Aerospike: Provides a high-performance NoSQL database for real-time applications.
10+ YOE3+ Mgmt10+ years in security with hands-on corporate and product security, 3+ years managing teams, SOC 2 Type II experience, cloud security knowledge, incident response, vendor and risk management, strong executive and board communication.
Mintlify: AI-powered platform for generating and hosting software documentation.
3+ YOE3+ years GRC/compliance program management with direct audit ownership, hands-on Drata (or Vanta) administration, vendor and auditor management, strong follow-through and automation bias.
Senior Security Compliance Analyst - Global Security Organization
San Jose, California, United States
$112k-$162k/yrOnsiteFull Time
TikTok: Global short-form video hosting and social media platform.
5+ YOEExperience with GITC domains, system scoping, control testing, audit readiness, remediation, and technical configurations. Preferred: 5+ years, bachelor's degree, Python, SQL, regulatory knowledge, and relevant certifications.
interface.ai: AI-powered automation platform for banks and credit unions.
Deep security and compliance experience (SOC 2, PCI, HIPAA), hands-on coding and automation, data/PII protection for AI systems, BS/BA in Computer Science required, builder mindset, San Francisco onsite, H1B transfers welcome.
Casca: AI-powered loan origination and processing platform for financial institutions.
5+ YOE5+ years in progressive security roles (2+ years in B2B/fintech preferred); strong secure SDLC, cloud security (AWS/GCP), web security, DevSecOps, SOC 2/ISO 27001 experience, incident response, and people management.
Hevo Data: Automated no-code data pipeline platform for real-time analytics.
5+ YOE5+ years in security or compliance engineering; hands-on SOC 2 Type II audit ownership; cloud security (AWS/GCP/Azure); GRC tooling experience; strong written communication and policy authorship skills.
SOC 2 Type II, ISO 27001, GDPR, CCPA, AWS, GCP, Azure, Sprinto, Tugboat Logic, GRC, CI/CD, infrastructure-as-code, DevSecOps, SDLC, IAM
STN: Provides high-performance GPU infrastructure, cloud, and managed IT services.
5+ YOE5+ years in information security or security engineering, SOC 2/ISO 27001/FedRAMP experience, cloud and network security, IAM, incident response, and strong written communication; CISSP/CISM/CCSP preferred.
Harvey: AI platform for legal research and document analysis.
3+ YOE3+ years information security compliance experience in SaaS/cloud; strong knowledge of government and industry frameworks; maintaining compliance documentation, evidence coordination, remediation tracking, and clear technical communication. U.S. citizenship required.
United States or San Francisco or Sunnyvale or Raleigh or Seattle or Boston or London or Lisbon or Bengaluru or Dublin or Kyiv or California or Europe or United Kingdom or Switzerland
RemoteFull Time
SingleStore: Provides a distributed SQL database for real-time analytics.
3+ YOERequires 3+ years in security, privacy, or compliance; 2+ years in a technology company; framework, audit, risk, control, cloud, and cross-functional compliance experience. Bachelor's degree and professional certifications preferred.
ISO/IEC 27001, SOC 2 Type II, HIPAA, PCI DSS, GDPR, CCPA, DORA, EU AI Act, NIST AI RMF, ISO/IEC 42001
WindBorne Systems: Operates smart weather balloons to provide global atmospheric data.
3+ YOE3+ years in compliance audits and US government compliance; experience with CMMC, FedRAMP, NIST frameworks; security, cloud, and GRC tooling expertise; ability to obtain security clearance.
Drata, Vanta, eMASS, Tenable Security Center, Burp, SIEM, AWS, Azure
HEN Technologies: Building an AI-powered intelligent ecosystem for fire suppression.
12+ YOE4+ Mgmt12+ years in information security with 4+ years leading a security function; SOC 2 leadership; strong cloud (GCP) and product security experience; hands-on technical credibility with IaC/CI/CD and vendor risk/IR processes.
4+ YOE4+ years leading ISO 27001 audits or equivalent security/compliance experience; familiarity with GCP, AI architectures, data governance; security certifications (CISSP, CISA, CIA, CISM); BS in Business/MIS or equivalent experience; strong communication skills.
GCP, ISO 27001, ISO 27017, ISO 27018, ISO 42001, PCI, AICPA SOC, NIST 800-53
Concord or Raleigh or New York or Fairfield or Atlanta or Bellevue or Charlotte or Spokane or Austin or Dallas or Portland or San Francisco or San Diego or Santa Clara or Santa Ana or Arvada or Los Angeles or Sacramento or Oakland or Roseville or Fresno
$200k-$225k/yrOnsiteFull Time
Swinerton: National commercial construction firm providing building and management services.
15+ YOE7+ MgmtLead enterprise cybersecurity, compliance, privacy and risk programs; 15+ years IT/cybersecurity experience, 7+ years people leadership, experience with auditable compliance programs and vendor management.
ServiceNowNYSE: NOW: Enterprise cloud platform for digital workflow automation.
8+ YOEUS citizenship and 8+ years in information security focused on compliance and risk management; bachelor's degree; security frameworks, cloud security, AWS, risk remediation, and stakeholder communication expertise.
Volta: Building and operating GPU-dense infrastructure for AI factories.
3+ YOE3+ years in information security with compliance/GRC/audit experience, hands-on ISO 27001 or SOC 2 work, GRC platform experience, risk assessment skills, strong writing and collaboration with engineers.
Topcon Positioning GroupTokyo Stock Exchange: 7732: Sells precision positioning and workflow automation for industrial sectors.
3+ YOEBachelor’s degree in Electronics, Information Systems, Engineering, or related field; 3+ years in compliance, security engineering, risk management; familiarity with CE, RED, FCC, ANATEL; cybersecurity and certification experience.
Delaware or Greenville or Charlotte or San Francisco or New York City
$160k-$275k/yrOnsiteFull Time
SoFiNasdaq: SOFI: Mobile-first platform for banking, lending, and investment services.
10+ YOERequires 10–12+ years in financial services, securities compliance expertise, strong regulatory analysis and communication skills; degree and Series 7, 24, 63, 65 or 66 preferred.
Novotech: Global clinical research services for biotech drug development.
Bachelor's degree and significant IT compliance, governance, risk, information security, quality, or regulated technology experience. Requires audit, ISMS, ISO 27001, GxP, vendor compliance, and cross-functional stakeholder experience.
ServiceNow, Microsoft SharePoint, Smartsheet, Microsoft 365, GRC platforms