Remote Security Compliance Lead - SOC 2, PCI, ISO 27001

Sardine

United States

On-site

USD 140,000 - 230,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Benefits offered by this job

Remote-first culture
Health insurance
401k / RRSP matching
MacBook Pro provided
Home office setup stipend

Job summary

Sardine is seeking a Security Compliance Lead to own our security compliance and GRC program end-to-end, reducing risk through collaboration with engineering, IT, product, security, and legal. You’ll be the primary contact for auditors and regulators and will mentor a growing team as Sardine scales.

This senior, hands-on role requires ownership of program design, ongoing readiness for audits, and the ability to articulate business impact of control gaps to executives.

Qualifications

  • 7+ years in security compliance, GRC, or audit with end-to-end ownership of audit or certification programs (SOC 2, PCI DSS, and/or ISO 27001).
  • Deep knowledge of security and privacy frameworks (PCI DSS, SOC 2, ISO 27001, GDPR/CCPA, DORA) and related control frameworks (NIST CSF, CIS).
  • Technical and product fluency to ground control design in the platform and collaborate with engineering and product teams.

Responsibilities

  • Own compliance planning and the program across SOC 2 Type II, PCI DSS Level 1, ISO 27001, GDPR/CCPA, and DORA.
  • Drive FedRAMP effort, coordinate control implementation, 3PAO assessment, and continuous monitoring with engineering and IT.
  • Interface with auditors, regulators, and stakeholders; lead reviews with cross-functional teams.
  • Present objectives and results to senior management and the board with clear business impact.
  • Own the risk picture, risk register, and reporting cadence; ensure actions address risks appropriately.
  • Lead customer assurance programs— security questionnaires, attestations, and trust artifacts.

Skills

Security compliance
GRC
Audit programs
Regulatory knowledge
Technical fluency
Communication
Leadership
Travel flexibility

Tools

Vanta
Rippling
GRC tooling

Job description

Sardine is seeking a Security Compliance Lead to own our security compliance and GRC program end-to-end, reducing risk through collaboration with engineering, IT, product, security, and legal. You’ll be the primary contact for auditors and regulators and will mentor a growing team as Sardine scales.

This senior, hands-on role requires ownership of program design, ongoing readiness for audits, and the ability to articulate business impact of control gaps to executives.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Remote Security Compliance Leader GRC & Audit
Remote Security Compliance Leader GRC & Audit

Sardine • Northern (KY)

Hybrid
USD 140,000 - 210,000
Generous compensation
Remote-first culture
Health insurance
+5
Security Compliance Manager USA
Security Compliance Manager USA

Sardine • Northern (KY)

Hybrid
USD 140,000 - 210,000
Generous compensation
Remote-first culture
Health insurance
+5
Remote Compliance Lead — SOC 2, ISO 27001 & PCI DSS
Remote Compliance Lead — SOC 2, ISO 27001 & PCI DSS

Cyber74 • United States

On-site
USD 110,000 - 130,000
Flexible Responsible Time Off Policy
Company provided training and growth opportunities
401k with Safe Harbor employer match
+1
Senior Security Compliance Lead - PCI DSS & SOC 2 (Remote)
Senior Security Compliance Lead - PCI DSS & SOC 2 (Remote)

Entrust • United States

On-site
USD 90,000 - 120,000
Senior GRC Program Lead - SOC 2, GDPR & Security
Senior GRC Program Lead - SOC 2, GDPR & Security

Tandem Inc. • Draper (UT)

Hybrid
USD 110,000 - 170,000
On-site gym
Flexible PTO
Redo perks: monthly ecommerce credit
+2
Security & Compliance Leader for SaaS & Privacy
Security & Compliance Leader for SaaS & Privacy

Code and Theory • New York (NY)

On-site
USD 140,000 - 175,000
Remote Compliance Engineering Lead — Automate SOC 2 & ISO 27001
Remote Compliance Engineering Lead — Automate SOC 2 & ISO 27001

Socket • United States

On-site
USD 180,000 - 270,000
Market competitive salary bands
Meaningful equity program
Comprehensive health benefits for you/
+3
SOC 2 Compliance Lead - GRC & PCI DSS Expert
SOC 2 Compliance Lead - GRC & PCI DSS Expert

United States Digital Space LLC • United States

Remote
USD 120,000 - 180,000
Security & Compliance Leader: SOC 2 & ISO 27001 Expert
Security & Compliance Leader: SOC 2 & ISO 27001 Expert

Dipp AI Technologies • New York (NY), Northern (KY)

Hybrid
USD 180,000 - 260,000
Compliance & Audit Manager, Enterprise Security
Compliance & Audit Manager, Enterprise Security

Clutch Canada • United States

On-site
USD 102,000 - 172,000
Health and wellness coverage
401(k) plan with match
Flexible vacation policy
+1