Sr. Security & Compliance Architect
Boston, Massachusetts, United States
Location: Boston,Massachusetts,United States
About Us:
Zeitview is the leading intelligent aerial imaging company for high-value infrastructure, providing businesses with actionable, real-time insights to recover revenue, reduce risk and improve build quality. We serve customers in the solar, wind, insurance, construction, real estate, and critical infrastructure industries. Trusted by the largest enterprises in the world, Zeitview is active in over 70 countries. Our mission is to accelerate the global transition to renewable energy and sustainable infrastructure through advanced inspection solutions. Take a look at our latest achievements here!
About the Role:
We are seeking a strategic and results-driven Senior Security & Compliance Architect to lead and scale our security and compliance initiatives as we continue to strengthen our technology and operational resilience. As a key member of the leadership team, the Senior Security & Compliance Architect will be responsible for designing, implementing, and continuously improving our security architecture, compliance frameworks, and risk management strategies. This role will ensure that security and compliance are embedded into our product and infrastructure while aligning with business objectives and industry regulations. The ideal candidate will have deep technical expertise in security, strong leadership skills, and a passion for fostering a culture of security awareness and innovation.
You must have a proven track record of success and excel in a fast-growing, technology-based startup culture while working autonomously. We offer a competitive salary with potential bonus based on experience and performance, and a generous equity stake for the right candidate. We provide a comprehensive medical, vision, & dental plan, unlimited paid time off, and a great team environment with room for advancement.
Responsibilities:
- Develop & Enforce Security Policies: Establish, implement, and maintain security and compliance policies, standards, and procedures aligned with industry best practices and regulatory requirements.
- Lead Security & Compliance Initiatives: Drive security and compliance projects from planning to execution, ensuring alignment with business goals.
- Audit & Risk Management: Oversee and manage SOC 2, ISO 27001, and other security audits, including readiness assessments, evidence collection, and remediation efforts.
- Security Questionnaires & Customer Assurance: Manage and respond to customer security questionnaires and due diligence requests, ensuring transparency and alignment with security standards.
- Cross-Functional Collaboration: Partner with Engineering, Product, IT, and Legal teams to integrate security and compliance requirements into development processes and business operations.
- Threat Monitoring & Incident Response: Stay ahead of emerging security threats, trends, and regulatory changes, ensuring proactive risk mitigation strategies.
- Training & Awareness: Provide guidance and training to employees on security best practices, compliance obligations, and incident response procedures.
- Vendor & Third-Party Security Management: Assess and manage security risks associated with external vendors, ensuring compliance with security standards and handling vendor security questionnaires.
- Hands-On Implementation: Take a direct role in implementing security tools, controls, and compliance measures where needed.
Qualifications:
- Education: Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field. Relevant certifications (e.g., CISSP, CISM, CISA) are a plus.
- Experience: 7+ years of experience in security and compliance, with a strong focus on cloud security and risk management.
- Audit & Certification Expertise: Hands-on experience with SOC 2 Type I and Type II audits, including managing audit readiness, evidence collection, and remediation plans.
- Regulatory & Compliance Knowledge: Deep understanding of security and compliance frameworks, including NIST, ISO 27001, GDPR, CCPA, and other relevant regulations.
- Security Best Practices: Experience implementing security policies, risk assessments, and incident response plans in cloud-based environments (AWS, Azure, or GCP).
- Leadership & Collaboration: Proven ability to lead security and compliance initiatives, influence cross-functional teams, and drive company-wide security awareness.
- Communication Skills: Strong ability to translate technical security concepts into clear, actionable business recommendations for both technical and non-technical stakeholders.
- Vendor & Third-Party Risk Management: Experience managing security risk assessments for third-party vendors and ensuring compliance with security standards.
- Process Improvement & Automation: Ability to optimize security processes through automation, tooling, and continuous monitoring.
- Self-Starter Mentality: Ability to work independently, prioritize tasks effectively, and thrive in a fast-paced, evolving environment.
What’s Included::
- Feel great about your work as you join a leading mission-driven intelligent aerial imaging company - our goal is to accelerate the global transition to renewable energy and sustainable infrastructure, and you personally will play a large part in making this happen!
- Your choice of multiple medical insurance plans, including one that covers 100% of the premium for yourself and your dependents
- 100% paid dental and vision insurance
- Unlimited PTO: We mean it when we say we prioritize work-life balance and mental health. Just be sure to share pictures of your vacation when you return!
- Work-from-home environment: flexibility for employees should be the norm for companies
- Autonomy and upward mobility
- Diverse, equitable, and inclusive culture: a place where your voice matters
Zeitview is proud to be an equal opportunity employer. At Zeitview, we believe in cultivating an environment where our team members can bring their authentic, whole selves to work. Encouraging identity and belonging is one of the many aspects of our culture that makes us stronger as an organization and drives innovation. We are committed to building and delivering a diverse, inclusive, and equitable workforce that includes age, color, sex, disability, national origin, race, religion or veteran status, that is representative of the world around us, where all individuals are treated with respect and dignity - and to act swiftly if this value is ever threatened. We are constantly striving to be better, and we continue to take strategic steps to advance representation.
We also provide reasonable accommodation for qualified individuals with disabilities and for seriously held religious beliefs in accordance with applicable law.
Apply to this job* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰
Tags: Audits Automation AWS Azure CCPA CISA CISM CISSP Cloud Compliance Computer Science GCP GDPR Incident response ISO 27001 Monitoring NIST Risk assessment Risk management SOC SOC 2
Perks/benefits: Competitive pay Equity / stock options Health care Insurance Salary bonus Startup environment Transparency Unlimited paid time off
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.