Senior InfoSec Lead: Compliance & Risk Orchestrator

Orbital Witness

New York (NY)

On-site

USD 190,000 - 230,000

Full time

11 days ago
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Orbital is hiring a senior NYC-based InfoSec Lead to own security due diligence, compliance, and vendor risk end-to-end. The role focuses on bringing the function in-house, automating DDQs, and strengthening our compliance framework as we scale.

You'll collaborate with Engineering, Product, and Legal to embed security requirements and ensure policy documentation stays current. Prior IC leadership and experience with ISO 27001 and SOC 2 Type 2 are highly valued.

Qualifications

  • Significant senior in-house or scale-up InfoSec leadership experience.
  • Experience owning due diligence, vendor reviews and compliance end-to-end.
  • Strong understanding of cloud security; IT/SWE/DevOps background preferred.
  • Proven track record of scaling due-diligence processes and automating DDQs.
  • Working knowledge of privacy laws (GDPR/CCPA/US state) and cross-functional partnership.

Responsibilities

  • Own our InfoSec strategy and roadmap; scale security and compliance.
  • Own the risk program: identify, assess and remediate risks; maintain the risk register.
  • Own third-party risk assurance and DDQ processes; drive client and vendor assessments.
  • Maintain compliance certifications (ISO 27001, SOC 2 Type 2) and governance artifacts.
  • Partner with Engineering, Product and Legal to embed security into product development.

Skills

InfoSec leadership
Vendor risk management
Cloud security
ISO 27001
SOC 2
Privacy law knowledge

Job description

Orbital is hiring a senior NYC-based InfoSec Lead to own security due diligence, compliance, and vendor risk end-to-end. The role focuses on bringing the function in-house, automating DDQs, and strengthening our compliance framework as we scale.

You'll collaborate with Engineering, Product, and Legal to embed security requirements and ensure policy documentation stays current. Prior IC leadership and experience with ISO 27001 and SOC 2 Type 2 are highly valued.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior InfoSec Lead: Scale Security & Compliance
Senior InfoSec Lead: Scale Security & Compliance

Telemetry Today LLC • New York (NY)

Hybrid
USD 180,000 - 240,000
InfoSec Lead: Secure Growth & Compliance
InfoSec Lead: Secure Growth & Compliance

Orbital • Northern (KY), New York (NY)

Hybrid
USD 180,000 - 260,000
InfoSec Lead
InfoSec Lead

Orbital • Northern (KY), New York (NY)

Hybrid
USD 180,000 - 260,000
InfoSec Lead
InfoSec Lead

Telemetry Today LLC • New York (NY)

Hybrid
USD 180,000 - 240,000
InfoSec Lead
InfoSec Lead

Orbital Witness • New York (NY)

On-site
USD 190,000 - 230,000
Senior Information Security & Compliance Lead (ISO27001/SOC)
Senior Information Security & Compliance Lead (ISO27001/SOC)

Dexory • United States

Hybrid
USD 122,000 - 163,000
Private healthcare
Life insurance
Income protection
+5
Security Operations Lead - SOC2, Vendor Risk, SF Office
Security Operations Lead - SOC2, Vendor Risk, SF Office

Opal Security • San Francisco (CA)

On-site
USD 120,000 - 200,000
Remote Information Security Lead - Compliance & Platform
Remote Information Security Lead - Compliance & Platform

United States Digital Space LLC • United States

Remote
USD 180,000 - 240,000
Remote work: 100% remote
Equity: generous equity package
Mentorship from top VCs
+6
Senior InfoSec Strategy & Risk Leader
Senior InfoSec Strategy & Risk Leader

OMNIVISION • Santa Clara (CA)

On-site
USD 181,000 - 230,000
Remote Security Compliance Lead - SOC 2, PCI, ISO 27001
Remote Security Compliance Lead - SOC 2, PCI, ISO 27001

Sardine • United States

On-site
USD 140,000 - 230,000
Remote-first culture
Health insurance
401k / RRSP matching
+2