Remote IT Risk Compliance Manager: Make a Real Impact from Anywhere
Letâs Talk About the Big Picture
You know how some teams just want someone to "tick boxes" and call it compliance? YeahâŚ
thatâs not us. Here, youâll shape how we stay secure, smart, and ahead of the game. Weâre remote-first, which means you can work from wherever you feel most productiveâhome office, coffee shop, or somewhere tropical (just donât rub it in during Zoom calls).
As our IT Risk Compliance Manager,
youâll be the steady hand behind the systems that keep our company safe and audit-ready. Your voice will matter. Your ideas will land. And your work? Itâll directly influence how we manage risk in a digital-first world.
Wondering What Youâll Actually Do?
We get itâjob titles can be vague. Letâs break it down:
Own Our Risk and Compliance Strategy
You wonât just "follow policy"â
youâll write it, shape it, and refine it. Youâll:
- Build and maintain our IT risk management framework (not from scratchâweâve got the bones, but we want your brain behind it)
- Lead internal audits, control assessments, and remediation efforts
- Keep us aligned with frameworks like NIST, ISO 27001, and SOC 2 (yeah, weâre aiming high)
- Translate regulations into actionsâso everyone from engineers to execs actually gets it
Be the Glue Between Teams
Ever been the go-to person who explains things like GDPR or HIPAA
without sounding like a robot? Perfect. Youâll:
- Work closely with IT, Security, Legal, HR, and vendors
- Be part of change management conversations
- Help new hires understand how we do things and why
- Jump into conversations early, not just when somethingâs gone wrong
Keep Us Audit-Ready, Always
Letâs be real: audits can be stressful. But when youâre on top of things, they donât have to be. Youâll:
- Prep for annual SOC 2 and ISO 27001 audits
- Keep documentation clean, clear, and current
- Train teams on compliance best practices
- Manage vendor risk assessments and ensure third-party compliance
Real People, Real Moments
Actually, hereâs a quick story. Last year, our lead DevOps engineer, Chris, nearly got buried under a mountain of access reviews during audit week. It was chaos. Then
you came in (well, someone like you), and rolled out a clean, automated process with alerts, logs, and dashboards. Auditors smiled. Chris didnât cry. Victory.
Thatâs the kind of ripple effect weâre talking about.
Letâs Get Into the Nitty-Gritty
Alright, hereâs what we hope you bring to the table:
The Essentials
- 5+ years in IT risk, compliance, or cybersecurity
- Experience with frameworks like SOC 2, ISO 27001, NIST, HIPAA, or PCI-DSS
- Solid understanding of cloud security (AWS, Azure, GCP)
- Youâve built or managed audit/compliance programs before
The Human Stuff
- Youâre organized but flexible. You like plans, but you also know when to pivot.
- You ask the right questions. Itâs not just about asking what went wrongâitâs about digging into why it happened in the first place and "How can we prevent it?"
- You know how to talk to people. From engineers to execs, you tailor the message.
- You care. About security, privacy, clarity, and helping people do their best work.
Your Day-to-Day Might Look Like This:
No two days are the same, but hereâs a vibe check:
- Morning check-in with Security and IT on recent risk events
- Review third-party vendor risk reports
- Update documentation for new processes
- Meet with Legal to align on upcoming privacy laws
- Answer a Slack question from someone whoâs confused about MFA requirements
- Review audit prep checklist and delegate tasks
- End the day with a quick 15-minute sync with your remote compliance team
The Remote Life, Done Right
Working remotely isnât about disappearing into the void. Itâs about flexibility
and connection. Hereâs how we stay close:
- Weekly team huddles to align and vent (in a good way)
- Virtual "deep dive" sessions for brainstorming big ideas
- Async updates so youâre not stuck in meetings all day
- Slack channels where memes and milestones live side by side
Honestly, we like working this way. And we think you will too.
Tools Youâll Use (and Love)
We donât expect you to be a wizard with all of these, but youâll probably touch:
- GRC platforms (like Vanta, Drata, OneTrust, or LogicGate)
- JIRA or similar project tracking tools
- Google Workspace or M365
- Slack for daily comms
- Confluence or Notion for documentation
What Success Looks Like After 6 Months
Youâre not just "settling in."
- The audit process runs smoothly because of the systems you built.
- Team leads know precisely where to go for compliance answers.
- Weâre tracking risk proactively, not reactively.
- People trust you. They ask for your input. They send GIFs when your projects go live.
Salary and Perks
- Annual salary: $142,000
- Fully remote setup
- Flexible PTO
- Home office stipend
- Professional development support
- Health, dental, and vision (because, obviously)
Letâs Wrap It Up
This isnât just a compliance job. Itâs a chance to make systems better, people safer, and risks more manageableâ
all without commuting or wearing pants with buttons.
Youâll build trust, prevent fires before they start, and guide us through the wild world of IT compliance with confidence and clarity.
Ready to make your mark? Letâs talk.