Leading security and compliance at Piedmont Global as a hands-on leader. Managing security vendors, maintaining certifications, and implementing frameworks.
Responsibilities
Serve as the primary administrator for Vanta.
You will manage continuous compliance monitoring daily, triage failing tests, automate evidence collection, and ensure our security posture remains audit-ready year-round.
Own the relationships with third-party security vendors.
You will hold vendors accountable to SLAs, ensure they deliver high-quality work, and conduct security reviews for new software procurement.
Serve as the primary point of contact for audits.
Maintain our ISO 27001 certification and lead the hands-on implementation for future compliance initiatives such as SOC 2 Type II and HITRUST.
Partner directly with Software Engineering and DevOps to configure cloud security controls in AWS, review Infrastructure as Code, and integrate security tools into the SDLC.
Manage day-to-day security operations, including vulnerability management, incident response, and access control reviews.
Act as a subject matter expert internal business units, helping them understand and navigate security requirements in government and healthcare contracts.
Partner closely with the IT Support team to design and validate secure configuration standards for laptops and mobile devices.
Requirements
5+ years of experience in Information Security, GRC, or Security Engineering.
Hands-on experience managing compliance automation platforms like Vanta is highly preferred.
Proven experience helping an organization achieve or maintain frameworks like ISO 27001 or SOC 2.
Strong technical background with exposure to cloud native environments, identity management, and modern SaaS platforms.
Experience managing external vendors or contractors and holding parties accountable for deliverables and quality.
You understand that security exists to support the business, not slow it down.
You are pragmatic and skilled at right-sizing controls that support business needs while maintaining compliance.
Exposure to Government (FedRAMP, CMMC) or Healthcare (HIPAA) compliance environments.
You’ve worked at software companies where security was mission critical.
You know what it looks like when security is a core part of the product offering.
System Security Manager overseeing vulnerability management and compliance for critical systems at Agile5 Technologies. Driving security improvements and collaborating across project teams.
Security Guard responsible for protecting clients and staff at The Providence Center. Involves patrolling facilities, reporting incidents, and maintaining security protocols.
Corporate Security Manager ensuring safety and security of employees and assets at Vodafone. Responsible for implementing security policies and coordinating security personnel in an international environment.
Process & Information Security Manager responsible for IT governance and security at ilem, based in Casablanca. Leading ISO 27001 compliance and improving security practices.
Cyber Security Service Owner for Exposure & Vulnerability Management at ASSA ABLOY. Leading the performance and evolution of exposure management services globally.
Site Security Officer responsible for ensuring security compliance and managing risks. Collaborating in an international context at Saab Underwater Systems in Linköping or Motala.
Internship role developing skills in Information Security at Atlantic Union Bank. Engaging in real assignments and gaining practical work experience with mentoring and training.
Corporate Security Intern at Atlantic Union gaining practical work experience in security and safety management. Involvement with physical security systems and contributing to security strategy.
Information Security Intern participating in security monitoring, threat analysis, and policy development. Engaging in hands - on projects to develop skills in information security operations.
Sr. Product Cybersecurity Engineer responsible for safeguarding GM vehicle platforms against cyber threats. Collaborating with teams to implement and validate intrusion detection capabilities within vehicle architecture.