Security Compliance Manager

Sardine
United States
Workplace: RemoteFull timeUSD 130,000 - 190,000 annuallyFunction: Legal, Risk & ComplianceExperience: 7+ yearsSkills: ["Communication","Leadership","Mentoring","Program ownership","Risk management"]

Own Sardine’s security compliance and GRC function end-to-end, driving audit- and customer-ready programs across SOC 2 Type II, PCI DSS, ISO 27001, GDPR/CCPA, and DORA. Lead FedRAMP authorization efforts, coordinate NIST 800-53 control implementation, and manage evidence improvements. Serve as the primary interface to auditors and regulators, translate control gaps to senior leadership, and lead a small compliance team while grounding decisions in Sardine’s platform architecture.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Sardine
Sardine
2 days ago

Security Compliance Manager

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 3 hours agoStatus: Live

Job Summary

Own Sardine’s security compliance and GRC function end-to-end, driving audit- and customer-ready programs across SOC 2 Type II, PCI DSS, ISO 27001, GDPR/CCPA, and DORA. Lead FedRAMP authorization efforts, coordinate NIST 800-53 control implementation, and manage evidence improvements. Serve as the primary interface to auditors and regulators, translate control gaps to senior leadership, and lead a small compliance team while grounding decisions in Sardine’s platform architecture.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Legal, Risk & Compliance
Seniority: Manager level

Key Responsibilities

  • •Own compliance planning and the end-to-end compliance program across SOC 2 Type II, PCI DSS (Level 1 Service Provider), ISO 27001, GDPR, CCPA, and DORA, including design and direction.
  • •Drive FedRAMP by coordinating NIST SP 800-53 control implementation, 3PAO assessment, and continuous monitoring, in partnership with engineering and IT.
  • •Serve as the primary interface to auditors, regulators, and industry stakeholders; coordinate review exercises to achieve clean outcomes.
  • •Own control frameworks and the evidence strategy, including rationalizing overlapping controls, managing the risk picture (risk register and reporting cadence), and improving processes based on findings.
  • •Lead and develop the team by setting priorities, reviewing work, mentoring, and scaling the security compliance function as obligations grow.

Pay and Benefits

Salary: USD 130,000 - 190,000 annually
Equity and Bonus:Equity
Perks:Remote WorkHealth InsuranceDentalVision401kPaid LeaveLearning BudgetHome OfficeMeal Stipend

Key Requirements

  • •7+ years in security compliance, GRC, or audit with end-to-end ownership of audit/certification programs (SOC 2, PCI DSS, and/or ISO 27001).
  • •Deep knowledge of security and privacy frameworks including PCI DSS, SOC 2, ISO 27001, GDPR/CCPA, and DORA, plus familiarity with NIST CSF and CIS control frameworks.
  • •Comfort building technical fluency around a product/technology domain (e.g., device intelligence, behavioral biometrics, transaction monitoring) and partnering with engineering and product.
  • •Excellent written and verbal communication with executive-ready documentation and credible presence with auditors and regulators.
  • •People leadership experience leading, mentoring, or managing others, with readiness to step into managing a direct report.
Experience:7+ yearsSecurity complianceGRCAuditFintechPayments
Skills:CommunicationLeadershipMentoringProgram ownershipRisk management
Tech Stack:SOC 2PCI DSSISO 27001GDPRCCPADORANIST SP 800-53NIST CSFCISFedRAMPVantaRipplingMacOS

Company Brief

Sardine
Provides fraud prevention and account security solutions using machine learning to detect and block account takeover, payment fraud, and malicious actors for digital platforms and marketplaces.
Industry: Cybersecurity
Website