CronJobs

security jobs

Director, Security Assurance and Compliance

Toast · Remote, United States

remoteunknown$204,000–$204,000Posted Sep 28, 2026

Apply on the employer site

About this role

<p>Toast creates technology to help restaurants and local businesses succeed in a digital world, helping business owners operate, increase sales, engage customers, and keep employees happy.</p> <p>Most compliance organizations prove their controls by assembling evidence by hand, once per framework, every year. We are an organization of the future: common controls tested once in code, monitored continuously, and reused across frameworks (including PCI, SOC, SOX, and ISO). You will lead that build for a payments and lending platform where regulatory frameworks have real teeth.</p> <p>This role represents a strategic shift toward engineered, proactive compliance where trust is continuously measured rather than only periodically asserted in documents. Operating as an independent second line of defense, you will balance rigorous assurance with engineering pragmatism, maintaining the autonomy to assess internal teams while helping them scale through automation.</p> <p>The position spans both internal transformation and external accountability. Internally, you will drive continuous controls monitoring and risk governance; externally, you will own the evidence base that powers our customer trust surface and sales enablement efforts.</p> <p><strong>A day in the life (Responsibilities) </strong></p> <ul> <li><strong>Drive Engineered Compliance:</strong> Build and own continuous controls monitoring, automated evidence collection, and compliance-as-code initiatives so controls are tested once and reused seamlessly across multiple frameworks and certifications.</li> <li><strong>Lead Enterprise Risk & Continuity Governance:</strong> Manage overall organizational security risk, third-party and vendor risk, alongside business continuity and disaster recovery governance.</li> <li><strong>Own the Assurance Evidence Base:</strong> Maintain and safeguard the independent evidence base underlying our Trust Center and customer security reviews, ensuring absolute integrity while partnering with Customer Trust teams on delivery.</li> <li><strong>Serve as Second Line of Defense:</strong> Act as an independent reviewer with the standing and authority to challenge engineering and operational teams, ensuring objective assessment across all security domains.</li> <li><strong>Evolve Team Capabilities:</strong> Mentor and upskill the security compliance organization, driving a successful cultural and technical transition from manual auditing to automated compliance engineering.</li> </ul> <p><strong>What you'll need to thrive (Requirements)<br></strong></p> <ul> <li><strong>Proven Transformation Leadership:</strong> Experience leading a security assurance or risk transformation program rather than solely maintaining a steady-state compliance function.</li> <li><strong>Deep Framework Expertise:</strong> Strong technical command of major regulatory and security frameworks including PCI, SOC, SOX, and ISO.</li> <li><strong>Hands-on Automation Track Record:</strong> Demonstrated success implementing automated controls and continuous evidence collection while upskilling existing team members through the shift.</li>...

Listing freshness

CronJobs last confirmed this listing 1h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.

Browse all software engineering jobs →

Follow fresh jobs in Discord