outpost leadership to help productize the offering. • Help shape future hiring, operating processes, and service standards as Outpost grows.

🎯 Anforderungen

• 5+ years of experience in security, compliance, GRC, vCISO, security consulting, advisory, MSP/MSSP, or a comparable client-facing security role. • Strong working knowledge of security and compliance domains such as governance, risk management, control assessments, access controls, audit readiness, vendor risk, incident response, vulnerability management, business continuity, and data protection. • Experience advising executives or senior operators on security and compliance decisions. • Experience translating frameworks, audit requirements, regulatory expectations, or emerging technology risks into practical workstreams. • Familiarity with frameworks and standards such as ISO 27001, NIST CSF, NIST 800-53, CIS Controls, CCPA, GDPR, and HIPAA. • Comfort working with finance, investment management, venture capital, private equity, hedge fund, family office, startup, technology, or biotech clients. • Comfort advising clients on responsible AI usage, including secure adoption, acceptable use, data protection, vendor review, employee enablement, and business-process implications. • Ability to communicate clearly with both technical and non-technical audiences. • Strong client-service instincts, including follow-up, follow-through, responsiveness, expectation-setting, and good judgment under pressure. • Ability and willingness to properly document processes, decisions, risks, controls, assets, and recommendations. • A practical understanding of common security tooling categories, including IAM, MDM, EDR/XDR, MDR, SIEM, vulnerability management, backup and recovery, compliance automation, and security awareness platforms. • A practical understanding of how AI tools are being adopted inside modern businesses, including common risks around sensitive data, access, vendor terms, employee usage, workflow design, and governance. • Demonstrated ability to learn new technologies, client environments, and business contexts quickly. • A sense of ownership and pride in your work. • A team-centric mentality, with a focus on collaboration, communication, documentation, improving processes, and succeeding together. • Authorization to work in the United States for any employer.

🏖️ Vorteile

• Healthcare: Premiums for our base-level healthcare plan are 100% covered for employees and 50% covered for dependents, with the option to upgrade plus optional dental and vision plans. • Company-funded HRA account to help cover medical copays, deductibles, and coinsurance. • 401(k) match offered to help you plan for your long-term future. • Unlimited PTO. • Paid leave for new parents, including adoptive parents, to support your family’s growth. • Employee stock options so you can share in Pliancy’s success.

Jetzt Bewerben

Ähnliche Jobs

🕒 vor 5 Tagen

QTS Data Centers

1001 - 5000

Development Program Manager overseeing Q-Systems & Security for data centers. Engaging with project teams and ensuring operational capabilities meet design requirements.

🇺🇸 Vereinigte Staaten – Remote

⏰ Vollzeit

🟠 Senior

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 5 Tagen

Databricks

1001 - 5000

🤖 Künstliche Intelligenz

🏢 Unternehmen

☁️ SaaS

Staff Security Assurance Engineer at Databricks ensuring security compliance across cloud-based projects. Lead initiatives with high visibility and collaboration among various teams.

🇺🇸 Vereinigte Staaten – Remote

💰 €1.600.000.000 Series H im 2021-08

⏰ Vollzeit

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🦅 H1B-Visum-Sponsor

info

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 5 Tagen

DoorDash

10.000+ Mitarbeiter

🛍️ eCommerce

🚗 Transport

Lead Security Engineer serving as the main cybersecurity partner for DoorDash's Customer Support and Integrity teams. Establishing strategies to secure support operations and workflows.

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 5 Tagen

Included Health

1001 - 5000

☁️ SaaS

🤝 B2B

👥 HR Tech

Staff Cloud Security Engineer responsible for engineering and automating security controls in AWS cloud environments. Collaborate with teams to enhance cloud security posture preventing unauthorized access.

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 5 Tagen

Fullscript

201 - 500

⚕️ Krankenversicherung

🧘 Wellness

☁️ SaaS

Staff Security Engineer at Fullscript focusing on application and product security solutions. Leading security initiatives across platforms while collaborating with engineering teams.

🇺🇸 Vereinigte Staaten – Remote

💰 €240.000.000 Private Equity Round im 2021-11

⏰ Vollzeit

🔴 Experte

👮‍♂️ IT-Sicherheitsingenieur

🗣️🇺🇸🇬🇧 Englisch erforderlich