Q Way Technologies
Hiring For Information Security & Compliance… at Q Way… · Remote
Skills
Job Description
Dear Candidates,
Greetings From Qway Technologies
Location: Hybrid/Remote USA (EST/PST Time Zones)
Experience: 5+ Years
Reports To: Head of Technology
Job Summary
We are looking for an experienced Information Security & Compliance Manager to lead our information security and compliance program. The role requires strong hands-on expertise in Microsoft 365 security, SOC 2 Type 2, risk management, incident response, and security compliance.
The ideal candidate should be comfortable working with technical teams as well as presenting security and compliance information to clients and enterprise prospects.
Key Responsibilities
- Own and continuously harden the Microsoft 365 security environment including Entra ID, Conditional Access, PIM, Defender, Purview, and Intune.
- Manage DLP, sensitivity labels, retention, external sharing, identity, endpoint, and access controls.
- Lead the SOC 2 Type 2 program, including controls, evidence collection, audits, testing, and remediation.
- Manage vendor risk assessments, security incidents, business continuity, and disaster recovery.
- Oversee security controls and risks associated with AI-enabled platforms and tools.
- Lead security questionnaires, client security reviews, due diligence calls, and enterprise security discussions.
- Develop security awareness, phishing simulation, onboarding, and security training programs.
- Maintain security policies, procedures, controls, and compliance documentation.
Mandate Requirements
- 5+ years of experience in Information Security, Cybersecurity, IT Security, or Compliance.
- 2+ years of experience leading a security/compliance program.
- Strong hands-on experience with Microsoft 365 Security.
- Mandatory experience with Entra ID/Azure AD, Conditional Access, PIM, Defender, Purview, and Intune.
- Strong experience managing SOC 2 Type 2 compliance and audit activities.
- Experience with DLP, IAM, endpoint security, incident response, and vendor risk management.
- Experience securing AI tools/platforms and understanding AI-related security and data protection risks.
- Strong communication skills with experience handling client security questionnaires and security review calls.
- Ability to communicate technical security concepts clearly to executives, clients, and non-technical stakeholders.
Good to Have
- CISSP, CISM, CISA, CRISC, CCSP or Microsoft Security certifications.
- Knowledge of ISO 27001, NIST CSF, GDPR, HIPAA, or PCI DSS.
- Experience managing security for a globally distributed/remote workforce.
Interested Please contact below number for further process.
Number: 7397746136 (Available In Whatsapp)
Regards
HR Team
Qway Technologies