We’re a SaaS scale-up on our SOC2 journey, and this brand-new role puts you in charge of building and owning our security, compliance, and DevOps foundations. If you want to make a real impact and shape how a company stays secure at scale, this is your chance.
At Ocean.io, we’re rethinking how companies win customers. Our AI-driven platform turns massive datasets into actionable insights, helping B2B teams connect with the right prospects at the right time. We’re a tight-knit team of curious minds who value trust, autonomy, and creativity. Here, you’ll have the space to experiment, take ownership, and build solutions that make a real difference - while enjoying a collaborative, supportive environment where people come first.
Security & Compliance Ownership
Own, maintain, and continuously improve Ocean.io’s SOC2 compliance program, including policies, processes, and evidence collection.
Act as the main point of contact for external auditors, customers, and internal stakeholders on security & compliance matters.
Ensure compliance with relevant frameworks (SOC2) and help build a scalable governance framework for future certifications.
Regularly review, update, and enforce security policies, access controls, and risk management processes.
Drive internal security awareness and training across the organization.
Cloud & Infrastructure Security
Collaborate with the DevOps/Engineering teams to ensure secure cloud architecture and infrastructure.
Implement and maintain security monitoring, intrusion detection, and vulnerability management tools.
Design and enforce security best practices for CI/CD pipelines, Infrastructure as Code (e.g., Terraform), and containerized environments (e.g., Docker, Kubernetes).
Respond to security incidents, lead root cause analysis, and define preventive measures.
Automation & Tooling
Automate compliance evidence collection, access reviews, and monitoring wherever possible.
Work with engineering teams to integrate security checks into the development lifecycle (“shift-left” security).
Research and implement best-in-class tools for identity management, endpoint security, and logging.
Cross-Functional Collaboration
Partner with People & Culture, Legal, and Operations to align policies with global laws and data protection regulations.
Support Sales and Customer Success teams by providing security documentation and answering client security questionnaires.
Act as a trusted advisor to leadership on risk management, compliance roadmaps, and investment needs.
Join a tight-knit, multicultural team that values creativity and knowledge sharing.
Enjoy a culture of ownership, autonomy, and innovation.
Get access to free mental health and lifestyle support through OpenUp, including 1:1 coaching, mindfulness resources, and more.
Enjoy exclusive discounts on wellness perks like floating, massages and more - because your well-being matters too.
Be part of a fun, social office - from daily lunch together to spontaneous Mario Kart, Darts, Card Games or Ping Pong battles.
Work from home one day a week - no approval needed, just a heads-up to your manager.
Become a shareholder in Ocean.io’s journey with company warrants after six months – we believe success should be shared.
And of course, five weeks of holiday per year - because rest is part of the hustle too.
This job comes with several perks and benefits