Security & Compliance Lead — Build Our Foundational GRC

Litehouse

Northern (KY)

Hybrid

USD 120,000 - 190,000

Full time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Remote-first
Professional development
Flexible PTO
Direct leadership exposure
Own security program

Job summary

Litehouse is seeking a Security & Compliance Lead to own the compliance program across SOC 2 and GDPR. You will verify security controls, manage audits, and coordinate with engineering, auditors, and clients to ensure controls meet requirements.

Ideal candidates have 4+ years in GRC, relevant certifications, and hands-on IaC review experience. This remote-friendly role offers autonomy in a lean, distributed team and scope for growth into Head of Security or CISO.

Qualifications

  • 4+ years in security and compliance (GRC) with hands-on ownership of a compliance program.
  • Certification: CISSP, CIPP CIPPE/E, CISA, CCSP, Security+, or Azure/AWS security cert.
  • Ability to read Terraform and cloud configs (Azure preferred).
  • Experience administering SOC 2 programs and GRC platforms (Vanta/Drata/Secureframe).
  • Knowledge of GDPR and UK GDPR program mechanics: RoPA, DPAs, DPIs and sub-processor management.
  • Strong written communication between auditors, engineers, and clients.

Responsibilities

  • Own Litehouse's SOC 2 audit cycle and vendor risk management.
  • Manage GDPR program activities including DPIAs, DPAs, and sub-processor management.
  • Maintain security policies and respond to enterprise client security questionnaires.
  • Coordinate incident response and breach notification timing per GDPR and SOC 2 timelines.
  • Verify security controls by reviewing infrastructure as code and cloud configurations.
  • Collaborate with engineering, external auditors, and advisory partners to close gaps.

Skills

GRC security experience
Infra‑as‑code familiarity
Strong written communication

Education

CISSP or equivalent security certification

Tools

Vanta
Drata
Secureframe

Job description

Litehouse is seeking a Security & Compliance Lead to own the compliance program across SOC 2 and GDPR. You will verify security controls, manage audits, and coordinate with engineering, auditors, and clients to ensure controls meet requirements.

Ideal candidates have 4+ years in GRC, relevant certifications, and hands-on IaC review experience. This remote-friendly role offers autonomy in a lean, distributed team and scope for growth into Head of Security or CISO.

Get your free, confidential resume review.
or drag and drop your file here.