Technical Security Manager
Core
Lead the Information Security program to ensure compliance with external security frameworks, manage audits, and oversee risk assessments for a SaaS educational technology company.
Role type
Senior Information Security Manager (GRC focus)
Builds
Security compliance posture, audit readiness, and risk management frameworks for SaaS products serving K-12 education and homeschool markets.
Domain
EdTech / Cybersecurity / Governance, Risk, and Compliance (GRC)
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
ISO 27001/27018/42001 compliance, audit coordination, security risk assessment, GRC tool administration, privacy policy management, project management, stakeholder communication
Preferred skills
AI Governance frameworks (NIST, ISO 42001), PMP certification, experience with GovRAMP/FedRAMP
Technologies
GRC tools, privacy management platforms
Responsibilities
Maintain conformance to security standards (ISO, NIST, SOC, CIS), facilitate annual third-party audits, manage security improvement projects, administer GRC tools, conduct enterprise risk assessments, manage privacy risks (cookies, APIs), support business development with security proposals
Seniority
Senior, hands-on IC with strategic oversight