
1001 - 5000 employés
Fondée en 2023
🤝 B2B
💼 Conseil
💰 €2 018 785 Seed Round - Ascend en 2025-02
B2B • Consulting
Ascend est une plateforme moderne qui s'associe à des cabinets d'expertise comptable entrepreneuriaux, apportant les ressources et les avantages d'un grand cabinet comptable tout en préservant l'indépendance de chaque cabinet. Soutenu par la société de capital-investissement axée sur les personnes Alpine Investors et fondé en janvier 2023, Ascend fournit du capital de croissance, l'acquisition et le développement de talents, une technologie transformative, un système de leadership catalytique, des services partagés de back-office, et des incitations au capital modernisées pour aider les cabinets comptables régionaux à se développer. La société est déjà reconnue comme l'un des 25 meilleurs cabinets par Accounting Today.
🕒 il y a 7 jours
🗣️🇺🇸🇬🇧 Anglais requis
Azure
Cyber Security
Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

1001 - 5000 employés
Fondée en 2023
🤝 B2B
💼 Conseil
💰 €2 018 785 Seed Round - Ascend en 2025-02
B2B • Consulting
Ascend est une plateforme moderne qui s'associe à des cabinets d'expertise comptable entrepreneuriaux, apportant les ressources et les avantages d'un grand cabinet comptable tout en préservant l'indépendance de chaque cabinet. Soutenu par la société de capital-investissement axée sur les personnes Alpine Investors et fondé en janvier 2023, Ascend fournit du capital de croissance, l'acquisition et le développement de talents, une technologie transformative, un système de leadership catalytique, des services partagés de back-office, et des incitations au capital modernisées pour aider les cabinets comptables régionaux à se développer. La société est déjà reconnue comme l'un des 25 meilleurs cabinets par Accounting Today.
• Own the enterprise cybersecurity strategy and multi-year roadmap, sequencing initiatives against partner-firm seasonality (tax deadlines) and the broader TST (Technology Stack Transition) integration timeline; present strategy and progress to the Vice President, Technology Infrastructure & Cybersecurity. • Define, track, and report a concise set of security metrics and program-maturity indicators (NIST CSF 2.0 function scores, MTTD/MTTR, patch/vulnerability SLA attainment, phishing failure rate, control coverage) to executive leadership on a fixed cadence. • Develop and manage the cybersecurity budget for tooling, MSSP/vendor contracts, and headcount, keeping security cost transparent and competitive across partner firms. • Manage relationships and contracts with managed security service providers and security vendors (e.g., Microsoft, CrowdStrike), securing preferred pricing and early access to product roadmaps and preview programs. • Own endpoint detection and response (CrowdStrike Falcon), security monitoring and log management, vulnerability management, and email security across Ascend and all partner firms. • Serve as incident commander for cybersecurity incidents; maintain and test the incident response plan through regular tabletop exercises, and lead post-incident reviews and remediation to closure. • Establish detection coverage, alert triage, and escalation standards, and determine the right outsourced-vs.-in-house MSSP model for 24x7 monitoring. • Define vulnerability and patch SLAs by asset criticality and partner with infrastructure and service-desk teams to ensure remediation lands; engage a qualified external firm to conduct periodic penetration testing. • Own the governance, risk, and compliance program, including enterprise risk assessments and security policies and standards aligned to NIST CSF 2.0. • Own the full SOC 2 Type II audit lifecycle — control design, evidence collection, and auditor management — sustaining a clean attestation through each annual observation period. • Respond to client security questionnaires and due-diligence requests in support of partner-firm engagements, maintaining a reusable evidence library to shorten turnaround. • Manage PCI DSS compliance for payment acceptance across Ascend and its partner firms, and own the third-party and vendor risk management program, including security review of new tools prior to adoption. • Define and enforce identity and access management standards in Microsoft 365 and Entra ID, including conditional access, multifactor authentication, and privileged access management. • Advance the Zero Trust architecture across Zscaler ZIA/ZPA and the Azure Virtual Desktop environment managed through Nerdio, and ensure the security of tax production platforms (CCH Axcess, UltraTax) throughout the client-data lifecycle. • Establish and own the AI governance program: acceptable use policy, AI tool and model risk assessment, data-protection standards for client data in AI systems, and an intake process that moves at the speed of the business. • Define and enforce security controls for agentic AI, including identity and least-privilege access for AI agents, monitoring of AI tool usage, and security review of third-party AI vendors and integrations before they touch client data. • Lead cybersecurity due diligence for acquisitions, surfacing material risk before close, and own the security workstream of the TST process for newly acquired partner firms; build a repeatable integration playbook that shortens time-to-secure as acquisition volume grows. • Build, manage, and develop a team of security engineers and analysts; set priorities, define performance standards, grow team capabilities, and hire A-players into key security seats. • Own the security awareness training and phishing simulation program across all partner firms, tracking and driving down phishing failure rates and reporting human-risk metrics alongside technical metrics.
• 10+ years in information security, with 5+ years leading security teams or programs. • Experience securing professional services, financial services, or other regulated environments handling sensitive client data; experience in a hypergrowth, acquisition-driven, multi-entity environment strongly preferred. • Deep working knowledge of NIST CSF 2.0, SOC 2 Type II (including managing annual audit cycles), and PCI DSS. • Familiarity with AI security and governance, including the NIST AI Risk Management Framework and securing agentic/LLM-based systems. • Hands-on depth across EDR, SIEM, identity and access management, email security, and Zero Trust/SSE platforms. • Demonstrated incident response leadership, including incident command and executive communication during active incidents. • Strong vendor management and budget ownership experience. • CISSP, CISM, or equivalent certification preferred; Azure security certifications a plus.
• Health insurance • 401(k) plans • Flexible work arrangements • Professional development opportunities • Equipment allowances
Postuler Maintenant🕒 il y a 7 jours
Remote Security Captain providing operational support for security services in Kuparuk oil field. Supervising personnel and ensuring compliance with health, safety, and security standards.
🗣️🇺🇸🇬🇧 Anglais requis
🕒 il y a 7 jours
Cybersecurity Principal Engineer at The Home Depot focusing on AI-driven security and fraud detection. Leading implementations of AI security frameworks to protect sensitive data.
🇺🇸 États-Unis – Télétravail
💵 $170 000 - $240 000 / an
💰 Debt Financing en 2007-07
⏰ Temps Plein
🔴 Expert
👮♂️ Cybersécurité / Ingénieur Sécurité
🗣️🇺🇸🇬🇧 Anglais requis
🕒 il y a 8 jours
Principal Information Security Architect at Highmark Health designing and advancing secure data architectures. Collaborating with various teams to protect sensitive information across its lifecycle.
🇺🇸 États-Unis – Télétravail
💵 $129 100 - $214 500 / an
💰 €5 000 000 Grant en 2021-05
⏰ Temps Plein
🔴 Expert
👮♂️ Cybersécurité / Ingénieur Sécurité
🦅 Parrain de Visa H1B
🗣️🇺🇸🇬🇧 Anglais requis
🕒 il y a 8 jours
Staff Defensive Security Software Engineer focused on developing deception capabilities within NodeZero for cybersecurity solutions. Collaborating across teams to enhance detection and response reliability.
🇺🇸 États-Unis – Télétravail
💵 $240 000 - $270 000 / an
⏰ Temps Plein
🔴 Expert
👮♂️ Cybersécurité / Ingénieur Sécurité
🗣️🇺🇸🇬🇧 Anglais requis
🕒 il y a 8 jours
Cybersecurity Manager leading design, implementation, and improvement of cybersecurity programs protecting systems and data. Collaborates with internal teams and manages external partners in security operations.
🗣️🇺🇸🇬🇧 Anglais requis
Cloud
Cyber Security