2

Remote Isso Jobs in New York (NOW HIRING)

Cyber AI Security Manager

New York, NY · On-site +1

$121K - $164K/yr

We offer unlimited PTO, a flexible remote work policy, and a supportive environment that prioritizes sustainable, long-term performance. About the Role The Cyber AI Security Manager sits at the ...

Showing results 21-23

Remote Isso information

See New York salary details

$50.3K

$129.5K

$201.8K

How much do remote isso jobs pay per year?

As of Sep 5, 2026, the average yearly pay for remote isso in New York is $129,454.00, according to ZipRecruiter salary data. Most workers in this role earn between $103,900.00 and $151,000.00 per year, depending on experience, location, and employer.

What is a Remote ISSO?

A Remote ISSO (Information Systems Security Officer) job involves managing and ensuring the security of an organization's IT systems while working remotely. Responsibilities include implementing security policies, conducting risk assessments, ensuring compliance with regulations like NIST and FISMA, and responding to security incidents. Remote ISSOs collaborate with IT teams to safeguard sensitive data and maintain system integrity. Strong knowledge of cybersecurity frameworks and federal compliance standards is essential for this role.

What are the key skills and qualifications needed to thrive as a Remote ISSO?

To thrive as a Remote ISSO (Information Systems Security Officer), candidates need a robust understanding of information security principles, risk management frameworks (such as NIST), and compliance requirements, often backed by a degree in cybersecurity or a related field. Familiarity with security tools like vulnerability scanners, SIEM platforms, and certifications such as CISSP or CISM are highly valued. Excellent written communication, analytical thinking, and the ability to work independently are crucial soft skills in this remote context. These attributes enable effective oversight of organizational security, ensure compliance, and facilitate collaboration while working off-site.

What are some common challenges faced by Remote ISSOs and how can they be overcome?

Remote ISSOs often face the challenge of maintaining strong oversight of security protocols and compliance across distributed teams and systems without being onsite. To overcome this, successful ISSOs utilize secure remote access tools, implement robust communication practices, and foster strong relationships with IT and compliance stakeholders. Regular virtual meetings, clear documentation, and proactive incident response planning help ensure security standards are consistently met. Staying updated on evolving cyber threats and engaging in continuous professional development also help remote ISSOs remain effective and adaptable in a dynamic environment.

What are the most commonly searched types of Isso jobs in New York?

The most popular types of Isso jobs in New York are:

What job categories do people searching Remote Isso jobs in New York look for?

The top searched job categories for Remote Isso jobs in New York are:

What cities in New York are hiring for Remote Isso jobs?

Cities in New York with the most Remote Isso job openings:

Infographic showing various Remote Isso job openings in New York as of August 2026, with employment types broken down into 81% Full Time, 13% Part Time, 1% Temporary, and 5% Contract. Highlights an 100% Remote job distribution, with an average salary of $129,454 per year, or $62.2 per hour.

Associate Director, Security & Compliance (US)

Code and Theory

New York, NY • Remote

Full-time

Re-posted 20 days ago


Job description

We are seeking an Associate Director, Security & Compliance to lead security, privacy, and compliance for our SaaS products and the client projects we deliver as an agency. You will own this capability end to end, from new business through implementation, certification, and ongoing monitoring. This role is central to how we win and deliver projects, protect client and company data, and earn trust through clear, high quality security and privacy practices.

You will be responsible for audit readiness, ensuring applicable privacy requirements are met, and establishing the standards, processes, and tooling needed to run an effective security and privacy program.

The Machine is the agentic operating system for marketing, built by Code and Theory. It plugs into the tools marketing teams use and turns disconnected workflows into a single intelligent system, connecting brand strategy, creative production, and media performance. The Machine helps power agencies across Stagwell's network and world-leading brands.

WHAT YOU'LL DO

  • Lead our security program across SaaS products and client projects, setting strategy, priorities, and measurable outcomes
  • Lead SOC 2 Type II, ISO 27001, and ISO 42001 readiness and ongoing compliance, including control design, evidence processes, and auditor coordination. Own ISMS and AI governance documentation and oversight
  • Lead privacy governance and operational practices, ensuring compliance with applicable requirements including HIPAA, GDPR, and CCPA/CPRA, and addressing data handling, contractual privacy terms, and privacy by design expectations
  • Partner with delivery teams to embed security and privacy into how we build, with clear expectations, practical review gates, and patterns for common risks (identity, access, data handling, multi-tenancy, logging, and auditability)
  • Establish a repeatable client engagement security plan for client work (environment segregation, access provisioning and deprovisioning, client data handling, incident coordination, and delivery requirements)
  • Lead vendor security reviews, including due diligence for critical providers, remediation tracking, and ongoing monitoring
  • Support customer assurance efforts including security questionnaires, RFPs, client security reviews, and maintaining trust artifacts and standard responses
  • Maintain an incident response program (playbooks, escalation, exercises) and drive post incident improvements
  • Build a security and privacy culture through clear guidance, lightweight training, and day to day partnership with teams

WHAT YOU'LL NEED

  • 8+ years of progressive experience in information security, including leadership in SaaS and/or professional services environments
  • Strong understanding of modern application and cloud security fundamentals (identity and access, encryption and key management, logging and monitoring, vulnerability management)
  • Demonstrated ownership of SOC 2 Type II and ISO 27001 programs from readiness through steady state operations
  • Strong working knowledge of privacy requirements and practices, including HIPAA, GDPR, and CCPA/CPRA, and experience operationalizing privacy controls in product and client delivery contexts
  • Experience building security and privacy processes that work in real delivery environments
  • Clear communication skills, able to represent security and privacy with internal teams, auditors, and client stakeholders with differing levels of technical fluency
  • Comfort operating across a geographically dispersed organization and coordinating work across time zones

NICE TO HAVES

  • Experience in an agency or consulting environment supporting multiple client projects in parallel
  • Experience supporting AI-enabled products and data flows, including model and data risk considerations and familiarity with ISO 42001
  • Expertise in at least one major cloud platform (GCP, AWS, or Azure) and common SaaS security patterns
  • Experience with security monitoring, incident response, and vulnerability management programs in production environments
  • Experience with GRC/compliance automation platforms such as Vanta (Drata, SecureFrame)
  • Hands-on experience with security tooling across CI/CD, cloud infrastructure, vulnerability scanning, and logging and monitoring workflows
  • Relevant security and/or privacy certifications such as CISSP, CISM, CCSP, CIPP, CIPT

ABOUT US

Born in 2001, Code and Theory is a digital-first creative agency that sits at the center of creativity and technology. We pride ourselves on not only solving consumer and business problems, but also helping to establish new capabilities for our clients. With a global client roster of Fortune 100s and start-ups alike, we crave the hardest problems to solve. With a remote-first approach to our people, we have teams distributed across North America, South America, Europe, and Asia. The Code and Theory global network of agencies is growing and includes Kettle, Instrument, Left Field Labs, Mediacurrent, Rhythm, and TrueLogic.

Striving never to be pigeonholed, we work across every major category: from tech to CPG, financial services to travel & hospitality, government and education to media and publishing. We value the collaboration with our client partners, including but not limited to Adidas, Amazon, Con Edison, Diageo, EY, J.P. Morgan Chase, Lenovo, Marriott, Mars, Microsoft, Thomson Reuters, and TikTok.

The Code and Theory network comprises nearly 2,000 people with 50% engineers and 50% creative talent. We're always on the lookout for smart, driven, and forward-thinking people to join our team.

The target range of compensation for this role is $140,000 - $175,000. Actual compensation is influenced by a wide array of factors including but not limited to skill set, level of experience, and location.