Information Security Manager / Compliance

Remote: 
Full Remote
Contract: 
Work from: 

Offer summary

Qualifications:

Proven experience in information security management and compliance., Strong knowledge of SOC2, PCI DSS, and FedRAMP standards., Experience with cloud security, IAM, and incident response., Excellent communication skills to foster a security culture across the organization..

Key responsibilities:

  • Develop and implement security and compliance strategies aligned with industry best practices.
  • Maintain SOC2 certification and lead initiatives for PCI DSS and FedRAMP compliance.
  • Oversee the company's security infrastructure and conduct risk assessments.
  • Lead the Security Operations Center and implement security awareness training programs.

Wallarm. API & App Security Integrated logo
Wallarm. API & App Security Integrated Computer Hardware & Networking Scaleup https://www.wallarm.com/
51 - 200 Employees
See all jobs

Job description

Short facts about us:

  • We are a global remote-first team of 100+ people on 4 continents and in 10+ countries.

  • We have been protecting our clients since 2016.

  • The company has raised over $10M in investments.

  • More than 200 customers around the world, including Fortune 500, Nasdaq, and high-growth startups choose Wallarm to protect their API and web applications.

  • The company passed Y Combinator, the most prestigious incubator in Silicon Valley, from which Dropbox, Stripe, Docker, etc. came out.

Our product:

Wallarm API security solutions provide proven performance to support innovative companies serving millions of users and billions of API requests per month. Hundreds of Security and DevOps teams globally use Wallarm daily to:

  1. Discover. See every asset across your entire attack surface—from cloud environments to every API endpoint with auto-discovery capabilities.

  2. Protect. A single suite that goes beyond OWASP Top 10 for full coverage for API specific threats, account takeover, malicious bots, L7 DDoS, and more.

  3. Respond. Streamline incident response with complete visibility, smart triggers, and active threat verification.

  4. Test. Automate security testing of your APIs and web assets. Prioritize remediation for every asset, in every environment.

The role:

We are looking for an Information Security Manager to lead and enhance our internal security and compliance strategy. You will be responsible for improving our security posture, maintaining existing certifications such as SOC2, and obtaining PCI DSS and FedRAMP compliance. This role is crucial in ensuring that our security infrastructure meets the highest industry standards while fostering a strong security culture across the company.

In this role you will:

  • Develop and implement security and compliance strategies to align with industry best practices.

  • Maintain and enhance our SOC2 certification, ensuring continuous compliance with security controls.

  • Lead initiatives to achieve and maintain PCI DSS and FedRAMP compliance, including documentation, audits, and process improvements.

  • Oversee the company’s security infrastructure, including cloud security, endpoint protection, identity and access management (IAM), and incident response.

  • Conduct risk assessments, vulnerability management, and threat analysis to mitigate security risks proactively.

  • Lead the Security Operations Center (SOC) and collaborate with DevOps teams to ensure effective security monitoring and incident response.

  • Implement security awareness training programs to educate employees on best security practices.

  • Work with legal, compliance, and regulatory teams to ensure adherence to industry regulations.

  • Lead third-party security assessments and manage security relationships with vendors and partners.

  • Establish and track key security metrics to measure and improve security performance.

  • Stay up to date with emerging security threats, vulnerabilities, and regulatory requirements.

Required profile

Experience

Industry :
Computer Hardware & Networking
Spoken language(s):
English
Check out the description to know which languages are mandatory.

Other Skills

  • Collaboration
  • Communication
  • Leadership

IT Security Manager Related jobs