Logo
Ivo

Information Security Compliance Lead

Ivo, San Francisco, California, United States, 94199

Save Job

3 days ago Be among the first 25 applicants Get AI-powered advice on this job and more exclusive features. This range is provided by Ivo. Your actual pay will be based on your skills and experience — talk with your recruiter to learn more. Base pay range

$185,000.00/yr - $230,000.00/yr Why Ivo?

Contract negotiation is the most time‑consuming, costly, and difficult component of the contract lifecycle—and it hasn’t gotten much easier since the days of fax machines. Large language models have unlocked the ability to solve many contract negotiation problems at scale. Our product is best‑in‑market (with an ~80% trial win rate) and rapidly embedding itself into the lives of its users. Overview:

We're looking for an experienced information security compliance leader to build and run a lean, audit‑ready program. The foundation is in place. You will take full ownership and run it your way. You will own two big rocks: Own security compliance end-to-end

Plan and run gap assessments, control design, evidence collection, and auditor coordination (SOC 2 Type II; ISO/IEC 27001:2022) Operate and improve our ISMS (risk assessment, internal audit, management review, corrective actions) Maintain policies, control testing cadence, asset inventories, and audit‑ready evidence (e.g., Secureframe/Vanta) Lead vendor risk management and third‑party due diligence Own RFPs/DDQs/security questionnaires (SIG Lite, CAIQ, and custom) with clear SLAs Meet with customer security teams to explain security controls Build a living answers library and artifacts (policies, diagrams, pen test reports, BCP/DR, vulnerability management posture) Stand up and maintain a trust portal Partner with Sales/Legal/Security to unblock deals and negotiate security addenda Additional impact:

Translate frameworks into lightweight, automated processes that fit a high‑velocity startup Track and report meaningful compliance/risk metrics to leadership Help hire/mentor as the program scales Ivo might be a good fit for you if you are:

A strategic builder who has led SOC 2 Type II and ISO 27001 programs at a SaaS company (preferably early stage) Deeply knowledgeable about security compliance/GRC and vendor risk Excellent at customer‑facing trust work (clear writing, good communication, fast and accurate knowledge) Would describe yourself as being relentlessly resourceful Pragmatic and automation‑first. You design controls engineers actually follow Comfortable collaborating across Security, IT, Sales, and Legal to get things done

#J-18808-Ljbffr