FREE ACCESS
5,000–10,000 jobs/day
See all jobs on JobTailor
Search thousands of fresh jobs every day.
Discover
- Fresh listings
- Fast filters
- No subscription required
Create a free account and start exploring right away.

Group Security & Compliance Manager
Ionic PartnersGroup Security & Compliance Manager leading customer trust and compliance across portfolio companies at Sparkrock. Responsible for security audits, maintaining trust portals, and managing AI compliance.
Tech Stack
Tools & technologiesCloud
About the role
Key responsibilities & impact- Lead customer security reviews, RFPs, RFIs, and questionnaires, turning around accurate, complete responses fast enough to keep deals moving
- Stand up and maintain a customer-facing trust portal (SafeBase / Vanta / Drata or equivalent), including a dedicated AI/ML section
- Own SOC 2 Type II program management, driving audits across portfolio companies (including Sparkrock's Type II conversion and CXT scoping), coordinating evidence with the Senior Group Security Engineer, and managing auditor relationships
- Author and maintain security policies and documentation, including DPAs, sub-processor lists, and incident-communication templates
- Own AI compliance and trust, including AI questionnaire responses, AI sub-processor management, framework tracking (EU AI Act, ISO 42001, NIST AI RMF), AI use disclosure, AI acceptable-use policy, and AI incident-comms playbooks
- Run third-party vendor security reviews and renewals
- Build and deliver internal security awareness training, and onboard customers through the required security setup
- Draft and coordinate customer-facing incident communications, including breach/incident notifications with legal and engineering
Requirements
What you’ll need- 6+ years in security GRC, customer trust, or SaaS compliance.
- Excellent spoken and written English. Articulate, polished, and credible in live calls with enterprise customers and third parties — this person represents the group externally.
- SOC 2 audit experience as a primary point of contact (Type II strongly preferred).
- Working understanding of cloud security concepts — able to read and translate technical findings, not produce them.
- Awareness of the AI compliance landscape and willingness to own it.
- CISSP / CISA / CIPP/E; Vanta / Drata / SafeBase experience. (Nice to have)
- PE-backed or multi-portfolio background. (Nice to have)
- ISO 42001 / NIST AI RMF familiarity; EU AI Act awareness. (Nice to have)
Benefits
Comp & perks- We are 100% remote and global. Live your best life wherever that may be, and never lose out on career opportunities because of it.
- Flexible work hours. We work asynchronously and don’t care when you’re online, just that you deliver great results and are there for our customers.
- We are dedicated to your growth with consistent and meaningful feedback, support in achieving your personal career goals, and access to leading-edge tools, playbooks, and technology to amplify your experience.
- Introductions to thought leaders in the space and webinars on cutting-edge tech hot topics.
- Stipend to help set up your ideal home office
- Focus on culture: coffee chats, happy hours, cooking classes, book clubs, and more!