Security & Compliance Lead

Opal
San Francisco
Workplace: OnsiteFull timeUSD 120,000 - 200,000 annuallyFunction: Security & Public SafetyExperience: 5+ yearsSkills: ["Communication","Independent working","Risk prioritization","Cross-functional follow-through"]

Own Opal’s internal security program end-to-end, covering security operations, SOC 2 compliance, vendor and third-party risk, incident response, and security tooling. Partner closely with engineering and leadership to manage access reviews, least-privilege practices, and bug bounty/vulnerability disclosure workflows. Oversee IT operations via a managed service provider (MSP), including secure onboarding/offboarding and office network decisions (UniFi with VLAN segmentation).

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Opal
Opal
1 month ago

Security & Compliance Lead

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 20 hours agoStatus: Live

Job Summary

Own Opal’s internal security program end-to-end, covering security operations, SOC 2 compliance, vendor and third-party risk, incident response, and security tooling. Partner closely with engineering and leadership to manage access reviews, least-privilege practices, and bug bounty/vulnerability disclosure workflows. Oversee IT operations via a managed service provider (MSP), including secure onboarding/offboarding and office network decisions (UniFi with VLAN segmentation).
Location: San Francisco
Workplace: Onsite
Employment Type: Full time
Job Function: Security & Public Safety
Seniority: Manager level

Key Responsibilities

  • •Own Opal’s internal security program across people, systems, devices, vendors, and office environments
  • •Manage security tooling for endpoint protection, SSO, MFA, access reviews, logging, monitoring, and alerting
  • •Lead security incident response including triage, investigation, remediation, communications, and follow-up
  • •Drive SOC 2 compliance work and maintain security policies, control documentation, and audit evidence
  • •Oversee IT operations via the MSP, including secure onboarding/offboarding, device posture, helpdesk/network support, and office infrastructure decisions

Pay and Benefits

Salary: USD 120,000 - 200,000 annually

Key Requirements

  • •5+ years of experience in security operations, GRC, IT security, or a similar security-focused role
  • •Experience owning or materially driving a company security program
  • •Strong familiarity with SOC 2; FedRAMP or ISO 27001 are a plus
  • •Experience with incident response, endpoint security, access reviews, logging/monitoring, and remediation tracking
  • •Strong understanding of identity and access concepts (SSO, MFA, least privilege, access reviews, joiner/mover/leaver processes)
Experience:5+ yearsSecurity operationsGRCIT securityIncident responseEndpoint security
Skills:CommunicationIndependent workingRisk prioritizationCross-functional follow-through
Certifications:Security+CISSPCISM
Tech Stack:SOC 2FedRAMPISO 27001SSOMFAEndpoint protectionLoggingMonitoringIncident responseBug bountyVulnerability disclosureUniFiVLAN segmentation

Company Brief

Opal
Opal Security provides a data‑centric identity and access management platform that unifies visibility, intelligence, and workflows to enforce least‑privilege and remediate identity risk across human and machine identities for modern enterprises.
Industry: Cybersecurity
Company Size: Small (11 to 50 employees)
Growth: Growth Stage Startup
Funding: Series B
Headquarters: San Francisco, United States
Founded: 2020
Glassdoor
Glassdoor: 3.8
WebsiteLinkedInGlassdoor