IT Security Manager
Mixpeek
Who we are: Sardine is the leading agentic risk platform for fighting financial crime. Our integrated solution unifies data across risk teams to help organizations stop fraud in real time, prevent AI-driven attacks, and automate fraud and AML operations. Sardine’s platform is strengthened by one of the fastest-growing fraud consortiums in the market, spanning more than 6 billion profiled devices, 800 million consumers, and 3 million businesses worldwide. Leading companies including FIS, GoDaddy, Intuit, Edward Jones, ZoomInfo, and Checkout.com rely on Sardine to secure and grow trust in their products. Our culture: We have hubs in the Bay Area, NYC, Austin, Toronto, and São Paulo. However, we maintain a remote-first work culture. #WorkFromAnywhere We hire talented, self-motivated individuals with extreme ownership and high growth orientation. We value performance and not hours worked. We believe you shouldn't have to miss your family dinner, your kid's school play, friends get-together, or doctor's appointments for the sake of adhering to an arbitrary work schedule. Location: Remote - US From Home / Beach / Mountain / Cafe / Anywhere! We are a remote-first company with a globally distributed team. You can find your productive zone and work from there. About the role As Security Compliance Lead, you own Sardine’s security compliance and GRC function end-to-end and reduce risk to our environment through effective communication, partnership, and program ownership. You are the primary point of contact for auditors, regulators, and industry stakeholders, and you partner with engineering, IT, product, security, and legal teams to run successful compliance and review exercises across multiple frameworks. This is a senior, hands-on ownership role. You set how the compliance program runs rather than executing a plan handed to you, and you are accountable for keeping Sardine continuously audit- and customer-ready. You also lead and develop the team, with a Security Compliance Analyst reporting to you and room to grow the function as Sardine scales. What you’ll do Own compliance planning and the compliance program across SOC 2 Type II, PCI DSS (Level 1 Service Provider), ISO 27001, GDPR, CCPA, and DORA — responsible for the program’s design and direction, not only its execution. Drive Sardine's FedRAMP effort by working toward authorization, coordinating NIST SP 800-53 control implementation, 3PAO assessment, and continuous monitoring across engineering and IT. Serve as the primary interface to auditors, regulators, and industry stakeholders, and partner with internal engineering, IT, product, security, and legal teams to drive reviews to clean outcomes. Present objectives, scope, and results to senior management and the board (via the CISO), clearly articulating the business impact of control gaps in a highly professional and proficient manner. Own the control framework — including rationalizing overlapping controls across standards into a coherent, evidence-efficient set — and the security policy and standards library. Own the risk picture — the risk register, risk quantification, and reporting cadence — and validate that actions taken to address risks are appropriate and reported accurately. Own the customer assurance and trust program — security questionnaires, attestations, and trust artifacts — so security review does not block deals. Manage evidence and drive improvement — coordinate the assimilation of evidence, scans, and artifacts, and lead process improvements in response to findings from regulators, internal and external quality reviews, and maturity assessments. Build product and technical fluency — understand Sardine’s platform and architecture well enough to ground control design and risk decisions in how the technology actually works, and to engage engineering and product as a peer. Look for creative, alternative solutions that promote consistency and unlock streamlining and automation opportunities. Produce executive-ready work — high-quality documentation and presentations, and well-run meetings with regulators and internal stakeholders where you set the objectives, plan, and content. Lead and develop the team — starting with a Security Compliance Analyst — setting priorities, reviewing work, mentoring, and scaling the function as obligations grow. What we’re looking for 7+ years in security compliance, GRC, or audit, including end-to-end ownership of audit or certification programs (SOC 2, PCI DSS, and/or ISO 27001). Deep knowledge of security and privacy frameworks — PCI DSS, SOC 2, ISO 27001, GDPR/CCPA, and DORA; familiarity with control frameworks such as NIST CSF and CIS. Technical and product comfort — able to build fluency in a technical product (e.g., device intelligence, behavioral biometrics, transaction monitoring) and hold your own with engineering and product teams. Excellent communication — strong written and verbal skills, executive-ready documentation, and credible presence with auditors, regulators, and leadership. Fast-paced, high-growth experience — fintech or payments strongly preferred given Sardine’s PCI Level 1 service provider obligations. Able to work as a leader, a partner, and an individual contributor as the situation calls for, and to travel as needed. People leadership — experience leading, mentoring, or managing others, or clear readiness to step into managing a direct report. Bonus points Direct experience running a PCI DSS Level 1 service provider program. Operational resilience — hands-on exposure to DORA requirements. Tooling — familiarity with GRC and security tooling (compliance automation platforms such as Vanta; HRIS such as Rippling) and with macOS environments. Benefits we offer: Generous compensation in cash and equity Early exercise for all options, including pre-vested Work from anywhere: Remote-first Culture Flexible paid time off and Year-end break Health insurance, dental, and vision coverage for employees and dependents - US and Canada specific 4% matching in 401k / RRSP - US and Canada specific MacBook Pro delivered to your door One-time stipend to set up a home office — desk, chair, screen, etc. Monthly meal stipend Monthly social meet-up stipend Annual health and wellness stipend Annual Learning stipend Join a fast-growing company with world-class professionals from around the world. If you are seeking a meaningful career, you found the right place, and we would love to hear from you. To learn more about how we process your personal information and your rights in regards to your personal information as an applicant and Sardine employee, please visit our Applicant and Worker Privacy Notice. #J-18808-Ljbffr
- ...Anthropic is seeking a personal security program manager to support the GSIS function. Reporting to the Protective Service Senior Manager, you will work within the established framework to execute a defined slice of policies, processes, and reporting to enable scale....Suggested
- ..., a medical robotics company in Westchester County, NY, seeks a Manager, Information Technology to support and maintain Clarapath’s technology... ...computing environment, working closely with the Director of IT. The ideal candidate brings strong technical expertise across...Suggested
- ...more details.The Global Director of Autonomous Cyber Defense and Security Event Triage leads the strategy, execution, and continuous... ...alignment with the strategic designOversee budget planning, vendor management, and financial governance for global cyber operations tooling,...SuggestedFull timeWork at officeLocal areaRemote work1 day per week
$141.92k - $212.89k
...Regulatory Authority) is the largest independent regulator of securities firms doing business in the United States. Our mission is to protect... ...that translate into tangible preparedness and incident management improvements.What You'll Do: Lead High-Impact Engagements: Design...SuggestedFull timeTemporary workFor contractorsFor subcontractorLocal areaImmediate start$148.2k - $292.3k
Position Summary As a Full Stack Engineer Manager in Deloitte Cyber’s Digital Trust & Privacy practice, you will operate at the... ...engineering teams, and communicate effectively with business, security, privacy, legal, and compliance stakeholders.Recruiting for this...SuggestedLocal areaVisa sponsorship$134.5k - $265.1k
...cybersecurity challenges and opportunities by delivering solutions and managed services that reduce complexity, strengthen resilience, and... ...development. You will design, implement, and optimize secure, outcome-focused solutions while collaborating across teams to...Local areaVisa sponsorship$260k
...team to play a key role in our cyber incident response, crisis management, and regulatory defense practice. We advise companies as they... ...advise cybersecurity companies on legal compliance related to security research and threat intelligence activities. We are looking for...Temporary workWork from homeFlexible hours$160k - $275k
...Canada is seeking a Technical Information Security Officer to provide US regional... ...to cybersecurity operations and incident management.Lead development and maturity of threat intelligence... ..., Interpersonal Relationship Management, IT Security Architecture, Performance...Full timeFlexible hours$155.6k - $306.8k
Position Summary Technical Resilience FDE Manager As a Manager, AI Engineering (Forward Deployed Engineer) in Deloitte Cyber,... ...production bars for evaluation, guardrails, observability, reliability, security, and cost/performance management• Building automated controls...Local areaRemote work$165k - $175k
...the Vice President, Corporate Technology, with formal people-management responsibility for a small distributed team of onshore employees... ...across two complementary domains: corporate technology security, spanning identity and access management, endpoint protection,...Contract workFor contractorsWork at officeLocal areaRemote workWorldwide2 days per week3 days per week$189.2k - $372.9k
Position Summary Technical Resilience FDE Senior Manager As a Senior Manager, AI Engineering (Forward Deployed Engineer) in Deloitte... ...— evaluation, guardrails, observability, reliability, security, and cost/performance management — across multiple solutions or...Local areaRemote work- ...Forward Financing is seeking a Manager, Security Operations to defend our infrastructure, SaaS, and endpoints by building and leading a team of security engineers. You will drive AI security strategy, incident response, and risk assessments while collaborating with cross...Remote work
$105.4k - $207.8k
...Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to... ...reviews, threat modeling, control assessments, approvals, exception management, and go-live governance.Support the integration of security...Local areaWorldwideVisa sponsorship- ...FDNY), seeks a full-time Chief Information Security Officer in the Bureau of Technology... ...technologies are adequately protected. Risk Management: Identify, assess, and mitigate... ...Leadership: Manage and direct a team of IT security professionals, providing guidance...Full timeWork at office
$105.4k - $207.8k
...navigate an evolving threat landscape through scalable, resilient security operations solutions. In this hands-on role, you will support... ...SecOps architectures for security information and event management (SIEM) and security orchestration, automation, and response (SOAR...Local areaVisa sponsorship- ...Chief Information Security Officer The Fire Department, City of New York (FDNY), seeks... ...technologies are adequately protected. Risk Management: Identify, assess, and mitigate... ...Leadership: Manage and direct a team of IT security professionals, providing guidance...Full timeLocal area
- ...Defense Logistics Agency in the United States seeks a Branch Chief for Vulnerability Management within the Technology Foundation Services (TFS) division. You will lead a technical team, translating mission priorities into high-quality deliverables and coordinating with...
$134.5k - $265.1k
...landscape. Through powerful solutions and managed services that simplify complexity, we enable... ...confidence, and proactively manage to secure success.Recruiting for this role ends on 1... ...processes, internal control risk management, IT controls and related standardsResponsible...Local areaVisa sponsorship- ...The Information Technology group delivers secure, reliable technology solutions that... ...will have in this role:Being a member of IT Cybersecurity & Platform Engineering team... ...change history and disciplined lifecycle management.Your Primary Responsibilities:AI Channel...Remote workFlexible hours
$107.5k - $204.5k
...Program Information Systems Security Manager (ISSM) - Tucson, AZ Date Posted 2026-08-19 Country United States of America Location US-AZ-TUCSON... ...with internal/external Customers, Information Technology (IT) and other Raytheon Business Units Experience working with the...Contract workTemporary workWork experience placementWork at officeRemote workRelocation packageFlexible hours- ...RTX in Tucson, AZ is seeking a Program Information Systems Security Manager (ISSM) to lead cybersecurity oversight for DoD programs. This on-site role requires active DoD RMF/JSIG compliance, ongoing training, and IAM Level III certification progress. You will manage...
- ...Leidos in Virginia is seeking an Information System Security Manager (ISSM) to oversee the cybersecurity posture of DoD information systems, develop and implement security policies, conduct RMF-based risk assessments, and manage ATO processes for cloud and on‑premise...
$107.9k - $195.05k
...Defense Sector at Leidos is looking for an Information System Security Manager (ISSM) to support a fast-paced program with the Air Force Life... .... This role involves supporting the delivery of comprehensive IT and support services to ensure mission success while adhering...Remote workNight shift- ...Description MBL Technologies, Inc. offers a diverse set of management and technology consulting services to Federal government and commercial... ...MBL Technologies is seeking an experienced Information System Security Manager (ISSM) to provide cybersecurity leadership and...Remote work3 days per week
$100k - $110k
...focuses exclusively on system-level cybersecurity governance, Risk Management Framework (RMF) compliance, and continuous monitoring to... ...Responsibilities: Serve as the formally appointed Information Systems Security Manager (ISSM) for up to four contractor-managed Information...Hourly payContract workFor contractorsWork at officeLocal area- ...Description Information System Security Manager (ISSM) Location: Onsite 3-5 days a week Key Responsibilities Lead and oversee RMF execution across assigned systems, programs, or enclaves Direct Authority to Operate (ATO) activities and ensure required documentation is...3 days per week
- ...Decision Point Security, Inc Cybersecurity Compliance Analyst Remote·Full time Company website We are looking for a driven, mid-level... ...This role bridges the gap between technical engineering and Risk Management Framework (RMF) compliance by conducting in-depth NIST 800-53...Full timeRemote workHome office
$163.4k - $322.1k
Position Summary Deloitte is seeking a Senior Manager to lead how clients secure their Google Cloud Platform (GCP) cloud and artificial intelligence (AI) estates across large-scale transformation initiatives. This role advises executive stakeholders on cloud and...Local areaVisa sponsorship- ...Supervising Associate to oversee the CTF Analysts, drive incident detection and triage, and guide performance in a high‑velocity security operations environment. You’ll work within a hybrid EY model, coordinating with the Technical Lead and global leadership to align...Shift work
- ...environments. You will perform threat hunting, cloud incident response, and digital forensics to accelerate detections and strengthen security posture. Collaborate with engineering and security teams to analyze vulnerabilities, develop automation playbooks, and map...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to IT Security Manager. Be the first to apply!

