Back to Remote jobs  >   All others
Information Security Specialist @Customer.io
All others
Salary usd 151,000 - 1..
Remote Location
πŸ‡ΊπŸ‡Έ USA Only
Job Type full-time
Posted 2d ago

[Hiring] Information Security Specialist @Customer.io

2d ago - Customer.io is hiring a remote Information Security Specialist. πŸ’Έ Salary: usd 151,000 - 170,000 per year πŸ“Location: USA

Role Description

Hi, I'm Bill, VP of Operations at Customer.io. I'm looking for an Information Security Specialist to join our team.

As our first dedicated InfoSec hire, you'll be the go-to person for securing our organizational systems, data, and operations across a globally distributed, remote-first company. Reporting to the VP of Operations, you'll work closely with IT, Compliance, and Platform Security to protect customer data, maintain our compliance posture, and help the company adopt AI tools thoughtfully and securely. This is an experienced individual contributor role β€” you'll be hands-on with tooling and policy, not managing a team.

We're a company that embraces AI β€” we use it in our product and want our team to use it to do their best work. We need someone who sees AI as an opportunity to enable, not just a risk to lock down. You'll help us build practical guardrails that let people move fast with AI while protecting customer data and staying compliant.

What we value

  • Pragmatic security β€” You focus on real risk reduction, not perfection, and avoid slowing the business down unnecessarily.
  • Enablement over restriction β€” You default to β€œyes, if…” and help teams adopt tools like AI safely and confidently.
  • Ownership and autonomy β€” You take responsibility for your domain and can operate independently in a fast-moving environment.
  • Clarity and usability β€” You create policies and guidance that are simple, practical, and actually followed.
  • Cross-functional partnership β€” You build trust and work effectively across IT, Engineering, Legal, and GTM teams.
  • Curiosity and adaptability β€” You stay current on evolving threats, especially in AI and SaaS environments.
  • Calm under pressure β€” You bring structure and clear thinking during incidents and audits.
  • High standards, right-sized β€” You balance quality with speed and scale appropriately for a growing company.

What you’ll do

  • AI Governance & Enablement β€” Develop and maintain a practical framework for evaluating, approving, and securely deploying AI tools across the organization.
  • Vulnerability Management β€” Own our vulnerability management program β€” scanning, triaging, coordinating remediation, and tracking resolution across infrastructure, applications, and endpoints.
  • Compliance β€” Support and improve our compliance posture (SOC 2, ISO 27001), including evidence collection, control monitoring, and audit support.
  • Incident Response β€” Lead security incident response β€” investigate alerts, coordinate containment, document root causes, and drive improvements.
  • Security Tooling β€” Manage and tune security tooling (EDR, SIEM/logging, DLP, email security, identity and access management controls).
  • Vendor & Third-Party Risk β€” Conduct security reviews of third-party vendors, SaaS integrations, and AI services.
  • Policy & Standards β€” Develop and maintain security policies, standards, and runbooks that are practical and right-sized for our environment.
  • Application Security Partnership β€” Partner with Platform Security and Engineering on application security topics.
  • Security Awareness β€” Drive security awareness initiatives β€” phishing simulations, training programs, AI literacy education, and ongoing guidance for the team.
  • Threat Intelligence β€” Monitor and assess emerging threats, and translate them into actionable recommendations for leadership.

Qualifications

  • 4+ years of experience in information security, cybersecurity, or a related technical discipline.
  • A pragmatic, enabling mindset toward AI β€” you understand the risks but you're not reflexively restrictive.
  • Hands-on experience with compliance frameworks (SOC 2, ISO 27001).
  • Strong knowledge of cloud security fundamentals (AWS, GCP, or similar), endpoint protection, and identity/access management.
  • Experience with security tooling β€” EDR, SIEM, vulnerability scanners, DLP, and email security platforms.
  • Solid understanding of incident response processes and the ability to stay calm under pressure.
  • Familiarity with SaaS environments, remote-first operations, and the security challenges that come with them.
  • Strong written communication skills.
  • Self-starter mentality β€” you're comfortable working autonomously and prioritizing across competing demands.
  • Experience evaluating AI/ML tools for data privacy and security risks is a strong plus.
  • Experience in vendor risk assessment and third-party security reviews.
  • Security certifications (CISSP, CISM, CompTIA Security+, or similar) are a plus but not required.

Compensation & Benefits

  • Starting salary for this role is $151,000 to $170,000 (or equivalent in local currency) depending on experience and subject to market rate adjustment.
  • 100% coverage of medical, dental, vision, mental health, and supplemental insurance premiums for you and your family.
  • 16 weeks paid parental leave, unlimited PTO.
  • Stipends for remote work and wellness, a professional development budget, and more.

Our Process

  • 30-minute call with Recruiter.
  • 45-minute video call with Hiring Manager.
  • 3 x 30-minute video calls with Cross-Functional Partners (IT, Compliance, Platform Security).
  • 45-minute Case & Case Review Call with Team.
  • All final candidates will be asked to complete a background check and employment verifications as part of our pre-employment process.

Join us!

Check out our careers page for more information about why you should come work with us! We believe in empathy, transparency, responsibility, and, yes, a little awkwardness. If you’re excited by what you read β€” apply now.

Before You Apply
️
πŸ‡ΊπŸ‡Έ Be aware of the location restriction for this remote position: USA Only
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Back to Remote jobs  >   All others
Information Security Specialist @Customer.io
All others
Salary usd 151,000 - 1..
Remote Location
πŸ‡ΊπŸ‡Έ USA Only
Job Type full-time
Posted 2d ago
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Unlock 152,720 Remote Jobs
️
πŸ‡ΊπŸ‡Έ Be aware of the location restriction for this remote position: USA Only
β€Ό Beware of scams! When applying for jobs, you should NEVER have to pay anything. Learn more.
Apply for this position
Did not apply βœ“
Applied βœ“
Sent Follow-Up βœ“
Interview Scheduled βœ“
Interview Completed βœ“
Offer Accepted βœ“
Offer Declined βœ“
Unlock 152,720 Remote Jobs
Γ—

Apply to the best remote jobs
before everyone else

Access 152,720+ vetted remote jobs and get daily alerts.

4.9 β˜…β˜…β˜…β˜…β˜… from 500+ reviews
Unlock All Jobs Now

Maybe later