Technical Program Manager | SOC2 Compliance
Job Description
About Trust Lab
Online misinformation, hate speech, child endangerment, and extreme violence are some of the world's most critical and complex problems. Trust Lab is a fast-growing, VC-backed startup, founded by ex-Google, TikTok and Reddit executives determined to use software engineering, ML, and data science to tackle these challenges and make the internet healthier and safer for everyone.Â
If you’re interested in working with the world’s largest social media companies and online platforms, and building technologies to mitigate these issues, you’ve come to the right place.
About the Role
We are looking for an experienced and driven Compliance Manager who is looking to put their auditing experience, technical expertise, and information security knowledge to plan, execute, and deliver on existing and strategic new compliance certifications. As our Compliance Manager, you will play a key role in building scalable and efficient processes related to corrective actions, product compliance, and the overall compliance framework. The right person will be excellent at communicating vertically and horizontally across the company and will be comfortable explaining TrustLab's compliance posture to both internal and external customers, working cross-functionally, and providing technical and creative guidance to technical teams.
What You'll Do
- Drive Compliance programs such as SOC2 and ISO 27000 series; support and drive both compliance and customer audits
- Query security lake data and log data to identify and debug security issues
- Triage security/SOC2 alerts from systems such as Vanta and Security Hub while making efficient use of engineering and DevOps resources
- Provide compliance guidance on new product features, deviations, and changes in the infrastructure
- Communicate gaps to management and coordinate cross-functional team meetings to remediate and close the control gaps
- Build relationships with internal and external stakeholders
- Accurately and effectively communicate our compliance position and programs to auditors and customers
Who You Are
- You have led a SOC2 Compliance program. Knowledge of other compliance frameworks (SOC, ISO 27001, GDPR, NIST 800-53) a strong plus
- You have worked with Vanta or a similar platform
- Strong familiarity with the AWS ecosystem and the ability to work with security solutions offered by AWS, such as WAF, Security Hub, Security Lake, etc...
- BS degree in Business or Management Information Systems or related field OR equivalent work experience
- 6+ years experience in an equivalent technology risk and compliance-related role
- QSA, CISA, CIA, CISSP or other related certifications a plus
- Experience working with and implementing GRC tools and processes
- Excellent written, verbal communication and presentation skills
- Big 4 Experience, Management Consulting Experience, or Startup Experience preferred
- Willingness to wear different hats and work on areas where needed
- Amazing organizational skills with a drive to succeed in a fast-paced environment
- Ability to hustle, get stuff done, and has strong integrity
Opportunities and Perks
- Competitive total compensation package with stock options at a rapidly growing Series A, VC-backed startup
- Work from home office support to create the perfect at-home setup
- Individual wellness stipend
- Professional development opportunities
- Influence new product direction from idea to commercialization
- Help develop critical tech to solve one of the 21st century’s trickiest societal problems
Date Posted
02/28/2024
Views
0
Similar Jobs
Engineering Manager - Flow
Views in the last 30 days - 0
Flow is a technologydriven company specializing in multifamily apartment buildings aiming to improve living experiences through innovative solutions T...
View DetailsInside Sales & Technical Support Specialist - Gator Bio
Views in the last 30 days - 0
Gator Bio headquartered in Palo Alto CA is a leading developer and manufacturer of BioLayer Interferometry BLI instrumentation and consumable products...
View DetailsSenior Product Manager - Instrumental
Views in the last 30 days - 0
Instrumental is seeking a Senior Product Manager with extensive experience in enterprise SaaS products or deep domain expertise in electronics manufac...
View DetailsSenior FP&A Manager (25033-B-840-FIN) - ArsenalBio
Views in the last 30 days - 0
Arsenal Biosciences Inc is a clinicalstage company developing advanced CAR Tcell therapies for solid tumors They are seeking a Senior FPA Manager to w...
View DetailsManager, Site Reliability Engineering - Zoox
Views in the last 30 days - 0
Zoox is seeking a Site Reliability Engineering Manager to lead and grow the team ensuring the reliability scalability and performance of the companys ...
View DetailsSenior Staff Simulation Engineer - Wisk
Views in the last 30 days - 0
Wisk Aero is seeking a Senior Staff Simulation Engineer to join their Flight Physics Vehicle Modeling FPVM team The role involves designing implementi...
View Details