Job Title : Fractional Head of IT / Security Consultant (Part-Time, Remote)
Hours : 10 15 hours / week
Duration : 3 6 months with potential for ongoing
Location : Remote from anywhere in the US
May scale up during periods like SOC 2 prep. must be highly responsive (within 1 2 hours during working days), but other than that can have another job. Flexibility to increase hours during key milestones is a plus.
About the Role
Senior Security-focused IT Consultant to help support growing infrastructure, compliance, and vendor ecosystem.
Will play a critical role in managing security initiatives, driving compliance initiatives, maintaining firewall and networking configurations, and managing vendor security processes.
Key Responsibilities
- Drafting, reviewing, and updating IT / security policies and documentation
- Supporting SOC 2 and HIPAA compliance processes
- Managing and maintaining Juniper SRX firewalls
- Overseeing vendor security and participating in vendor evaluations
- Managing vulnerability scans and coordinating penetration testing
- Supporting Drata and Safebase compliance workflows
- Assisting with security-related technical support (Linux environment)
- Responding to and completing custom security questionnaires (occasionally delegated)
- Managing user access systems experience with Okta (SSO) is a strong plus
- Familiarity with password managers (e.g., 1Password)
- Supporting disaster recovery and business continuity planning
- Contributing to overall IT infrastructure and data management efforts
Ideal Candidate
5 7 years of experience in IT / security roles not a dealbreakerStrong background in networking and security (especially Juniper SRX firewalls)Familiar with compliance standards : SOC 2, HIPAAComfortable working in Linux environments a big plusExperience in fast-paced startups or working with high-demand clientsExcellent communicator with rapid response times and a proactive mindset Startup exp a big plusTech support experience, especially around security tools and practicesFamiliarity with tools like Drata, Safebase, Okta, and 1PasswordVendor negotiation and management experience is a plus