We've built a solid foundation - SOC 2 compliance tooling in Vanta, structured onboarding and offboarding workflows, a vendor security review process, and a cross-functional data governance program.
Quick apply
We've built a solid foundation - SOC 2 compliance tooling in Vanta, structured onboarding and offboarding workflows, a vendor security review process, and a cross-functional data governance program.
Quick apply
We've built a solid foundation - SOC 2 compliance tooling in Vanta, structured onboarding and offboarding workflows, a vendor security review process, and a cross-functional data governance program.
San Francisco, CA · On-site
$120K - $160K/yr
You'll be the go-to person for everything from onboarding new hires to managing our SaaS tool stack and supporting our path to SOC 2 compliance. What You'll Own Identity & Access Management
San Francisco, CA · On-site
$120K - $160K/yr
You'll be the go-to person for everything from onboarding new hires to managing our SaaS tool stack and supporting our path to SOC 2 compliance. What You'll Own Identity & Access Management
We hold an active ISO 27001 certification and SOC 2 Type II attestation, and security and compliance are central to how we operate and how our customers trust us. This role reports to the Information ...
We hold an active ISO 27001 certification and SOC 2 Type II attestation, and security and compliance are central to how we operate and how our customers trust us. This role reports to the Information ...
Acumen is SOC 2 Type II certified, FFIEC-aligned, and has been recognized on the Inc. 5000, CRN MSP 500/50 , and Nashville Business Journal's Best Places to Wor k lists. Our vCISO practice provides ...
Quick apply
Acumen is SOC 2 Type II certified, FFIEC-aligned, and has been recognized on the Inc. 5000, CRN MSP 500/50 , and Nashville Business Journal's Best Places to Wor k lists. Our vCISO practice provides ...
Acumen is SOC 2 Type II certified, FFIEC-aligned, and has been recognized on the Inc. 5000, CRN MSP 500/50 , and Nashville Business Journal's Best Places to Wor k lists. Our vCISO practice provides ...
Acumen is SOC 2 Type II certified, FFIEC-aligned, and has been recognized on the Inc. 5000, CRN MSP 500/50 , and Nashville Business Journal's Best Places to Wor k lists. Our vCISO practice provides ...
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Map detections, controls, and reporting to frameworks/standards (NIST CSF/800-53, CIS Controls, SOC 2, ISO 27001). * Drive vulnerability and exposure management with risk-based prioritization. * Run ...
Map detections, controls, and reporting to frameworks/standards (NIST CSF/800-53, CIS Controls, SOC 2, ISO 27001). * Drive vulnerability and exposure management with risk-based prioritization. * Run ...
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
$93K - $131K/yr
Lead SOC 2 Type II program development * Support FedRAMP readiness and alignment * Risk Management * Assess security risks across systems, services, projects, vendors, and control gaps * Develop and ...
$93K - $131K/yr
Lead SOC 2 Type II program development * Support FedRAMP readiness and alignment * Risk Management * Assess security risks across systems, services, projects, vendors, and control gaps * Develop and ...
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
San Jose, CA · On-site
ISO 27001, SOC 2, PCI-DSS, GDPR, SOX.- Coordinate internal/external audits, documentation, evidence. [devsdata.com], [cybersm.com] Incident Response & Reporting: - Develop incident response plans ...
San Jose, CA · On-site
ISO 27001, SOC 2, PCI-DSS, GDPR, SOX.- Coordinate internal/external audits, documentation, evidence. [devsdata.com], [cybersm.com] Incident Response & Reporting: - Develop incident response plans ...
Support various compliance reports, including SOC 1, SOC 2, and SOC 3 readiness assessments and examinations. * Review testing procedures and results to ensure accuracy, completeness, and compliance ...
Support various compliance reports, including SOC 1, SOC 2, and SOC 3 readiness assessments and examinations. * Review testing procedures and results to ensure accuracy, completeness, and compliance ...
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Tampa, FL · On-site
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Tampa, FL · On-site
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
$93K - $131K/yr
Lead SOC 2 Type II program development * Support FedRAMP readiness and alignment * Risk Management * Assess security risks across systems, services, projects, vendors, and control gaps * Develop and ...
$93K - $131K/yr
Lead SOC 2 Type II program development * Support FedRAMP readiness and alignment * Risk Management * Assess security risks across systems, services, projects, vendors, and control gaps * Develop and ...
Tampa, FL · On-site
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Tampa, FL · On-site
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Manhattan, NY · Remote
Owning and running the company's SOC 2 program and broader security compliance initiatives * Developing and improving security policies, controls, and governance frameworks (SOC 2, ISO 27001, NIST)
Manhattan, NY · Remote
Owning and running the company's SOC 2 program and broader security compliance initiatives * Developing and improving security policies, controls, and governance frameworks (SOC 2, ISO 27001, NIST)
Tampa, FL · On-site
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
Tampa, FL · On-site
Lead the company's SOC 2 Type II and HIPAA compliance initiatives from planning through certification. * Develop, draft, and maintain security, IT, and privacy policies aligned with SOC 2, HIPAA ...
West Chester, OH · On-site +1
The role also plays a key role in supporting SOC 2 compliance by enforcing consistent controls, audit-ready documentation, and system integrity across the project lifecycle. Responsibilities
West Chester, OH · On-site +1
The role also plays a key role in supporting SOC 2 compliance by enforcing consistent controls, audit-ready documentation, and system integrity across the project lifecycle. Responsibilities
$11.78 - $18.03
6% of jobs
$18.03 - $24.28
7% of jobs
$24.28 - $30.53
5% of jobs
$30.53 - $36.78
4% of jobs
$37.62 is the 25th percentile. Wages below this are outliers.
$36.78 - $43.03
14% of jobs
The median wage is $46.43 / hr.
$43.03 - $49.28
24% of jobs
$49.28 - $55.53
13% of jobs
$56.31 is the 75th percentile. Wages above this are outliers.
$55.53 - $61.78
11% of jobs
$61.78 - $68.03
7% of jobs
$68.03 - $74.28
2% of jobs
$74.28 - $80.53
6% of jobs
$11
$48
$80
A SOC 2 Analyst is responsible for monitoring security alerts, analyzing potential threats, and coordinating the response to security incidents on a daily basis. They investigate suspicious activity, conduct detailed log analysis, and escalate complex cases to senior team members when necessary. Additionally, SOC 2 Analysts help fine-tune detection systems and may participate in threat hunting exercises to proactively identify vulnerabilities. The role often involves collaborating closely with IT, network, and compliance teams to ensure organizational security standards are maintained.
A SOC 2 job typically refers to roles related to SOC 2 compliance, which ensures that a company’s systems meet security, availability, processing integrity, confidentiality, and privacy standards. Professionals in these roles work on implementing, maintaining, and auditing SOC 2 controls to protect customer data. Common positions include compliance analysts, security auditors, and IT risk managers. These jobs require knowledge of cybersecurity frameworks, risk management, and regulatory compliance.
To thrive as a SOC 2 (Security Operations Center Tier 2 Analyst), you need a strong foundation in cybersecurity principles, threat analysis, and incident response, typically backed by a degree in IT or cybersecurity and relevant experience. Familiarity with SIEM tools, intrusion detection/prevention systems, and certifications like CompTIA Security+, CEH, or CISSP is highly valued. Strong analytical thinking, attention to detail, and the ability to communicate technical information clearly are key soft skills for this role. These skills are crucial for accurately detecting, investigating, and escalating security incidents to protect organizational assets.

Full-time
Medical, Dental, Vision, Retirement, PTO
Posted 13 days ago
Be an early applicant
Clearstory is looking for an IT & Security Operations Manager to manage and improve the day-to-day operations of our IT, security compliance, and corporate systems infrastructure.
We've built a solid foundation - SOC 2 compliance tooling in Vanta, structured onboarding and offboarding workflows, a vendor security review process, and a cross-functional data governance program. What we need is a dedicated owner to manage these programs day-to-day, project manage key deliverables, maintain what's already working, and identify opportunities to improve and scale as we grow.
If you thrive as the go-to person for IT, compliance coordination, and keeping an organization running smoothly, this role is for you.
ResponsibilitiesIT Administration
Security & Compliance
Business Operations
This is an opportunity to be the dedicated owner of IT and security operations at a growing SaaS company.
You will:
Success in this role means Clearstory's IT, security compliance, and corporate systems run reliably and keep getting better over time.
The Company You'll JoinClearstory is a SaaS platform modernizing how construction companies communicate, approve, and track change orders and related cost workflows. We replace paper, spreadsheets, and email with simple, trusted financial workflows that help contractors get paid accurately and on time.
We are a Series B, 100% SaaS company with strong product-market fit, growing six-figure deals, and a large, underserved TAM. Our customers love us, our retention is strong, and we are building for long-term impact.
Requirements
Strong plus if you have:
You're a hands-on operator who gets things done without being asked. You see a problem, fix it, and move on - whether that's a password reset at 9am or prepping access review documentation at 2pm. Task size doesn't faze you because you know the small stuff and the big stuff both matter at a company this size.
You're organized and reliable. When you're asked to coordinate an offboarding or chase down a vendor's SOC 2 report, it gets done on time and nothing slips. You're comfortable working across teams - Engineering, Finance, GTM - and you can translate security and IT requirements into plain language for people who don't live in that world.
You understand that IT and security operations at a growing company isn't glamorous - but you also know it's foundational. You've seen what happens when access deprovisioning slips or when SOC 2 evidence collection becomes a fire drill. You're the person who keeps things running so that doesn't happen.
This is not a security engineering or CISO-track role - the CTO owns security architecture and policy. This is not a pure helpdesk role either - IT support is part of the job, but compliance coordination and process maintenance are the core.
Benefits