Full-Time

Technical Security Compliance Manager

Confirmed live in the last 24 hours

Red Ventures

Red Ventures

1,001-5,000 employees

Digital media and services across sectors

Consumer Software
Financial Services
Education
Healthcare
Consumer Goods

Compensation Overview

$135k - $180kAnnually

Senior

No H1B Sponsorship

Fort Mill, SC, USA

Hybrid position requiring in-office presence.

Category
Cybersecurity
IT & Security
Required Skills
Microsoft Azure
AWS
Google Cloud Platform
Requirements
  • 5+ years of experience in technology audit, security risk management, and/or security compliance role, with at least 2-4 years implementing or auditing compliance with key cybersecurity standards (e.g., PCI DSS, ISO 27001, SOC2, etc.) in a cloud-first environment
  • Experienced with cloud infrastructure technologies and services (e.g., AWS, GCP, Azure) as well as various enterprise SaaS solutions
  • Functional knowledge of multiple security domains and information security industry standards and best practices
  • Experienced with the implementation and/or use of control automation and compliance tools
  • Effective in building relationships with organizational leaders and influencing senior management
  • Excellent organizational skills, proactive and self-sufficient with a proven ability to work independently to effectively prioritize and execute tasks
  • Drive, determination, and the ability to overcome roadblocks and initial objections
  • Strong project management skills
  • Ability to work collaboratively with multiple stakeholders across different backgrounds and skill sets
  • Strong written, verbal communication, and presentation skills.
  • BS/BA in a related field (e.g., Computer Science, MIS) desirable, or equivalent relevant experience
  • Security-related or cloud-related certifications such as CISA, CISSP, AWS Solutions Architect, etc. is a plus
Responsibilities
  • Lead and manage all aspects of applicable cybersecurity audits, such as scope definition/validation, audit readiness, walkthroughs, evidence collection, and liaising with external auditors
  • Drive adoption of relevant security compliance requirements through thorough analysis and prescriptive guidance
  • Define and lead security risk management process, leveraging automation and partnering with stakeholders to perform hands-on risk assessments
  • Oversee the policies and standards lifecycle process to ensure they address all relevant cybersecurity requirements
  • Define and lead cybersecurity awareness programs including annual training, topical awareness campaigns in partnership with corporate communications, and phishing simulations
  • Proactively identify compliance gaps through continuous monitoring, working closely with control owners to identify ways to effectively monitor compliance posture through automation
  • Document and report identified security or compliance issues and work with control owners on remediation requirements, strategy, and execution, providing recommendations that can be reasonably adopted
  • Regularly monitor remediation activities for noted findings, and escalate on remediation plans that are at-risk of being overdue
  • Develop and maintain security reporting to provide real-time and on-demand compliance status
  • Maintain an up-to-date understanding of emerging trends in information security risks; apply new techniques and trends, in-line with overall information security objectives
  • Establish partnerships with cross-functional teams such as IT, Legal, HR and Privacy to ensure they understand their roles when supporting the security GRC programs
  • Support the broader security team in establishing annual and long-term goals, objectives, metrics, and reporting mechanisms

Red Ventures connects people with information and resources across various sectors, including health, finance, travel, education, technology, and home services. The company provides high-quality content that helps consumers make informed decisions, such as in-depth health articles, travel advice, and simplified home financing options. Their business model focuses on attracting a large audience through valuable content, which in turn generates revenue from advertising, affiliate marketing, and lead generation. Red Ventures stands out by offering a diverse range of services tailored to specific consumer needs, such as a home services marketplace in the UK that connects millions of users with top service providers. The company's goal is to empower individuals with the knowledge and resources they need to navigate their personal and financial journeys.

Company Stage

Late Stage VC

Total Funding

$243.2M

Headquarters

Fort Mill, South Carolina

Founded

2000

Growth & Insights
Headcount

6 month growth

-2%

1 year growth

-6%

2 year growth

-16%
Simplify Jobs

Simplify's Take

What believers are saying

  • AI-driven content personalization can boost user engagement and conversion rates.
  • Telehealth expansion aligns with Red Ventures' health content growth opportunities.
  • Sustainable travel trends can attract eco-conscious consumers to Red Ventures' travel brands.

What critics are saying

  • Over-reliance on affiliate marketing may lead to revenue fluctuations.
  • HigherEducation.com faces competition in the crowded online education sector.
  • Investment in synthetic media may face regulatory scrutiny over deepfake concerns.

What makes Red Ventures unique

  • Red Ventures excels in creating personalized digital experiences across diverse sectors.
  • The company owns influential brands like Healthline and The Points Guy.
  • Red Ventures' strategic partnerships enhance its content and service offerings.

Help us improve and share your feedback! Did you find this helpful?