Security Program Manager

🕒 November 25, 2025

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Oneleet

Oneleet

51 - 200 employees

Founded 2022

📋 Compliance

🔒 Cybersecurity

☁️ SaaS

Compliance • Cybersecurity • SaaS

Oneleet is a security and compliance SaaS platform that helps companies achieve and maintain audit-ready posture for frameworks like SOC 2, ISO 27001, HIPAA and GDPR while delivering real, continuous cybersecurity. The platform unifies controls, policies, evidence collection, and automated security tooling (attack surface monitoring, code scanning, vulnerability management) and pairs automation with expert services such as penetration testing and vCISO to both pass audits and reduce actual risk. Oneleet is designed to integrate with existing developer and cloud stacks and to turn remediation work into documented compliance evidence.

📋 Description

• Conduct initial consultation calls with new clients to assess their current security posture, infrastructure stack, compliance requirements and overall objectives. • Provide guidance and recommendations for improving client security posture • Develop high-level security programs consisting of technical, operational and administrative controls based on industry frameworks and client needs. • Collaborate with clients to customize and refine the security program to match their specific use cases. • Communicate with clients and stakeholders to ensure smooth and efficient security program creation • Liaise with auditors to ensure clients' security programs align with auditors' expectations • Maintain expertise across a range of security frameworks, control types, and technologies including NIST, SOC2, ISO27001, CMMC, AWS, Azure, GCP, Kubernetes, Docker, Terraform, and more. • Provide feedback to Oneleet's engineering team to inform development of integrations, solutions, and products that deliver on client needs. • Be highly technical, learn new technologies quickly, and translate security concepts into implementations. • Partner with internal teams to translate security programs into implementations consisting of policies, procedures, configurations and software integrations.

🎯 Requirements

• 3+ years in an information security role • Broad knowledge of security best practices, frameworks, control types, and relevant technologies. • Ability to understand client infrastructure and map security controls to meet compliance goals. • Strong analytical skills to evaluate environments and determine appropriate safeguards. • Excellent verbal and written communication skills. • Self-driven with the ability to work independently and move fast in a startup environment. • Willingness to go the extra mile to meet tight deadlines and deliver results.

🏖️ Benefits

• Comprehensive health & welless benefits • Competitive comp & equity • Generous PTO, including floating holidays to honor what matters most to you • Flexible, remote work culture • Quarterly off-sites to cool places (Amsterdam, Italy, etc).

Apply Now

Similar Jobs

🕒 November 25, 2025

NCC Group

1001 - 5000

🔒 Cybersecurity

🤝 B2B

Embedded Device Security Consultant at IOActive evaluating security for embedded devices. Collaborating with global teams to deliver high-quality results through advanced security evaluations and research.

🕒 November 25, 2025

DKSH Portugal, Unipessoal, Lda.

11 - 50

🤝 B2B

💊 Pharmaceuticals

💄 Beauty

GCP Security Architect responsible for designing secure cloud infrastructures for enterprise applications. Managing compliance and protection in a remote environment for a data-driven AI solutions firm.

🕒 November 19, 2025

Upwind Security

51 - 200

🔐 Security

☁️ SaaS

Senior GTM Talent Acquisition Manager responsible for recruitment strategy for cybersecurity roles. Partnering with hiring managers to streamline hiring for GTM teams in the US.

🕒 November 19, 2025

Softgic

51 - 200

🔒 Cybersecurity

🤖 Artificial Intelligence

Ingeniero Experto en Seguridad con especialización en SAP Security y GRC. Se requiere experiencia de +5 años en el área.

🗣️🇪🇸 Spanish Required

🕒 November 19, 2025

ThinkBAC Consulting

1 - 10

🤝 B2B

🎯 Recruiter

Lead Energy Storage Cybersecurity Engineer driving the cybersecurity program for a leading renewable energy venture. Managing compliance, risk, and scalable security operations for dynamic utility-scale projects.