Get more replies from employers
Send a job-specific resume in minutes.
FullSuite is seeking an experienced Information Security Manager to lead our cybersecurity strategy, oversee daily security operations, and protect our critical infrastructure, data, and applications. You will bridge the gap between business priorities and technical defense—managing security policies, risk assessments, compliance frameworks, and incident response efforts.
You will drive governance, incident response, and vendor risk management across cloud-based environments, working with
FullSuite is the expert data quality partner behind AI-native private market startups. We scale judgment across their workflows and data pipelines, keeping the AIs behind the world’s high‑stakes transactions truthful from MVP to maturity. Since 2018, FullSuite has kept over 1.2 million documents decision‑grade, across $50 billion in assets serviced.
As we scale, we are seeking an experienced Information Security Manager to lead our cybersecurity strategy, oversee daily security operations, and protect our critical infrastructure, data, and applications. In this role, you will bridge the gap between business priorities and technical defense—managing security policies, risk assessments, compliance frameworks, and incident response efforts.
Governance and Policy: Develop, enforce, and update company-wide information security policies and procedures aligned with industry standards (SOC 2, ISO 27001, and GDPR).
Incident Response: Lead the incident response team, manage security incident protocols, and conduct post‑incident root‑cause analysis.
Compliance and Audits: Ensure compliance with applicable standards (e.g., SOC 2,GDPR, ISO 27001) and act as the primary point of contact for external audits.
Risk Management: Conduct regular risk assessments, vulnerability scans, and third‑party vendor security reviews to prioritize and mitigate risks.
Security Architecture & Tools: Oversee security tools and partner with IT/DevOps to embed security into cloud and system architectures.
Team Leadership and Culture: Manage, mentor, and grow the security team while driving company‑wide security awareness and phishing training programs.
Experience: 5+ years in cybersecurity, with at least 2+ years in a team lead or managerial capacity.
Education: Bachelor’s degree in Cybersecurity, Computer Science, IT, or equivalent practical experience.
Certifications (At least one required/preferred): CISM, CISSP, CRISC, or CISA.
Technical Knowledge: Deep understanding of cloud security (AWS/Azure/GCP), network security, identity management, and threat landscapes.
Communication: Ability to explain complex technical risks in clear, business‑focused terms to non‑technical stakeholders and leadership.
Preferred Qualifications: Hands‑on experience preparing an organization for SOC 2 Type II or ISO 27001 certification from scratch and Background in software development security (DevSecOps) or secure code review.