Security Compliance Lead: Audit-Driven & Automation

1Kosmos

Edison (NJ)

On-site

USD 110,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
401(k)
Paid time off
Professional development budget
Certification reimbursement

Job summary

1Kosmos in Edison, NJ is seeking an IT & Information Security Compliance Manager to own and strengthen our security posture across SOC 2, ISO 27001, FedRAMP High, and NIST. This hands-on leadership role is not a CISO; it focuses on audit readiness, control implementation, IT governance, and continuous improvement of compliance programs.

You will automate evidence collection using Drata or Vanta and collaborate with IT Operations and Engineering to embed security controls in cloud and

Qualifications

  • 6+ years of experience in IT security, compliance, or risk management within a SaaS or regulated technology environment.
  • Proven experience managing SOC 2 and ISO 27001 programs end-to-end; exposure to FedRAMP High or NIST 800-53 is a plus.
  • Hands-on use and administration of Drata, Vanta, Tugboat Logic, or equivalent compliance automation platforms.
  • Familiarity with AWS/Azure/GCP cloud environments, identity & access management, and IT operations.
  • Strong technical understanding of security controls: network, endpoint, access, configuration management, logging/monitoring, vulnerability management.
  • Excellent documentation and communication skills — able to translate control requirements into clear operational actions.
  • Experience leading internal or external audits and managing evidence collection efficiently.
  • Based in (or willing to relocate to) Edison, NJ and work on-site with our leadership and operations teams.

Responsibilities

  • Lead and maintain enterprise security and compliance programs aligned with SOC 2, ISO 27001/27002, FedRAMP High, and NIST 800-53/171 frameworks.
  • Build and manage automated compliance monitoring and evidence collection through Drata, Vanta, or equivalent platforms; integrate these with internal systems (ticketing, HRIS, cloud providers, etc.).
  • Prepare for and manage SOC 2 Type I/II, ISO audits, and FedRAMP readiness assessments: gap analysis, documentation, remediation, and control testing.
  • Partner with IT Operations and Engineering to ensure security controls are embedded in infrastructure, cloud, network, and identity systems.
  • Maintain and update security policies, SSPs, POA&Ms, and other audit documentation.
  • Oversee incident response, change management, and vendor risk programs to ensure consistent compliance coverage.
  • Manage relationships with external auditors and compliance assessors.
  • Define and track metrics for audit readiness, risk posture, and compliance automation efficiency.
  • Stay current with evolving compliance frameworks and technologies that can improve assurance automation.
  • Champion security awareness, training, and continuous improvement across the organization.

Skills

IT security
compliance
risk management
SOC 2
ISO 27001
FedRAMP High
NIST 800-53
Drata
Vanta
Tugboat Logic
cloud security
identity & access management
auditing
documentation

Tools

Drata
Vanta
Tugboat Logic

Job description

1Kosmos in Edison, NJ is seeking an IT & Information Security Compliance Manager to own and strengthen our security posture across SOC 2, ISO 27001, FedRAMP High, and NIST. This hands-on leadership role is not a CISO; it focuses on audit readiness, control implementation, IT governance, and continuous improvement of compliance programs.

You will automate evidence collection using Drata or Vanta and collaborate with IT Operations and Engineering to embed security controls in cloud and

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

IT & Information Security Compliance Manager (Automation & Certifications)
IT & Information Security Compliance Manager (Automation & Certifications)

1Kosmos • Edison (NJ)

On-site
USD 110,000 - 160,000
Health insurance
401(k)
Paid time off
+2
Security Compliance Automation Lead
Security Compliance Automation Lead

ServiceNow • Mountain View (CA)

Hybrid
USD 180,000 - 240,000
IT & Security Operations Lead (SOC 2 & Compliance)
IT & Security Operations Lead (SOC 2 & Compliance)

Kaiser Permanente • Walnut Creek (CA)

Hybrid
USD 120,000 - 180,000
Competitive salary
Equity ownership
Comprehensive health coverage
+2
Security & Compliance Engineer: ISO 27001 & SOC 2 Expert
Security & Compliance Engineer: ISO 27001 & SOC 2 Expert

Volta • Palo Alto (CA)

On-site
USD 140,000 - 190,000
Competitive salary
Equity in Volta
Health, wellbeing and insurance
+2
Security & Privacy Compliance Lead
Security & Privacy Compliance Lead

10a Labs • Washington

On-site
USD 120,000 - 160,000
Senior Security & Compliance Engineer
Senior Security & Compliance Engineer

Advanced Operations Partners • United States

On-site
USD 140,000 - 190,000
Senior Security & Compliance Analyst
Senior Security & Compliance Analyst

GEODIS • Brentwood (TN)

On-site
USD 110,000 - 160,000
Health, dental, vision insurance
401(k) match
Paid maternity/parental leave
+2
Senior InfoSec & Compliance Lead
Senior InfoSec & Compliance Lead

Triwill Group • United States

On-site
USD 133,000 - 211,000
Health coverage
401(k) with company match
Generous vacation days
+1
Data Center Security & Compliance Lead
Data Center Security & Compliance Lead

Corporate Tools LLC • Des Moines (IA)

On-site
USD 110,000 - 120,000
Employer-paid health, dental & vision
401(k) with company match
Annual raise and performance review
+4
Security Compliance Engineer
Security Compliance Engineer

ANAUTICS INC • Oklahoma City (OK)

On-site
USD 80,000 - 100,000