Title: Security Program Manager
Location: Remote (U.S., New York / EST Time Zone Preferred)
About Rhymetec:
Rhymetec was founded in New York City in 2015, growing steadily in the areas of compliance, cyber security and data privacy. Our mission is to ensure our clients are compliant faster, so they can focus on their core business and less on the complexities of building effective and compliant infosec programs.
Job Responsibilities
- Lead technical cyber security programs from scoping to delivery at scale for Rhymetec’s customers.
- Manage a small team of Security Analysts to implement necessary security measures.
- Build information security programs for Rhymetec’s clients. This includes conducting gap assessments against various cyber security frameworks, conducting risk assessments, and overall building strategy for creating and enhancing cyber security programs.
- Achieve and maintain compliance for cyber security frameworks selected by Rhymetec’s customers - participate and manage SOC 2, ISO 27001, PCI, and other external audits on behalf of customers, and provide evidence to CPA’s and/or QSA’s.
- Lead project management for Rhymetec’s customers and create tasks and milestones to achieve required objectives.
- Ensure security analysts are completing necessary work on time without delays.
- Ensure customers achieve the required security objectives such as compliance frameworks on time.
- Monitor and enforce SLAs for responding to customer requests.
- Develop methods of tracking project progress and performance. Analyze results to determine potential issues, risks, and enhancements.
- Improve and maintain customer retention.
- Availability to travel up to 2 weeks out of the year.
Qualifications
- 4+ years working in cybersecurity and GRC
- 2+ years of program management
- Demonstrated ability to function in a fast-paced, multi-program environment with changing priorities
- Previous experience in managing waterfall, hybrid, and agile delivery teams
- Good leadership skills include the ability to influence and gain consensus in the absence of direct authority
- Ability to anticipate potential problems and proactively troubleshoot to resolve issues
- Understanding of cloud architecture and modern cloud systems
- Project management skills
- People management and delegation skills
- CISSP, CISM, CRISC cyber security certification is preferred
- PMP project management certification is preferred
Benefits:
Rhymetec offers a robust employee package, including:
- No cost medical coverage for employees
- Dental and Vision Benefits
- PTO and Sick Time, including 11 paid Holidays
- 401K retirement option
- Company paid Life Insurance
- Summer Friday's!
- Annual career growth stipend - we want to see you thrive
- Annual Subscription to TalkSpace (online counseling & therapy service)
Rhymetec is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment regardless of race, color, religion, gender, gender identity or expression, sexual orientation, national origin, genetic, disability, age, or veteran status.
Top Skills
What We Do
At Rhymetec, our security experts have built and continue to manage over 250 SaaS-based companies' infosec and data privacy programs. We act as an extension of your team and leverage cutting-edge technologies to get customers compliant with frameworks like SOC 2, ISO 27001, HIPAA, GDPR/CCPA, and more in a much shorter timeframe. While most companies offer services for cybersecurity and data privacy OR consulting—Rhymetec offers both. We consult on developing a more effective infosec program within your unique environment and provide the services needed to achieve, improve and maintain a strong security posture.
Our mission is to reduce the complexities of cloud security, making forward-thinking cybersecurity services more accessible to SaaS-based startups. We're here to help you fast-forward your cybersecurity, compliance and data privacy programs.
To learn more, check out our managed vCISO (Virtual CISO), ISO Internal Audit, Penetration Testing, PCI Scanning and Phishing Testing & Training Services: Rhymetec.com
Why Work With Us
Rhymetec is a fully remote cybersecurity MSSP helping SaaS companies stay secure and compliant. We’re people-first: high ownership, flexible work, supportive teammates, and continuous learning. Your ideas ship, your impact is visible, and your growth is backed with mentorship, certifications, and client outcomes. Join us to shape modern security!
Gallery
Rhymetec Offices
Remote Workspace
Employees work remotely.