Jobs in United States

Information Security Compliance Manager in United States

2,329 active opportunities · Updated October 2026

Explore current information security compliance manager jobs across United States. Filter by work mode, employment type, experience, department, date posted and distance.

G
📍 United States· Full-time· Remote
✓ High-confidence listingCompany trend -97.9%

From $126.4K/yr

Quick readStrong listing-quality and freshness signals

GitLab is the intelligent orchestration platform for DevSecOps. GitLab enables organizations to increase developer productivity, improve operational efficiency, reduce security and compliance risk, and accelerate digital transformation. More than 50 million registered users and more than 50% of the Fortune 100* trust GitLab to ship better, more secure software faster. The same principles built into our products are reflected in how our team works: we embrace AI as a core productivity multiplier, with all team members expected to incorporate AI into their daily workflows to drive efficiency, innovation, and impact. GitLab is where careers accelerate, innovation flourishes, and every voice is valued. Our high-performance culture is driven by our values and continuous knowledge exchange, enabling our team members to reach their full potential while collaborating with industry leaders to solve complex problems. Co-create the future with us as we build technology that transforms how the world develops software. * Fortune 500® is a registered trademark of Fortune Media IP Limited, used under license. Claim based on GitLab data. Fortune 100 refers to the top 20% ranked companies in the 2025 Fortune 500 list, published in June 2025. Fortune and Fortune Media IP Limited are not affiliated with, and do not endorse products or services of GitLab. An overview of this role As a Staff Human Resources Information Systems Analyst, People Technology - Workday, you won't just manage our people systems—you'll own them. You'll drive how our people technology evolves, partner deeply with stakeholders to solve root problems, and build scalable solutions that reduce friction and improve reliability, usability, and insight across the People technology landscape. This is a strong fit if you think like a product owner, refuse to accept requests at face value, and can move with speed and precision within public company compliance requirements, including SOX ITGCs. In this role, you'll le

GitRestAIGo
R
📍 San Mateo, CA, United States· Full-time
✓ High-confidence listingCompany trend -100%

From $209.3K/yr

Quick readStrong listing-quality and freshness signals

Every day, tens of millions of people come to Roblox to explore, create, play, learn, and connect with friends in 3D immersive digital experiences– all created by our global community of developers and creators. At Roblox, we’re building the tools and platform that empower our community to bring any experience that they can imagine to life. Our vision is to reimagine the way people come together, from anywhere in the world, and on any device. We’re on a mission to connect a billion people with optimism and civility, and looking for amazing talent to help us get there. A career at Roblox means you’ll be working to shape the future of human interaction, solving unique technical challenges at scale, and helping to create safer, more civil shared experiences for everyone. As a member of the Roblox Security Governance, Risk, and Compliance (GRC) team, you will play a key role in supporting the Security team’s mission. The GRC team is at the heart of Roblox's security organization — empowering every builder to make risk-informed decisions by establishing a portfolio of governing policies and standards, a repeatable and scalable method of assessing and quantifying risk, and a formal oversight process for GRC capabilities across Roblox. Our program takes a balanced, "right-sized" approach to security governance — combining qualitative and quantitative risk management methodologies, including Factor Analysis of Information Risk (FAIR), to assess and prioritize the security risks that matter most to Roblox. GRC partners closely with Engineering, Legal, Finance, and leadership — including providing regular reporting to the Board of Directors and the Audit & Compliance Committee — to ensure that security risk is visible, well-understood, and actioned appropriately. The team is in an exciting phase of growth and innovation. We are using engineering to drive automation across risk management, policy lifecycle management, supply chain risk, AI risk, and controls pr

AWSGitAIGo
B
📍 Heath, OH, United States
✓ High-confidence listingCompany trend +515.8%
Quick readStrong listing-quality and freshness signals

Entry Level Test and Evaluation Technical Services Specialist Company: The Boeing Company Boeing Defense, Space and Security (BDS), division of Space, Intelligence, and Weapons System (SI&WS) seeks an entry level Test and Evaluation Technical Services Specialist to join the Production, Test and Launch (PT&L) organization located in Heath, Ohio (35 minutes East of Columbus, Ohio). The selected candidate will be responsible for supporting the Test Equipment Maintenance team in performing calibrations, repairs and preventative maintenance on test stations. Position Responsibilities Include: Maintain bench stock inventory, validate accuracy and correct entry into property system, perform inventory audits. Parts research as necessary to assist supplier management in obtaining correct item. Manage all parts ordered through the purchase request tool. Ensure accurate and timely delivery of parts, test equipment, and materials that meet the needs of the test equipment maintenance team. Utilize multiple supplier management systems. Ensure compliance to Electrical, Electronic and Electromechanical (EEE) parts requirements. Assign correct commodity codes. Attend regular meetings as a resource for information on current parts and equipment orders. Provide status updates and estimated costs as well as shipping and delivery dates. This position is expected to be 100% onsite. The selected candidate will be required to work onsite at the listed location. This position requires the ability to obtain a U.S. Secret Security Clearance for which the U.S. Government requires U.S. Citizenship. An interim and/or final U.S. Secret Clearance Post-Start is

Recruitment
O
📍 Washington, District of Columbia, United States· Full-time· Remote
✓ High-confidence listingCompany trend -79.2%
Quick readStrong listing-quality and freshness signals

About the Team The Industrial Security team enables OpenAI’s classified and national security work by building secure, compliant programs that support government customers and protect sensitive information. We partner across Security, Legal, People, Facilities, Engineering, IT, and program leadership to translate complex government requirements into practical operating models that allow important work to move forward responsibly. Our work spans personnel security, classified facilities, special programs, government customer engagement, and the safeguards required to operate in highly regulated environments. About the Role As a Senior Special Programs Security Manager, you will lead security operations for OpenAI’s Sensitive Compartmented Information (SCI) and Special Access Programs (SAP), serving in customer-designated roles such as Contractor Special Security Officer (CSSO) or Contractor Program Security Officer (CPSO). You will help shape how OpenAI operates across the Intelligence Community and other national security environments, building the relationships, processes, and security foundations required to support classified work at scale. We’re looking for someone who brings deep special programs expertise, sound operational judgment, and the credibility to work directly with government customers and senior internal stakeholders. This is a hands-on leadership role for someone comfortable navigating ambiguity, helping build the function, mentoring future team members, and finding compliant paths forward when mission needs and security requirements intersect. This role is based in San Francisco, CA, or Washington, DC. We use a hybrid work model of three days in the office per week and offer relocation assistance to new employees. Additional onsite presence and occasional travel may be required based on classified program, facility, and government customer needs. This position requires active Top Secret eligibility, current SCI access, and a current counterintelli

AWSRestAIGo
O
📍 San Francisco, California, United States· Full-time· Remote
✓ Quality checkedCompany trend -79.2%

About the Team The Industrial Security team enables OpenAI’s classified and national security work by building secure, compliant programs that support government customers and protect sensitive information. Within Industrial Security, the Personnel Security function ensures employees have the clearances, accesses, briefings, and government approvals required to support classified programs. We work closely with employees, program teams, government customers, and partners across Security, People, Recruiting, Legal, IT, and Facilities to make complex security processes accurate, timely, and understandable. About the Role As a Personnel Security Specialist, you will own the day-to-day personnel security operations that allow OpenAI employees to support classified government work. You will manage clearance and access requests, maintain government-system records, coordinate visits and briefings, support onboarding and offboarding, and guide employees through sensitive security requirements with discretion and care. We’re looking for a hands-on security professional who can independently manage a high-volume operational queue, keep cases and records organized, recognize when issues require escalation, and improve the processes behind the work. This role offers the opportunity to help build a modern personnel security function that supports important national security programs while delivering a thoughtful, responsive employee experience. This role is based in San Francisco, CA, or Washington, DC. We use a hybrid work model of three days in the office per week and offer relocation assistance to new employees. Additional onsite presence and occasional travel may be required based on classified program and government customer needs. In this role, you will: Own the daily personnel security workload from intake through completion, including clearance verification, access nominations, visit requests, onboarding, offboarding, briefings, and reporting actions. Process and track pe

AWSRestAIGo
O
📍 Washington, District of Columbia, United States· Full-time· Remote
✓ High-confidence listingCompany trend -79.2%
Quick readStrong listing-quality and freshness signals

About the team The OpenAI for Government team is a mission-driven group bringing frontier AI to the U.S. Intelligence Community (IC) and broader national security enterprise. We partner with intelligence professionals to deploy secure, compliant AI capabilities—including ChatGPT Enterprise, ChatGPT Gov, and the OpenAI API—in mission-aligned environments that meet rigorous security, privacy, reliability, and responsible-AI requirements. As part of the OpenAI for Government team, you will work across IC elements and mission partners—including ODNI, CIA, NSA, DIA, NGA, NRO, and other federal intelligence organizations—to help analysts, collectors, operators, and technical teams apply frontier AI to their highest-priority missions. We accelerate adoption through hands-on support, mission-specific workflows, tailored enablement, and measurable operational outcomes while preserving human judgment, analytic integrity, and protection of sensitive information. About the Role The Strategic Delivery Lead (SDL) for the Intelligence Community will identify, shape, and deliver OpenAI’s highest-impact deployments for U.S. intelligence organizations. You will help IC customers translate mission priorities—including all-source analysis, intelligence production, collection management, open-source and geospatial exploitation, cyber threat analysis, knowledge discovery, and analyst productivity—into secure, technically feasible AI deployments built on the OpenAI API and enterprise products. The role is highly cross-functional and customer-facing: you will partner with Research, Engineering, Go-to-Market, Security, Legal, Privacy, and government mission, acquisition, and technical stakeholders to align on scope, remove delivery obstacles, and communicate progress from working teams to agency leadership. You will own end-to-end execution of technical delivery workstreams led by Forward Deployed Engineers, Researchers, Solutions Architects, and Enablement teams. You will establish mission

AWSGitRestAI
C-
📍 New York, New York, United States· Full-time
✓ High-confidence listing

$225K – $300K/yr

Quick readStrong listing-quality and freshness signals

CLEAR is building THE secure identity company of the future. Our mission is to make experiences safer and easier—physically and digitally. With more than 43 million Members and a growing network of partners across the world, CLEAR's secure identity platform is transforming the way people live, work, and travel. Whether it’s at the airport, stadium, or throughout your everyday life, CLEAR unlocks the magic of frictionless experiences. As a Senior Fullstack Software Engineer on CLEAR’s Healthcare team, you will build and scale secure, interoperable identity and data solutions that connect patients, providers, and partners. You’ll operate at the intersection of modern web platforms, healthcare interoperability standards, and high-assurance identity systems powering frictionless, trusted healthcare experiences nationwide. A brief highlight of our tech stack: Python / React / Typescript AWS cloud What you’ll do: Design and deliver secure, scalable fullstack solutions that integrate with enterprise EHR systems and national health information exchange frameworks Build and maintain healthcare data integrations leveraging FHIR (RESTful APIs/JSON) and HL7 v2 messaging to enable compliant, real-time data exchange Develop identity resolution and patient matching capabilities using identifiers such as MRNs and NPIs to ensure integrity across disparate clinical systems Partner with Engineering, Security, Product, and Health Information Management teams to implement compliant, audit-ready workflows for regulated healthcare processes Collaborate with external vendors (e.g., Epic Technical Services) to troubleshoot integration issues, manage deployments across TST/PRD environments, and ensure production reliability How you’ll measure success: Successful delivery and stability of FHIR/HL7 integrations across healthcare partners Reduction in data integrity issues related to patient matching and identity resolution High system uptime and successful production deployments across tiered

TypeScriptPythonReactAWS
P
📍 San Francisco, California, United States· Full-time
✓ Quality checkedCompany trend -70%

We believe that the way people interact with their finances will drastically improve in the next few years. We’re dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaid’s network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam. The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing information security risks and maintaining effective controls. Our mission is to reduce the likelihood and impact of security risks while operating a robust assurance program that builds trust with our customers, consumers, and data partners. We own Plaid’s security compliance frameworks, run our audits and risk programs, and partner across the company to keep Plaid’s platform secure, resilient, and aligned with industry and regulatory expectations. GRC Engineering is how we make all of that scale — turning compliance into code, evidence into telemetry, and audits into a continuous, automated capability. The Role: You will own GRC Engineering at Plaid — a foundational, high-ownership role defining an emerging discipline from the ground up. Today most of our compliance work is manual and point-in-time; you will turn it into an engineered system that is continuous, data-driven, and scalable, and set the technical direction for the field. You will: Define the discipline and the architecture — how GRC Engineering works at Plaid, not just execute with

PythonSQLAWSCI/CD
P
📍 New York, New York, United States· Full-time
✓ Quality checkedCompany trend -70%

We believe that the way people interact with their finances will drastically improve in the next few years. We’re dedicated to empowering this transformation by building the tools and experiences that thousands of developers use to create their own products. Plaid powers the tools millions of people rely on to live a healthier financial life. We work with thousands of companies like Venmo, SoFi, several of the Fortune 500, and many of the largest banks to make it easy for people to connect their financial accounts to the apps and services they want to use. Plaid’s network covers 12,000 financial institutions across the US, Canada, UK and Europe. Founded in 2013, the company is headquartered in San Francisco with offices in New York, Washington D.C., London and Amsterdam. About the Team: The Security Governance, Risk, and Compliance (GRC) team is part of Plaid’s security organization, focused on enabling the business by proactively managing information security risks and maintaining effective controls. Our mission is to reduce the likelihood and impact of security risks while operating a robust assurance program that builds trust with our customers, consumers, and data partners. We partner closely across the company to ensure Plaid’s platform remains secure, resilient, and aligned with industry and regulatory expectations. The Security Contracts workstream is a core part of our Security Assurance and Trust Enablement program — ensuring Plaid's contractual security obligations with customers and data partners are defensible, consistent, and never a bottleneck to deal velocity, all while building trust. About the Role You will own Plaid’s Security Contracts workstream end-to-end—the DRI for how security contract reviews get done, how fast they move, and how the program improves over time. You will review security provisions in customer MSAs, DPAs, and security addenda, identify unacceptable clauses, and provide Legal and GTM with the actionable security feedback they n

AWSAIGoRust
P
📍 San Francisco, California, United States· Full-time
✓ High-confidence listingCompany trend -100%
Quick readStrong listing-quality and freshness signals

Who Are We? Postman is the world’s leading API platform, used by more than 45 million+ developers and 500,000 organizations, including 98% of the Fortune 500. Postman is helping developers and professionals across the globe build the API-first world by simplifying each step of the API lifecycle and streamlining collaboration—enabling users to create better APIs, faster. The company is headquartered in San Francisco and has offices in Boston, New York, Austin, Tokyo, London, and Bangalore - where Postman was founded. Postman is privately held, with funding from Battery Ventures, BOND, Coatue, CRV, Insight Partners, and Nexus Venture Partners. Learn more at postman.com or connect with Postman on X via @getpostman. P.S: We highly recommend reading The "API-First World" graphic novel to understand the bigger picture and our vision at Postman. About the Team The Information Security organization at Postman operates across three pillars: Governance Risk & Compliance (GRC), Product Security, and Security Operations. We are a team of builders, not checkbox-checkers. We hold active SOC 2 Type II, ISO 27001, ISO 42001, and HIPAA compliance postures, and we are pursuing FedRAMP High and CMMC Level 2 authorization. Our security stack includes Wiz, SentinelOne, Okta, Jamf, and 1Password, and we operate across a multi-cloud environment. The Offensive Security team is the "red" pulse of this organization. We don't just find bugs — we simulate the adversary to ensure our defenses hold up under real-world pressure. We focus on continuous security validation, AI-augmented adversary emulation, and offensive AI security research at Postman's scale. The Opportunity We are looking for a Principal Offensive Security Engineer who is as much a strategist as they are a hacker. You will own the strategic direction of Postman's offensive security program — including building out a dedicated Offensive AI Security capability from the ground up — and operat

AWSKubernetesCI/CDGraphql
D
📍 United States· Full-time
✓ High-confidence listingCompany trend -91.5%

From $210K/yr

Quick readStrong listing-quality and freshness signals

Drata is building the trust layer between great companies - automating compliance, managing risk, and helping organizations prove trust continuously as they scale. We're Dratanauts: a global crew of 600+ professionals united by a culture that rewards integrity, ownership, and raising the bar, no matter where in the world we're working from. Why Join the Drata Team? At Drata, you're not maintaining legacy compliance software - you're building the agentic AI platform defining what trust looks like for the next generation of companies. Here's what makes the work itself worth showing up for: Problems without a playbook: You'll work at the edge of AI and security, building agentic governance, continuous compliance, and real-time trust verification to solve problems that don't have an established answer yet. You're writing it as you go. Real ownership, not just process: Our values center on owning outcomes and raising the bar, not checking boxes. You're expected to have opinions and back them. A seat at the table: Your perspective is unique and valued. Open debate and diverse viewpoints are built into how decisions actually get made here, at every level. Growth at rocketship speed: Drata is scaling fast, which means scope grows fast too. High performers get more ownership, visibility, and experience. A crew, not just coworkers: Dratanauts consistently describe a "come as you are" culture with sharp, curious people—the kind of team that makes hard problems genuinely fun to solve. See what they say here and follow us on LinkedIn for company news, employee stories, and career updates. Job Summary: As Drata scales, we want our security and GRC leadership to be able to meet our customers’ needs in more places at once—in strategic customer conversations, on stage at industry events, and in the broader conversations happening across our security and GRC communities. We’re looking for a Field Chief Information Security Officer to join Drata’s Security & GRC organization, repo

RestAIGoRust
V
📍 United States· Full-time· Remote
✓ Quality checkedCompany trend -85.7%

At Vanta, our mission is to help businesses earn and prove trust. We believe that security should be monitored and verified continuously, and we empower companies to practice better security and prove it with ease. Vanta has a kind and talented team, and while some have prior security experience, many have been successful at Vanta without it. Our Senior Software Engineers independently drive complex technical work, shape the systems and technical decisions within their teams, and enable other engineers to deliver high-quality, scalable solutions. Vanta's product monitors the security posture of thousands of companies, pulling tens of millions of API calls of data per day, pushing information from hundreds of thousands of laptop agents, and running tests against that data continuously to identify potential security threats. Our infrastructure and tooling need to stay ahead of exponential growth in our customer base. As a Senior Software Engineer at Vanta, you'll drive complex projects across our technical stack, contribute to the technical direction of your team, and mentor other engineers. Your past experience will be leveraged to enable and accelerate Vanta's growth. Visit our Vanta Engineering Blog to learn more about what our team is working on! Tests are at the heart of how Vanta continuously monitors security and compliance for our customers. The Test Core team builds the runtime platform that powers these checks. We own how Tests are scheduled and executed, how their results are persisted and exposed, and the systems that keep this runtime reliable as Vanta grows. In this role, you'll work on some of the core systems behind Vanta's Tests platform. You'll tackle problems around the reliability, correctness, and performance of Test execution, evolve the systems and abstractions that allow the platform to scale, and make it easier for other engineering teams to build on the Tests runtime. Many of these problems span multiple systems and teams and require a deep u

TypeScriptMongoDBGraphqlAI
M
📍 Boise, ID - Main Site, United States
✓ Quality checkedCompany trend -75%

Our vision is to transform how the world uses information to enrich life for all . Micron Technology is a world leader in innovating memory and storage solutions that accelerate the transformation of information into intelligence, inspiring the world to learn, communicate and advance faster than ever. The AI Engineer, People Technology is responsible for designing, developing, and deploying AI-powered solutions that transform work across the People Organization. This role combines software engineering, AI development, and HR domain expertise to build intelligent applications, automations, and agents that improve employee experiences, increase operational efficiency, and accelerate workforce transformation. The ideal candidate is a hands-on builder with demonstrated experience using AI Assisted Software Development Platforms to develop enterprise AI solutions. You must have successfully designed and deployed AI agents that collaborate across multiple platforms, systems, and business functions while operating within enterprise governance, security, and compliance standards. This role requires deep knowledge of HR technologies, including Workday, ServiceNow, and the Microsoft Copilot ecosystem, along with a passion for applying AI to solve complex business challenges. Responsibilities: AI Product & Solution Development: Experience with the end-to-end product lifecycle turning a vision into a roadmap while driving adoption and value delivery. Design, develop, test, and deploy AI-powered products, applications, and intelligent workflow solutions. Apply AI Assisted Development Tools to accelerate software development, solution building, and deployment activities. Support authorities in translating business needs into developed solutions and prototypes. Develop reusable frameworks, ser

PythonAzureDockerMachine Learning
S
📍 San Mateo, California, United States· Full-time
✓ High-confidence listingCompany trend -100%

From $42K/yr

Quick readStrong listing-quality and freshness signals

Security at most companies is reactive. A checkbox for auditors. A speed bump for engineers. A department that says no. That's not what we're building. The Company Sendbird is the #1 CPaaS platform for in-app communications — an enterprise-grade infrastructure company that gives businesses the APIs and SDKs to embed real-time chat, voice, and video directly into their own products. Over 4,000 brands trust us. Seven billion messages flow through our platform every month. 300 million monthly active users. We powered conversations for DoorDash, Match Group, Noom, Yahoo Sports, Rakuten, and thousands more. We were good at what we did. Really good. So we asked what comes next. With decades of leadership in communications infrastructure, the answer was clear: AI. In February 2025, we launched our AI agent for enterprise CX. Later that year, we introduced Delight.ai — and the name says everything about what we believe. AI's real promise isn't efficiency. It isn't cost savings. It's restoring what customer experience lost somewhere along the way: the feeling of being understood, of being genuinely cared for. We don't want customers to feel satisfied. We want them to feel delighted. The Product Delight.ai is the AI concierge for customer experience. Most AI agents forget you the moment the conversation ends. Ours doesn't. Delight.ai builds memory over time, learns preferences, and connects context across every channel—chat, SMS, email, voice, WhatsApp—without losing the thread. We're building AI that makes customers feel understood, seen, and remembered. Why Head of IT & Security We're an AI company handling enterprise-grade conversations at global scale, and our customers trust us with data that matters. That trust isn't a nice-to-have. It's a competitive differentiator. It's why DoorDash and Match Group chose us. It's why we've earned certifications that our competitors are still chasing. Security here means being a partner to the business, not a blocker. It mea

ReactRestAIGo
C
📍 Hartford, United States
✓ High-confidence listingCompany trend +340.2%
Quick readStrong listing-quality and freshness signals

We’re building a world of health around every individual — shaping a more connected, convenient and compassionate health experience. At CVS Health®, you’ll be surrounded by passionate colleagues who care deeply, innovate with purpose, hold ourselves accountable and prioritize safety and quality in everything we do. Join us and be part of something bigger – helping to simplify health care one person, one family and one community at a time. Position Summary The Executive Director - Business Information Security Officer (BISO) will serve as a senior leader and trusted security advisor supporting all CVS Health lines of business, with accountability for leading the BISO team and driving mission, vision, and governance model. This individual will provide senior‑level leadership, strategic and tactical guidance for a world‑class enterprise cybersecurity program. As a business enabler, the BISO is an effective communicator with the technical aptitude to embed security strategy and risk‑based decision‑making into all aspects of the business. The BISO understands security risks, threats, vulnerabilities, control frameworks, and security technologies and translates their impact in business terms. The BISO must be capable of working closely with senior IT business leaders, executive leadership, and business subject matter experts (SMEs). This role requires demonstrated leadership, exceptional organizational skills, strong business and financial acumen, and the ability to influence and drive change at scale across the organization. <

Project Management
🔔

Get new information security compliance manager jobs in United States by email

Daily job updates · Unsubscribe anytime