Manager of Information Security

Clasp
United States
Workplace: RemoteFull timeUSD 170,000 - 190,000 annuallyFunction: CybersecurityExperience: 5+ yearsSkills: ["Communication","Hands-on problem solving","Prototyping"]

Own Clasp’s end-to-end information security program while leading the IT/TechOps team and partnering with engineering and AI Labs. Run the SOC 2 program and Vanta governance, strengthen SIEM, vulnerability management, IDS, and third-party diligence, and advance cloud/access security on GCP. Partner on AppSec and secure SDLC, including threat modeling and hardened CI/CD pipelines, and help operationalize security for AI agents.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Clasp
Clasp
2 days ago

Manager of Information Security

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 2 hours agoStatus: Live

Job Summary

Own Clasp’s end-to-end information security program while leading the IT/TechOps team and partnering with engineering and AI Labs. Run the SOC 2 program and Vanta governance, strengthen SIEM, vulnerability management, IDS, and third-party diligence, and advance cloud/access security on GCP. Partner on AppSec and secure SDLC, including threat modeling and hardened CI/CD pipelines, and help operationalize security for AI agents.
Location: United States
Workplace: Remote
Employment Type: Full time
Job Function: Cybersecurity
Seniority: Manager level

Key Responsibilities

  • •Run the SOC 2 program end to end and own information security policies and Vanta governance, including business continuity drills and Risk + Compliance representation.
  • •Lead IT/TechOps across corporate IT and security, including laptop procurement, MDM, onboarding/offboarding, SaaS vendor hardening, incident response, and data loss protection.
  • •Own third-party security reviews and respond as the front line for customer and partner-bank security questionnaires.
  • •Configure and operate SIEM and manage SIEM alerting to reduce noise, alongside vulnerability management and IDS visibility.
  • •Advance cloud and access security on GCP (IAM/JIT and platform hardening) and partner on AppSec and secure SDLC with threat modeling and hardened CI/CD pipelines.

Pay and Benefits

Salary: USD 170,000 - 190,000 annually
Equity and Bonus:Equity
Perks:Health InsuranceDentalVision401kStudent LoansCommuter BenefitsPaid Leave

Key Requirements

  • •CISSP certification.
  • •5+ years on a security team.
  • •Experience achieving SOC 2 or ISO 27001 compliance.
  • •Startup experience in a scrappy environment.
  • •A technical foundation with hands-on work (e.g., scripting, web development, automation, or data analysis).
Experience:5+ yearsFintechSaaSRegulated industrySOC 2ISO 27001AI
Skills:CommunicationHands-on problem solvingPrototyping
Certifications:CISSP
Tech Stack:SOC 2VantaGCPMacOSWindowsSIEMTerraformIDSIAMJITMDMCI/CDSDLCISO 27001Risk + compliance

Company Brief

Clasp
Provides employer-sponsored education financing and retention-driven recruitment to help employers recruit and retain hard-to-hire talent while reducing student debt; works primarily with healthcare employers and training partners.
Industry: HR Tech
Company Size: Medium (51 to 250 employees)
Growth: Growth Stage Startup
Valuation: Under USD 50M
Headquarters: Boston, United States
Founded: 2018
Glassdoor
Glassdoor: 4.5
WebsiteLinkedInGlassdoor