Talent.com
Senior Security Assurance Controls Manager
Senior Security Assurance Controls ManagerID.me • Mountain View, CA, US
Senior Security Assurance Controls Manager

Senior Security Assurance Controls Manager

ID.me • Mountain View, CA, US
Hace más de 30 días
Tipo de contrato
  • A tiempo completo
Descripción del trabajo

Job Description

Job Description

Company Overview

ID.me is the next-generation digital identity wallet that simplifies how individuals securely prove their identity online. Consumers can verify their identity with ID.me once and seamlessly login across websites without having to create a new login and verify their identity again. Over 152 million users experience streamlined login and identity verification with ID.me at 20 federal agencies, 45 state government agencies, and 70+ healthcare organizations. More than 600+ consumer brands use ID.me to verify communities and user segments to honor service and build more authentic relationships. ID.me's technology meets the federal standards for consumer authentication set by the Commerce Department and is approved as a NIST 800-63-3 IAL2 / AAL2 credential service provider by the Kantara Initiative. ID.me is committed to "No Identity Left Behind" to enable all people to have a secure digital identity. To learn more, visit https : / / network.id.me / .

Role Overview

ID.me is seeking a Senior Security Assurance Controls Manager to lead the development, implementation, and ongoing operation of our internal control program for external security and privacy frameworks including FedRAMP, ISO 27001, and SOC 2.

This role is critical to maintaining the trust of our customers and regulatory stakeholders by ensuring that security and compliance requirements are met across ID.me's rapidly evolving product and infrastructure landscape. You will work cross-functionally with Engineering, Product, Security, GRC, and external auditors to design scalable control strategies, validate control effectiveness, and operationalize continuous monitoring.

This role is based out of our Mountain View, CA or McLean, VA offices and requires full-time in-office attendance.

Responsibilities

  • Framework Ownership : Serve as the day-to-day owner for one or more frameworks (e.g., FedRAMP, ISO 27001, SOC 2), ensuring alignment between framework requirements and internal controls.
  • Control Lifecycle Management : Collaborate with control owners to design, implement, document, and monitor controls. Define control objectives, implementation guidance, and assurance requirements.
  • Audit & Assessment Readiness : Coordinate internal and external audits by developing audit plans, preparing walkthroughs, and managing evidence collection activities.
  • Continuous Monitoring : Maintain a recurring schedule of control validations based on framework-specific frequency requirements (e.g., FedRAMP ConMon). Track control health and remediation actions.
  • Gap Analysis & Risk Assessments : Lead gap analyses between new framework requirements and existing control coverage. Facilitate Security Impact Assessments (SIAs) to assess compliance implications of changes and identify risks.
  • Compliance Documentation : Manage organizational policies. Ensure up-to-date, reviewer-approved documentation exists for policies, procedures, and implementation statements. Lead annual reviews and updates.
  • Control Remediation & POA&M Management : Partner with control owners to define corrective actions, manage Plans of Action & Milestones (POA&Ms), and track resolution through closure. Propose and coordinate the design of controls to mitigate risks.
  • Stakeholder Engagement : Act as a trusted partner to engineering, product, infrastructure, and customer-facing teams. Provide clear guidance on what controls are required, why, and how to satisfy them.
  • Tooling & Metrics : Support the use of GRC and data pipelines to automate evidence collection, track control status, and generate metrics for reporting.
  • Internal and External : Contribute to executive and board-level reporting, as well as external customer reporting such as through Continuous Monitoring reports.

Basic Qualifications

  • Bachelor's degree in Information Security, Computer Science, Engineering, Risk Management, or related field—or equivalent practical experience.
  • 7–10+ years of experience managing and operating security / compliance programs, including at least one of : FedRAMP, ISO 27001, or SOC 2.
  • 3–5+ years of experience managing third-party audits (e.g., ATO, SOC, ISO certs), including evidence preparation, auditor interface, and corrective actions.
  • Preferred Qualifications

  • Experience leading or contributing to FedRAMP Continuous Monitoring (ConMon) activities or significant change requests (SCR).
  • Proficient in project management : planning, tracking, reporting, and issue resolution.
  • Strong understanding of security control domains (e.g., access control, vulnerability management, encryption, logging, change management).
  • Experience working in cloud-native environments (AWS, GCP preferred).
  • Familiarity with GRC platforms such as LogicGate, ServiceNow GRC, or Archer.
  • Deep understanding of control implementation across cloud-native and DevOps environments.
  • CISSP, CISA, CCSK, or ISO 27001 Lead Auditor certification.
  • Cloud security certifications (e.g., GCP, AWS, etc.) are a plus.
  • Experience working in SaaS or regulated environments (e.g., healthcare, finance, government).
  • #LI-JS1

    The annual base salary listed does not include a company bonus, incentive for sales roles, equity and benefits which will be determined based on experience, skills, education, relevant training, geographic location and role.

    ID.me offers comprehensive medical, dental, vision, health savings account, flexible spending accounts (medical, limited purpose, dependent care, commuter benefit accounts), basic and voluntary life and AD&D insurance, 401(k) with company match, parental leave, ability to participate in unlimited paid time off subject to the terms and conditions of the PTO policy, including 8 company wide holidays, short and long-term disability insurance, accident and critical illness insurance, referral bonus policy, employee assistance program, pet insurance, travel assistant program, wellbeing and childcare discounts, benefit advocates, and a learning and development benefit.

    The above represents the anticipated total rewards package for this job requisition. Final offers may vary from the amount listed based on qualifications, professional experiences, skills, education, relevant training, geographic location, and other job related factors.

    U.S. Pay Range

    $157,485—$193,875 USD

    Mountain View, CA Pay Range

    $194,803—$248,115 USD

    ID.me maintains a work environment free from discrimination, where employees are treated with dignity and respect. All ID.me employees share in the responsibility for fulfilling our commitment to equal employment opportunity. ID.me does not discriminate against any employee or applicant on the basis of age, ancestry, color, family or medical care leave, gender identity or expression, genetic information, marital status, medical condition, national origin, physical or mental disability, political affiliation, protected veteran status, race, religion, sex (including pregnancy), sexual orientation, or any other characteristic protected by applicable laws, regulations and ordinances. ID.me adheres to these principles in all aspects of employment, including recruitment, hiring, training, compensation, promotion, benefits, social and recreational programs, and discipline. In addition, ID.me's policy is to provide reasonable accommodation to qualified employees who have protected disabilities to the extent required by applicable laws, regulations and ordinances where a particular employee works. Upon request we will provide you with more information about such accommodations.

    Please review our Privacy Policy, including our CCPA policy, at id.me / privacy. If you provide ID.me with any personally identifiable information you confirm that you have read and agree to be bound by the terms and conditions set out in our Privacy Policy.

    ID.me participates in E-Verify.

    Crear una alerta de empleo para esta búsqueda

    Senior Assurance Manager • Mountain View, CA, US

    Ofertas relacionadas
    Security Product Manager

    Security Product Manager

    VirtualVocations • Fremont, California, United States
    A tiempo completo
    A company is looking for a Director / Principal - Platform Product Manager - Security and Observability.Key Responsibilities Own the Platform Product Management function for horizontal SaaS platfor...Mostrar más
    Última actualización: hace 11 días • Oferta promocionada
    Cyber Security Project Manager

    Cyber Security Project Manager

    VirtualVocations • Fremont, California, United States
    A tiempo completo
    A company is looking for a Project Manager with Cyber Security experience.Key Responsibilities Manage multiple Cyber Security projects involving implementation of new security tools and infrastru...Mostrar más
    Última actualización: hace 5 días • Oferta promocionada
    Director of Security Engineering

    Director of Security Engineering

    VirtualVocations • Fremont, California, United States
    A tiempo completo
    A company is looking for a Director of Security Engineering.Key Responsibilities Manage a high-performing team of security engineers and oversee the security engineering budget Collaborate with ...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Senior Security Solutions Architect

    Senior Security Solutions Architect

    VirtualVocations • Santa Clara, California, United States
    A tiempo completo
    A company is looking for a Senior Security Solutions Engineer specializing in Zero Trust and Cloud Security.Key Responsibilities Partner with sales teams to drive pipeline and close deals for Zsc...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Cybersecurity Assurance Manager

    Cybersecurity Assurance Manager

    VirtualVocations • Santa Clara, California, United States
    A tiempo completo
    A company is looking for a Cybersecurity, Governance & Assurance Manager.Key Responsibilities Lead the global cybersecurity governance and assurance program, ensuring compliance and security awar...Mostrar más
    Última actualización: hace 2 días • Oferta promocionada
    Director

    Director

    Cloud Software Group, Inc. • San Ramon, CA, United States
    A tiempo completo
    Corporate Security (Enterprise Security Engineering & Governance).Vulnerability Management : Lead the global vulnerability management program across cloud, on-prem, and hybrid environments; partner ...Mostrar más
    Última actualización: hace 5 días • Oferta promocionada
    Security Operations Center Manager

    Security Operations Center Manager

    VirtualVocations • Santa Clara, California, United States
    A tiempo completo
    A company is looking for a Manager, Security Operations Center (SOC).Key Responsibilities Lead day-to-day SOC operations including monitoring, detection, analysis, and incident response Develop ...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    DevSecOps Security Architect

    DevSecOps Security Architect

    VirtualVocations • Fremont, California, United States
    A tiempo completo
    A company is looking for a DevSecOps Senior Lead Security Architect.Key Responsibilities Lead security risk assessments and provide recommendations for risk mitigation across enterprise and produ...Mostrar más
    Última actualización: hace 2 días • Oferta promocionada
    Senior Manager, Enterprise Security

    Senior Manager, Enterprise Security

    VirtualVocations • Fremont, California, United States
    A tiempo completo
    A company is looking for a Manager, Enterprise Security.Key Responsibilities : Develop and communicate a scalable enterprise security strategy for corporate infrastructure and SaaS applications L...Mostrar más
    Última actualización: hace 1 día • Oferta promocionada
    Security and Compliance Manager

    Security and Compliance Manager

    VirtualVocations • Fremont, California, United States
    A tiempo completo
    A company is looking for a Security and Compliance Manager to oversee the development and governance of its information security program. Key Responsibilities Maintain and enhance the information ...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Senior Offensive Security Engineer

    Senior Offensive Security Engineer

    VirtualVocations • Fremont, California, United States
    A tiempo completo
    Offensive Security Engineer to expand its red team.Key Responsibilities Conduct Red Team assessments and identify vulnerabilities in software, systems, and networks Develop reports and presentat...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    XSOAR Consultant

    XSOAR Consultant

    VirtualVocations • Fremont, California, United States
    A tiempo completo
    A company is looking for a Remote XSOAR Consultant (Automation).Key Responsibilities Collaborate with the technical lead to develop a log ingestion strategy Create high-quality correlation rules...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Security Operations Associate Director

    Security Operations Associate Director

    VirtualVocations • Fremont, California, United States
    A tiempo completo
    A company is looking for an Associate Director of Security Architecture Operations.Key Responsibilities Coordinate workflows and facilitate conversations between the Security Architecture & Engin...Mostrar más
    Última actualización: hace 2 días • Oferta promocionada
    Sr. Security Manager

    Sr. Security Manager

    Supermicro • San Jose, CA, United States
    A tiempo completo
    Supermicro is a Top Tier provider of advanced server, storage, and networking solutions for Data Center, Cloud Computing, Enterprise IT, Hadoop / Big Data, Hyperscale, HPC and IoT / Embedded customers...Mostrar más
    Última actualización: hace 11 días • Oferta promocionada
    Director, Security

    Director, Security

    Commscope • Sunnyvale, California, US
    A tiempo completo
    In our ‘always on’ world, we believe it’s essential to have a genuine connection with the work you do.How You'll help us connect the world : . We're transforming from Ruckus 1.Lead the security transf...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Senior Security Operations Engineer

    Senior Security Operations Engineer

    VirtualVocations • Fremont, California, United States
    A tiempo completo
    A company is looking for a Senior SecOps Engineer to enhance operational security and automate security processes.Key Responsibilities Design and maintain automation workflows to streamline SecOp...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Senior Director of Security Operations

    Senior Director of Security Operations

    VirtualVocations • Santa Clara, California, United States
    A tiempo completo
    A company is looking for a Senior Director of Security Operations & Engineering.Key Responsibilities Lead and develop teams responsible for cloud security engineering, network and infrastructure ...Mostrar más
    Última actualización: hace más de 30 días • Oferta promocionada
    Secret Clearance Delivery Manager

    Secret Clearance Delivery Manager

    VirtualVocations • Fremont, California, United States
    A tiempo completo
    A company is looking for a Delivery Manager / Software Developer to support federal customers in modernizing large-scale IT systems. Key Responsibilities Perform software development, creating and m...Mostrar más
    Última actualización: hace 3 días • Oferta promocionada