Are you passionate about cybersecurity, compliance, and protecting organizations from evolving security risks? We're seeking an experienced Compliance & Enterprise Security Manager to lead our organization's security strategy, regulatory compliance initiatives, and business continuity planning.
In this high-impact leadership role, you'll ensure compliance with PCI DSS, SOC2, and other industry standards while driving enterprise-wide security initiatives that protect critical systems, data, and business operations.
What You'll Do
As the Compliance & Enterprise Security Manager, you will:
- Lead and maintain compliance with PCI DSS, SOC2, and other applicable security and regulatory standards.
- Partner with internal and external auditors to successfully complete compliance audits and remediate findings.
- Develop, implement, and maintain enterprise security policies, procedures, and security controls.
- Continuously evaluate and strengthen the organization's overall cybersecurity posture.
- Oversee penetration testing efforts and coordinate vulnerability remediation activities.
- Develop and lead incident response plans, ensuring the organization is prepared to respond quickly and effectively to security events.
- Create, maintain, and regularly test comprehensive business continuity and disaster recovery plans.
- Manage vendor security reviews and ensure third-party compliance with organizational standards.
- Collaborate with HR and IT to ensure secure onboarding and offboarding processes.
- Stay current on emerging cybersecurity threats, regulatory changes, and industry best practices.
- Provide executive leadership with regular reporting on compliance status, security risks, and organizational readiness.
What We're Looking For
Required Qualifications
- Bachelor's degree in Computer Science, Information Security, Cybersecurity, or a related field.
- 5+ years of experience in enterprise security, information security, compliance, cybersecurity, or a similar leadership role.
- Strong experience with PCI DSS and SOC2 compliance frameworks.
- Deep understanding of enterprise security controls, risk management, and security governance.
- Experience developing incident response, disaster recovery, and business continuity programs.
- Excellent project management, analytical, and problem-solving skills.
- Strong communication skills with the ability to collaborate across technical and business teams.
Preferred Qualifications
- Professional certifications such as CISSP, CISM, CISA, PCI ISA, or equivalent.
- Experience leading security audits and managing regulatory compliance initiatives.
- Knowledge of modern cybersecurity technologies, vulnerability management, and risk assessment methodologies.
What Success Looks Like
- Organizational compliance with PCI DSS, SOC2, and other regulatory requirements.
- A strong, proactive security posture that minimizes organizational risk.
- Effective incident response processes that reduce downtime and business impact.
- Tested business continuity and disaster recovery plans that ensure operational resilience.
- Strong partnerships with internal teams, auditors, and vendors to support a secure operating environment.
Why Join Us?
This is an opportunity to make a measurable impact by leading enterprise security initiatives that protect the business while helping shape the future of our compliance and cybersecurity strategy. If you're a strategic security leader who enjoys solving complex challenges and building resilient organizations, we'd love to hear from you.
Ascendo is a certified minority owned staffing firm, and we welcome and celebrate diversity.
Ascendo is an Equal Opportunity Employer and does not discriminate on the basis of race, color, religion, sex (including pregnancy and gender identity), national origin, political affiliation, sexual orientation, marital status, disability, genetic information, age, parental status, military service or any other characteristic protected by federal, state or local law