SALES REPRESENTATIVE - NEW BUSINESS, PRODUCT & BRAND DEVELOPMENT

Iron Sheepdog

Indiana (PA)

On-site

USD 140,000 - 180,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Iron Sheepdog is seeking a Lead Information Security & Compliance Specialist to spearhead governance and hands-on security across our fintech workflows. You will drive SOC 2 programs, policy governance, and act as the primary security liaison for enterprise clients.

The role blends security engineering with governance, touching cloud, web, mobile, and AI security. Remote-first with periodic on-site audits in collaboration with partners.

Qualifications

  • 5+ years of SOC 2 program leadership or equivalent audit experience.
  • Proven SaaS security expertise across web, cloud, and APIs.
  • Experience as primary security contact for enterprises.

Responsibilities

  • Lead and manage SOC 2 compliance programs end-to-end.
  • Create and govern IT and information security policies.
  • Serve as client security liaison for enterprise customers.
  • Manage vendor security relations and MSP engagement.
  • Hands-on security engineering for React/Node.js codebases.
  • Oversee DevSecOps with Snyk and CI/CD pipelines.
  • Perform internal pen tests and DR planning.
  • Run AI security testing for LLM features.
  • Build company-wide security awareness training.

Skills

SOC 2
SaaS security
Enterprise security
API security
DevSecOps tooling
AI security testing
Security training
Cloud/web/mobile

Tools

Snyk
Firebase
Firestore

Job description

Location: Remote, with a preference for candidates within ~2 hours' drive of Williamsburg, VA (nice-to-have, for periodic on-site audit and consensus work).

We are seeking a highly skilled Lead Information Security & Compliance Specialist to spearhead our security initiatives and governance frameworks. In this role, you will bridge the gap between high-level compliance and hands‑on technical security engineering. You will manage our compliance pipelines, protect our fintech workflows, and champion a security‑first culture across our entire organization.

If you are a proactive security professional who thrives in SaaS environments and loves securing cutting‑edge tech ecosystems (including cloud, mobile, and AI), we want to hear from you.

Key Responsibilities
  • Compliance Leadership: Lead and manage the end‑to‑end process of achieving and maintaining our SOC 2 compliance.
  • Policy & Governance: Create, enforce, and govern comprehensive IT and Information Security policies across the entire organization.
  • Client Security Liaison: Serve as the primary security liaison for enterprise clients, confidently answering complex security questionnaires and navigating financial audits.
  • Vendor Management: Interface directly with client security teams, respond to vendor security questionnaires, and optimize our IT Managed Service Provider (MSP) relationships to dictate how we best leverage them.
  • Security Engineering: Act as a hands‑on security engineer to review and improve secure coding practices across our React and Node.js codebase, ensuring the safety of our fintech workflows.
  • Vulnerability & DevSecOps Management: Manage and monitor DevSecOps tools like Snyk to catch vulnerabilities early in the CI/CD pipeline.
  • Testing & Infrastructure Security: Conduct internal penetration tests, review Firebase/Firestore security rules, and rigorously develop disaster recovery plans.
  • AI Security Implementation: Design and execute vulnerability testing specifically for our AI features, running prompt injection tests against our LLMs and chat‑bots to ensure data integrity.
  • Security Culture: Take full ownership of company‑wide security awareness training, actively building an internal culture of vigilance and security awareness.
Job Requirements & Skills

Core Requirements (Must Have)

  • SOC 2 Expertise: Experience managing/leading the end‑to‑end process of achieving and maintaining SOC 2 compliance, OR comparable/translatable audit and compliance frameworks (e.g., ISO 27001, HIPAA, PCI‑DSS). — Recent experience preferred; minimum 5 years; multiple audits/renewals preferred.
  • SaaS & Industry Background: A proven background working within SaaS environments, with a strong preference for candidates experienced in logistics, supply chain, or short‑haul trucking platforms (specifically dealing with truck routing and fleet dispatch).
  • Enterprise Experience: Proven experience serving as a primary security contact for medium to large enterprises.
  • Ecosystem Exposure: Strong exposure to secure processes for diverse, interconnected ecosystems across web, mobile, cloud infrastructure, and APIs.

These are valued pluses, not core requirements. This role is process‑ and compliance‑led; deep hands‑on software‑security engineering is a bonus and not expected day one.

Technical & Next‑Level Requirements
  • Codebase Security: Ability to work hands‑on with React and Node.js codebases to implement secure coding practices.
  • Tooling & Testing: Direct experience with DevSecOps tools (e.g., Snyk), CI/CD pipelines, internal penetration testing, and Firestore/Firebase security rule governance.
  • AI Vulnerability Testing: Experience or strong capability in running prompt injection tests and securing LLM‑powered chatbots.
Nice to Have (Bonus Points)
  • Familiarity with cloud security, preferably within the Google Cloud Platform (GCP) and Firebase ecosystem.
  • Familiarity with modern AI security frameworks, including protecting custom AI models and securing Model Context Protocol (MCP) servers.

Success in this role means that security is seamlessly integrated into our engineering and business operations, culminating in a state where the entire company becomes thoroughly aware of the importance of security throughout everything we do.

Why Iron Sheepdog
  • Transform a Legacy Industry: Be part of a team that is revolutionizing the massive, essential short‑haul trucking industry. We’re creating an tech enabled future that addresses the entire construction materials supply chain.
  • The Iron Sheepdog Standard: Experience a unique business model where industry‑leading software is backed by a relentless commitment to personal service and operational excellence.
  • High‑Growth Environment: Experience the thrill of a scaling startup where your contributions are essential to our collective success.
  • Innovation at the Core: Join a company that values "what’s next," where we use technology to solve real‑world problems for hard‑working people.
Total Rewards Package

Iron Sheepdog is committed to offer a competitive compensation and benefits package to include salary, bonus, 401k, healthcare, dental, and PTO.

Equal Opportunity Employer

Iron Sheepdog is an equal opportunity employer and prohibits discrimination against all candidates.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Customer Success Manager
Customer Success Manager

Iron Sheepdog • Virginia (MN)

On-site
USD 90,000 - 120,000
Senior Security Assurance Analyst
Senior Security Assurance Analyst

United States Digital Space LLC • New York (NY)

On-site
USD 120,000 - 190,000
Medical, dental, and vision insurance
Mental health benefits
401(k) plan with company match
+2
Senior Security Assurance Lead - Global Compliance & Audit
Senior Security Assurance Lead - Global Compliance & Audit

United States Digital Space LLC • New York (NY)

On-site
USD 120,000 - 190,000
Medical, dental, and vision insurance
Mental health benefits
401(k) plan with company match
+2
Senior Security Engineer – Remote (US) – Competitive Salary Opportunity to work with an Ambitio[...]
Senior Security Engineer – Remote (US) – Competitive Salary Opportunity to work with an Ambitio[...]

Orbis Group • United States

Remote
USD 180,000 - 200,000
Senior Software Engineer, Security
Senior Software Engineer, Security

Nectar Social • Palo Alto (CA)

Hybrid
USD 180,000 - 240,000
Competitive compensation and early-equ
Health, vision, and dental benefits +
Sr. Security Engineer
Sr. Security Engineer

United States Digital Space LLC • Hawthorne (CA)

On-site
USD 170,000 - 265,000
Stock options
Medical coverage
Dental coverage
+5
Sr. Security Engineer
Sr. Security Engineer

United States Digital Space LLC • El Segundo (CA)

On-site
USD 170,000 - 265,000
3 weeks of paid vacation
10+ paid holidays per year
Employee stock/long-term incentives
Senior Security Engineer – Hybrid (4649)
Senior Security Engineer – Hybrid (4649)

Hireclout • Los Angeles (CA)

On-site
USD 180,000 - 200,000
Competitive compensation package
Equity participation
100% covered medical, dental, and vision coverage
+5
Staff Software Engineer - Federal
Staff Software Engineer - Federal

United States Digital Space LLC • Washington

On-site
USD 161,000 - 221,000
Lead, Cybersecurity Architecture & Operations
Lead, Cybersecurity Architecture & Operations

Culligan International • Northern (KY)

Hybrid
USD 140,000 - 180,000