Rethink First is seeking a Manager of Information Security to lead the Security Assurance function, ensuring the organization meets compliance standards such as HIPAA, SOC 2 Type II, and HITRUST in a cloud-based environment.
Responsibilities: Lead Security Assurance efforts, manage audits, implement compliance programs using Vanta, and oversee vendor risk management while developing security policies and documentation.
Skills: 7+ years in Information Security with hands-on experience in governance and compliance, familiarity with Vanta, and knowledge of Microsoft Azure security architecture.
Qualifications: Strong communication skills, experience in healthcare SaaS, and preferable certifications like CISA or CISSP.
Location: This is a remote position for candidates residing in specified states across the USA, including AL, CA, and TX.
Compensation: Not provided by employer. Typical compensation ranges for this position are between $100,000 - $150,000.
About Rethink First
Rethink First is a leading behavioral health technology company working to make mental wellness, education, and support accessible and scalable. Through our suite of cloud-based platforms—including RethinkEd, RethinkCare, and RethinkBH—we serve educators, employers, and providers with tools that deliver measurable, inclusive outcomes.
We're on a mission to make behavioral health more effective, equitable, and human—and we’re looking for a creative visionary to help lead that charge.
About the Role
We are building a modern, cloud-forward security program grounded in Cyber Resilience, Application Security, and Security Assurance. As our Manager, Information Security, you will be the operational and execution leader for our Security Assurance function while helping shape key processes across SecOps and AppSec.
This role is ideal for someone who thrives in a high-growth SaaS environment, collaborates well cross-functionally, and wants to help mature a security program that must support HIPAA, SOC 2 Type II, HITRUST, and a broad healthcare customer base.
You will own the day-to-day execution of GRC, Audit Readiness, Evidence Collection, Policy Management, TPRM, and Client Trust—and must have hands-on experience implementing or operating Vanta as a centralized compliance automation platform.
You will serve as a multiplier for the Sr Director, creating repeatable processes, driving deadlines, maturing documentation, and ensuring audit-ready control operation across Azure, M365, and our SaaS product ecosystem.
Key Responsibilities
Security Assurance Leadership (Primary Responsibility – 60%)
Cyber Resilience & SecOps Leadership (25%)
Application Security Collaboration (15%)
Required Qualifications
Preferred Qualifications
Benefits:
Location: Remote opportunities are available to candidates who reside in the following states: AL, AZ, CT, FL, GA, HI, IA, IL, IN, KY, LA, MD, MA, MI, MN, MO, MT, NC, NE, NH, NJ, NV, OH, OR, PA, RI, TN, TX, VA, WA, WI, WY
Our commitment to an inclusive workplace
RethinkFirst is an equal opportunity employer and is committed to providing a workplace free from harassment and discrimination. We celebrate the unique differences of our employees because that is what drives curiosity, innovation, and the success of our business. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, pregnancy, genetic information, disability, status as a protected veteran, or any other protected category under applicable federal, state, and local laws. Accommodations are available for applicants with disabilities.
#remote
If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.
As a Senior Security Engineer (Threat Intelligence) at 1Password you will turn adversary research into operational detections, hunting activities, and incident-driven improvements to protect cloud-native, identity-focused environments.
WGU is hiring a Salesforce Enterprise Architect to design and lead enterprise-grade Salesforce solutions that align platform capabilities with institutional strategy and growth.
CDW is hiring a Trellix SME to design, deploy, and optimize Trellix cybersecurity solutions for federal environments while serving as the primary technical authority and trainer.
Lead the configuration, integrations, and long-term administration of Dungarvin’s Workday platform to support 2,000+ users and drive a successful June 2026 go-live.
Lead and grow a security incident response team to strengthen detection, triage, containment, and post-incident learning for a fast-growing, remote-first cybersecurity company.
An experienced IT Specialist is needed to maintain secure, reliable IT systems and support manufacturing applications across a global environment.
CDW seeks an experienced Cisco Call Manager Engineer to architect, deploy, and support Cisco Unified Communications solutions onsite in Washington, D.C.
BlueAlly is hiring a seasoned Network Engineer II with an active Secret clearance to deliver onsite network engineering, technical leadership, and client-facing documentation and briefings in Honolulu.
Aretum is hiring a Help Desk Technician II to provide advanced Tier 2 troubleshooting and in-person deskside support for federal client environments.
Experienced Salesforce-focused Business Systems Analyst needed to lead complex integrations and mentor agile teams across a large nonprofit healthcare organization.
CG Tech Services is hiring a remote Assistant Technical Services Delivery Manager to oversee ticket flow, provide Level 2/3 escalation support, and coordinate a technician team while working primarily Seattle business hours.