RadarFirst · 10 hours ago
Security & Compliance Specialist
RadarFirst is seeking a Security & Compliance Specialist to strengthen our security posture across cloud infrastructure, applications, and customer-facing operations. This role owns CVE and vulnerability management, threat intelligence, and incident response while collaborating with Compliance to support customer security questionnaires and due-diligence requests.
CompliancePrivacyProductivity ToolsRisk ManagementSaaSSecuritySoftware
Responsibilities
Own the end-to-end vulnerability management lifecycle, including identification, triage, prioritization, remediation coordination, and validation
Integrate vulnerability scanning into CI/CD pipelines and cloud environments
Build dashboards and reports that track vulnerability posture and remediation SLAs
Partner with DevOps and Engineering teams to drive timely remediation across AWS, containerized, and application environments
Monitor threat intelligence feeds, CVE sources, and emerging exploit trends to identify relevant risks
Assess how new vulnerabilities or TTPs may impact RadarFirst systems and architecture
Produce actionable intelligence summaries for engineering and leadership teams
Manage and tune alerts from Datadog, AWS Security Hub, GuardDuty, EDR and other monitoring platforms
Perform first-level triage, determining severity, scope, and appropriate escalation
Automate alert enrichment, correlation, and response using scripts, workflows, and AI-powered tools
Lead or support incident response activities, including detection, containment, investigation, recovery, and post-incident analysis
Conduct root-cause analysis and document findings
Maintain and continuously improve IR playbooks, processes, and readiness exercises
Support SOC 2, HITRUST, and other frameworks
Complete customer security questionnaires, RFPs, DDQs, SIG Lite/Core, and HECVAT, ensuring technical accuracy
Use AI and automation to streamline questionnaire completion, generate evidence packets, and maintain a consistent knowledge base
Perform technical quality reviews of all security-related documentation before submission to customers or auditors
Provide technical support during customer security reviews and sales processes
Implement and maintain cloud, application, and infrastructure security controls across AWS, Terraform, Docker, and other environments
Partner with DevOps to enhance CI/CD pipeline security through automated testing, secrets scanning, and secure configuration practices
Support deployment and tuning of SAST, DAST, and container scanning tools
Promote encryption, IAM best practices, and secure communication patterns across systems
Work closely with Engineering, DevOps, Sales, and Customer Success teams
Provide training and guidance on secure development, threat awareness, and vulnerability remediation
Develop and maintain automated workflows, documentation templates, and knowledge bases
Qualification
Required
4+ years of experience in cybersecurity, security operations, vulnerability management, or similar roles
Experience with AWS security services (Security Hub, GuardDuty, IAM, KMS, Secrets Manager)
Proficiency with vulnerability scanning and management tools
Experience completing or reviewing security questionnaires, RFPs, DDQs, or compliance documentation
Familiarity with SOC 2, HITRUST, NIST CSF, CIS Benchmarks, and OWASP Top 10
Strong experience with scripting (Python, Bash, Go) and security automation
Ability to use AI tools to automate documentation, questionnaire responses, knowledge base creation, and workflow optimization
Strong technical writing and communication skills, especially in customer-facing contexts
Preferred
Industry certifications: Security+, GSEC, GCIH, GCIA, or similar
Experience supporting compliance audits or evidence collection
Experience in a SaaS, cloud-native, or privacy-focused organization
Benefits
Comprehensive benefits that include medical and dental, 401k, Life and Disability insurance, generous flexible time off policy, paid holiday time, and 12 weeks paid parental leave.
Flexible spending accounts for medical, dependent care, and commuter expenses
Community outreach programs to encourage giving back to our community both as a group and individually
Commitment to anti-racism work and accountability to our short-term and long-term equity & inclusion action plan
On-site amenities such as indoor bike racks, showers, lockers, and gym facilities
Casual work environment in an ideal central location, close to great food, shopping, and transportation options
Company
RadarFirst
SaaS-based incident response management platform that simplifies compliance with data breach laws.
H1B Sponsorship
RadarFirst has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2023 (3)
Funding
Current Stage
Growth StageTotal Funding
$6.2MKey Investors
Vista Equity Partners
2018-11-12Private Equity
2016-08-02Series A· $6.2M
Recent News
Company data provided by crunchbase