Head of Information Security & Compliance jobs in United States
cer-icon
Apply on Employer Site
company-logo

Beamery · 2 weeks ago

Head of Information Security & Compliance

Beamery is a leading transformational AI platform in the HR technology industry, enabling enterprise companies to create better and fairer talent decisions. As the Head of Information Security & Compliance, you will lead the security program for our AI-powered talent platform, ensuring the protection of our infrastructure and customer data while maintaining compliance with information security and data protection regulations globally.

Enterprise SoftwareHuman ResourcesMarketing AutomationRecruitingSaaS
check
Comp. & Benefits
check
H1B Sponsor Likelynote

Responsibilities

Maintain Beamery's ISO/IEC 42001 certification, ensuring responsible AI governance, transparency, and bias mitigation across TalentGPT and Workforce Intelligence Suite
Lead AI risk assessments and impact evaluations for systems processing candidate and employee data, ensuring compliance with EU AI Act and emerging US state AI regulations
Embed security-by-design principles in AI development, including model security, training data protection, and secure AI deployment
Design and maintain enterprise security program aligned with ISO 27001 and SOC 2 Type II for multi-tenant SaaS architecture
Lead security operations including vulnerability management, penetration testing, SIEM monitoring, incident response, and business continuity planning
Oversee cloud security for AWS, Google Cloud, and Azure environments, including IAM, network security, encryption, and API security
Manage vendor security assessments and third-party risk management
Build security awareness culture through training and ongoing education programs
Ensure compliance with GDPR, CCPA/CPRA, UK DPA, and emerging global privacy regulations for platform operations
Oversee DPIAs for high-risk processing activities, data breach procedures, and data subject rights fulfillment
Implement privacy controls including data minimization, purpose limitation, and lawful basis documentation
Manage DPAs with customers and Standard Contractual Clauses for international data transfers
Partner with HR to align information security controls with internal HR compliance requirements, addressing gaps between InfoSec and HR domains
Ensure platform compliance with AI hiring regulations (NYC Local Law 144, EU AI Act) including bias audits and transparency requirements for customer-facing features
Collaborate with Product to build transparency and explainability into AI-powered screening tools
Lead external audits including SOC 2 Type II, ISO 27001, ISO 42001, and customer security assessments
Maintain audit-ready documentation and monitor evolving regulatory landscape
Serve as primary contact for regulatory inquiries and customer security questionnaires
Report security and compliance status to Board and executive leadership
Support Sales with security expertise to accelerate deal closure through RFP responses and security reviews
Partner with Engineering and Product to translate compliance requirements into scalable technical controls
Build security and compliance into M&A readiness planning

Qualification

ISO 27001GDPRCISSPCloud SecurityAI GovernanceSOC 2CISMDevSecOpsTeam BuildingCommunication Skills

Required

10-15 years information security and compliance experience with 5+ years in leadership roles, preferably in B2B SaaS or HR technology
Deep expertise in ISO 27001, SOC 2, GDPR, and CCPA with proven track record achieving and maintaining certifications
Strong understanding of AI governance and emerging AI regulations (ISO 42001, EU AI Act) as applied to employment technology
Hands-on experience with cloud security architecture and DevSecOps practices across AWS, Google Cloud, or Azure
Demonstrated success building security and compliance programs including policy development, control implementation, and team building
Experience managing external audits and supporting enterprise sales cycles with security/compliance expertise
Exceptional communication skills with ability to translate technical concepts for executives, board members, and customers
Strong business acumen to balance security requirements with business objectives in fast-paced environments
CISSP required; CISM, CRISC, or CISA strongly preferred
CIPM or CIPP/E highly desirable
Bachelor's degree in Computer Science, Information Security, or related technical field; Master's degree preferred

Preferred

CISM, CRISC, or CISA strongly preferred
CIPM or CIPP/E highly desirable
Master's degree preferred

Company

Workforce Intelligence

H1B Sponsorship

Beamery has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (2)
2022 (2)

Funding

Current Stage
Late Stage
Total Funding
$223M
Key Investors
CIBC Innovation BankingTeachers’ Venture GrowthOntario Teachers' Pension Plan
2024-10-29Debt Financing
2022-12-13Series D· $50M
2021-06-17Series C· $138M

Leadership Team

leader-logo
Michael Paterson
Co-Founder & Advisor
linkedin
leader-logo
Pavel Kilovatiy
CTO
linkedin
Company data provided by crunchbase