Writing.io Jobs

Find the best remote jobs. Answer a few questions and we'll deploy a powerful assistant to help you search, create alerts, and more.

1 What roles are you open to?

2 Experience level

3 Work style

Did you know? If memory is enabled, Writing.io can remember your job search preferences and help you to improve your resume, craft customized outreach and more.

Security Director, Security Assurance and Compliance at Toast

Leads security assurance, compliance engineering, enterprise risk, continuity governance, and automated controls monitoring for a payments platform.

Exec Posted 4 days ago RemoteFirstJobs Product
What this role involves

Toast creates technology to help restaurants and local businesses succeed in a digital world, helping business owners operate, increase sales, engage customers, and keep employees happy.

Most compliance organizations prove their controls by assembling evidence by hand, once per framework, every year. We are an organization of the future: common controls tested once in code, monitored continuously, and reused across frameworks (including PCI, SOC, SOX, and ISO). You will lead that build for a payments and lending platform where regulatory frameworks have real teeth.

This role represents a strategic shift toward engineered, proactive compliance where trust is continuously measured rather than only periodically asserted in documents. Operating as an independent second line of defense, you will balance rigorous assurance with engineering pragmatism, maintaining the autonomy to assess internal teams while helping them scale through automation.

The position spans both internal transformation and external accountability. Internally, you will drive continuous controls monitoring and risk governance; externally, you will own the evidence base that powers our customer trust surface and sales enablement efforts.

A day in the life (Responsibilities)

  • Drive Engineered Compliance: Build and own continuous controls monitoring, automated evidence collection, and compliance-as-code initiatives so controls are tested once and reused seamlessly across multiple frameworks and certifications.
  • Lead Enterprise Risk & Continuity Governance: Manage overall organizational security risk, third-party and vendor risk, alongside business continuity and disaster recovery governance.
  • Own the Assurance Evidence Base: Maintain and safeguard the independent evidence base underlying our Trust Center and customer security reviews, ensuring absolute integrity while partnering with Customer Trust teams on delivery.
  • Serve as Second Line of Defense: Act as an independent reviewer with the standing and authority to challenge engineering and operational teams, ensuring objective assessment across all security domains.
  • Evolve Team Capabilities: Mentor and upskill the security compliance organization, driving a successful cultural and technical transition from manual auditing to automated compliance engineering.

What you’ll need to thrive (Requirements)

  • Proven Transformation Leadership: Experience leading a security assurance or risk transformation program rather than solely maintaining a steady-state compliance function.
  • Deep Framework Expertise: Strong technical command of major regulatory and security frameworks including PCI, SOC, SOX, and ISO.
  • Hands-on Automation Track Record: Demonstrated success implementing automated controls and continuous evidence collection while upskilling existing team members through the shift.
  • Technical & Pragmatic Mindset: Ability to balance regulatory rigor with engineering constraints, holding your own in deep technical conversations with engineers.
  • People Management Experience: Proven track record leading a team of security, risk, or compliance professionals.

What will help you stand out (Nonessential Skills/Nice to Haves)

  • Background in payments, fintech, or another highly regulated platform business.
  • Direct experience operating within a two-lines-of-defense governance structure.
  • Experience scaling automated compliance architecture within fast-growing cloud environments.

AI at Toast

At Toast, one of our company values is that we’re hungry to build and learn. We believe learning new AI tools empowers us to build for our customers faster, more independently, and with higher quality. We provide these tools across all disciplines, from Engineering and Product to Sales and Support, and are inspired by how our Toasters are already driving real value with them. The people who thrive here are those who embrace changes that let us build more for our customers; it’s a core part of our culture.

Our Total Rewards Philosophy

We strive to provide competitive compensation and benefits programs that help to attract, retain, and motivate the best and brightest people in our industry. Our total rewards package goes beyond great earnings potential and provides the means to a healthy lifestyle with the flexibility to meet Toasters’ changing needs. Learn more about our benefits at https://careers.toasttab.com/toast-benefits.

The base salary range for this role is listed below. The starting salary will be determined based on skills, experience, and geographic location. In addition to base salary, our total rewards components include cash compensation (overtime, bonus/commissions if eligible), equity, and benefits. You can learn more about how we align pay with local labor markets in our Geographic Pay Zone Philosophy.

Zone A

$204,000—$326,000 USD

Zone B

$177,000—$283,000 USD

Zone C

$159,000—$254,000 USD

How Toast Uses AI in its Hiring Process

Throughout the hiring process, our goal is to get to know you. We use AI tools to support our recruiters and interviewers with tasks like note-taking, summarization, and documentation of interviews to ensure they can be fully focused on your conversation. All hiring decisions are made by people. We ask that you complete interviews and assessments on your own, without real-time AI tools, recording, or transcription bots, unless we tell you otherwise in advance. To learn more: https://careers.toasttab.com/ai-in-hiring

Our Approach to Hybrid Working

We embrace a hybrid work model that fosters in-person collaboration while valuing individual needs. Our goal is to build a strong culture of connection as we work together to empower the hospitality community, regardless of location. Please visit the Locations page on our career site to learn more about our in-office expectations by region: https://careers.toasttab.com/locations-toast

People Are the Secret Ingredient in Our Recipe for Success

At Toast, our employees are our secret ingredient—when they thrive, we thrive. The restaurant industry brings together people with a wide range of backgrounds, experiences, and perspectives, and we value that same breadth at Toast. We strive to build a culture grounded in authenticity, respect, and humility, where every Toaster has a real opportunity to grow, contribute, and do their best work—raising the bar in delivering exceptional experiences for our customers and each other.

Apply today!

Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact candidateaccommodations@toasttab.com.

---—

For roles in the United States, it is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Read the full description
Security Director, Customer Trust at Toast

Leads Toast’s customer trust program, security governance, reporting, business operations, and security culture initiatives.

Exec Posted 4 days ago RemoteFirstJobs Product
What this role involves

Toast creates technology to help restaurants and local businesses succeed in a digital world, helping business owners operate, increase sales, engage customers, and keep employees happy.

Our customers trust us with their payments, their staff data, and the system their restaurant runs on. We hold ourselves to a high bar in protecting it. This role’s job is to make that provable — to a restaurant group’s IT team, to an enterprise procurement reviewer, and to a regulator — fast enough that security becomes a reason we win deals rather than a step that slows them down.

This is one of the clearest expressions of a broader shift underway in Toast’s new Trust & Security organization: moving from a compliance-led, reactive function toward one that’s engineering-led and proactive, where trust is treated as a product rather than asserted in documents. Customer Trust is the business engine of that shift.

The role has two halves, and we want to be upfront about that. The first is external customer-facing: you own how Toast demonstrates its security to the market. The second focuses on our internal customers and stakeholders: you own the planning and operating rhythm of the security organization itself. Both are senior work, and the combination will have significant impact across the company.

A day in the life (Responsibilities)

  • Run the Customer Trust Program: Own the Trust Center, customer security reviews and questionnaires, and how we support the sales team. You own the customer-facing surface — the Trust Center, the review process, and the relationship with sales. Our Security Assurance & Compliance team produces the underlying evidence; you decide how it’s presented and how fast it moves.
  • Lead Governance and Reporting: Own policy, security measurement, and the reporting rhythm for leadership, the board, and regulators, so each audience is working from a rhythm they trust.
  • Run Security Business Operations: Own portfolio management, joint planning, and workforce and budget planning for the security organization; write the budget and headcount case that leadership believes.
  • Build Security Culture: Build awareness and design our champions program so it extends the security function’s reach without adding headcount.

What you’ll need to thrive (Requirements)

  • You’ve built a customer-facing trust or assurance program for a platform business — a Trust Center, a customer security review function, or a security sales-support motion.
  • You work comfortably where security, sales, and executive communication meet, and you can translate security posture into business terms.
  • Strong program and portfolio management, and you can write a budget and headcount case that people believe.
  • You’ve presented to executives, boards, and regulators.
  • You’ve led a team of 10 or more, including managers.

What will help you stand out (Nonessential Skills/Nice to Haves)

  • Payments, fintech, or another regulated platform business.
  • A background spanning both a technical security function and a customer-facing one.
  • Experience turning a security program into an asset the sales team relies on.

AI at Toast

At Toast, one of our company values is that we’re hungry to build and learn. We believe learning new AI tools empowers us to build for our customers faster, more independently, and with higher quality. We provide these tools across all disciplines, from Engineering and Product to Sales and Support, and are inspired by how our Toasters are already driving real value with them. The people who thrive here are those who embrace changes that let us build more for our customers; it’s a core part of our culture.

Our Total Rewards Philosophy

We strive to provide competitive compensation and benefits programs that help to attract, retain, and motivate the best and brightest people in our industry. Our total rewards package goes beyond great earnings potential and provides the means to a healthy lifestyle with the flexibility to meet Toasters’ changing needs. Learn more about our benefits at https://careers.toasttab.com/toast-benefits.

The base salary range for this role is listed below. The starting salary will be determined based on skills, experience, and geographic location. In addition to base salary, our total rewards components include cash compensation (overtime, bonus/commissions if eligible), equity, and benefits. You can learn more about how we align pay with local labor markets in our Geographic Pay Zone Philosophy.

Zone A

$204,000—$326,000 USD

Zone B

$177,000—$283,000 USD

Zone C

$159,000—$254,000 USD

How Toast Uses AI in its Hiring Process

Throughout the hiring process, our goal is to get to know you. We use AI tools to support our recruiters and interviewers with tasks like note-taking, summarization, and documentation of interviews to ensure they can be fully focused on your conversation. All hiring decisions are made by people. We ask that you complete interviews and assessments on your own, without real-time AI tools, recording, or transcription bots, unless we tell you otherwise in advance. To learn more: https://careers.toasttab.com/ai-in-hiring

Our Approach to Hybrid Working

We embrace a hybrid work model that fosters in-person collaboration while valuing individual needs. Our goal is to build a strong culture of connection as we work together to empower the hospitality community, regardless of location. Please visit the Locations page on our career site to learn more about our in-office expectations by region: https://careers.toasttab.com/locations-toast

People Are the Secret Ingredient in Our Recipe for Success

At Toast, our employees are our secret ingredient—when they thrive, we thrive. The restaurant industry brings together people with a wide range of backgrounds, experiences, and perspectives, and we value that same breadth at Toast. We strive to build a culture grounded in authenticity, respect, and humility, where every Toaster has a real opportunity to grow, contribute, and do their best work—raising the bar in delivering exceptional experiences for our customers and each other.

Apply today!

Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact candidateaccommodations@toasttab.com.

---—

For roles in the United States, it is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Read the full description
Security Director, Security Assurance and Compliance at Toast

Leads security assurance, compliance engineering, risk governance, continuous controls monitoring, and security compliance team development.

Exec Posted 4 days ago RemoteFirstJobs Product
What this role involves

Toast creates technology to help restaurants and local businesses succeed in a digital world, helping business owners operate, increase sales, engage customers, and keep employees happy.

Most compliance organizations prove their controls by assembling evidence by hand, once per framework, every year. We are an organization of the future: common controls tested once in code, monitored continuously, and reused across frameworks (including PCI, SOC, SOX, and ISO). You will lead that build for a payments and lending platform where regulatory frameworks have real teeth.

This role represents a strategic shift toward engineered, proactive compliance where trust is continuously measured rather than only periodically asserted in documents. Operating as an independent second line of defense, you will balance rigorous assurance with engineering pragmatism, maintaining the autonomy to assess internal teams while helping them scale through automation.

The position spans both internal transformation and external accountability. Internally, you will drive continuous controls monitoring and risk governance; externally, you will own the evidence base that powers our customer trust surface and sales enablement efforts.

A day in the life (Responsibilities)

  • Drive Engineered Compliance: Build and own continuous controls monitoring, automated evidence collection, and compliance-as-code initiatives so controls are tested once and reused seamlessly across multiple frameworks and certifications.
  • Lead Enterprise Risk & Continuity Governance: Manage overall organizational security risk, third-party and vendor risk, alongside business continuity and disaster recovery governance.
  • Own the Assurance Evidence Base: Maintain and safeguard the independent evidence base underlying our Trust Center and customer security reviews, ensuring absolute integrity while partnering with Customer Trust teams on delivery.
  • Serve as Second Line of Defense: Act as an independent reviewer with the standing and authority to challenge engineering and operational teams, ensuring objective assessment across all security domains.
  • Evolve Team Capabilities: Mentor and upskill the security compliance organization, driving a successful cultural and technical transition from manual auditing to automated compliance engineering.

What you’ll need to thrive (Requirements)

  • Proven Transformation Leadership: Experience leading a security assurance or risk transformation program rather than solely maintaining a steady-state compliance function.
  • Deep Framework Expertise: Strong technical command of major regulatory and security frameworks including PCI, SOC, SOX, and ISO.
  • Hands-on Automation Track Record: Demonstrated success implementing automated controls and continuous evidence collection while upskilling existing team members through the shift.
  • Technical & Pragmatic Mindset: Ability to balance regulatory rigor with engineering constraints, holding your own in deep technical conversations with engineers.
  • People Management Experience: Proven track record leading a team of security, risk, or compliance professionals.

What will help you stand out (Nonessential Skills/Nice to Haves)

  • Background in payments, fintech, or another highly regulated platform business.
  • Direct experience operating within a two-lines-of-defense governance structure.
  • Experience scaling automated compliance architecture within fast-growing cloud environments.

AI at Toast

At Toast, one of our company values is that we’re hungry to build and learn. We believe learning new AI tools empowers us to build for our customers faster, more independently, and with higher quality. We provide these tools across all disciplines, from Engineering and Product to Sales and Support, and are inspired by how our Toasters are already driving real value with them. The people who thrive here are those who embrace changes that let us build more for our customers; it’s a core part of our culture.

Our Total Rewards Philosophy

We strive to provide competitive compensation and benefits programs that help to attract, retain, and motivate the best and brightest people in our industry. Our total rewards package goes beyond great earnings potential and provides the means to a healthy lifestyle with the flexibility to meet Toasters’ changing needs. Learn more about our benefits at https://careers.toasttab.com/toast-benefits.

The base salary range for this role is listed below. The starting salary will be determined based on skills, experience, and geographic location. In addition to base salary, our total rewards components include cash compensation (overtime, bonus/commissions if eligible), equity, and benefits. You can learn more about how we align pay with local labor markets in our Geographic Pay Zone Philosophy.

Zone A

$204,000—$326,000 USD

Zone B

$177,000—$283,000 USD

Zone C

$159,000—$254,000 USD

How Toast Uses AI in its Hiring Process

Throughout the hiring process, our goal is to get to know you. We use AI tools to support our recruiters and interviewers with tasks like note-taking, summarization, and documentation of interviews to ensure they can be fully focused on your conversation. All hiring decisions are made by people. We ask that you complete interviews and assessments on your own, without real-time AI tools, recording, or transcription bots, unless we tell you otherwise in advance. To learn more: https://careers.toasttab.com/ai-in-hiring

Our Approach to Hybrid Working

We embrace a hybrid work model that fosters in-person collaboration while valuing individual needs. Our goal is to build a strong culture of connection as we work together to empower the hospitality community, regardless of location. Please visit the Locations page on our career site to learn more about our in-office expectations by region: https://careers.toasttab.com/locations-toast

People Are the Secret Ingredient in Our Recipe for Success

At Toast, our employees are our secret ingredient—when they thrive, we thrive. The restaurant industry brings together people with a wide range of backgrounds, experiences, and perspectives, and we value that same breadth at Toast. We strive to build a culture grounded in authenticity, respect, and humility, where every Toaster has a real opportunity to grow, contribute, and do their best work—raising the bar in delivering exceptional experiences for our customers and each other.

Apply today!

Toast is committed to creating an accessible and inclusive hiring process. As part of this commitment, we strive to provide reasonable accommodations for persons with disabilities to enable them to access the hiring process. If you need an accommodation to access the job application or interview process, please contact candidateaccommodations@toasttab.com.

---—

For roles in the United States, it is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability.

Read the full description
Security Head of Information Security at OpenZeppelin

Head of Information Security owns the end-to-end security program strategy, governance, and team management including SOC 2/ISO 27001 compliance, incident response, and enterprise security posture.

Exec Posted 21 days ago RemoteFirstJobs Product
What this role involves

About us

OpenZeppelin is the security standard onchain finance is built on. Founded in 2015, our mission is to accelerate the world’s transition to an open financial system, built on open standards and secured by rigorous research.

Our open-source Contract Libraries have facilitated over $35 trillion in onchain value and are used by 10 of the top 10 tokenized money market funds and 9 of the top 10 stablecoins by market cap.

We combine AI-native security tooling with deep research and a decade of audit expertise to support leading institutions and crypto-native teams shaping the next generation of digital assets like DTCC, Fidelity, Coinbase, Uniswap, Aave, the Ethereum Foundation, and many more across the full secure development lifecycle.

Please note: Always refer to OpenZeppelin’s official job page for the most accurate information about our open roles, as we have seen multiple third party job sites posting inaccurate information.

The Information Security Team

The Information Security function operates independently under our Legal team and owns everything that keeps the OpenZeppelin organization secure. That means managing our Security, Privacy & IT Program end-to-end: our SOC 2 and ISO 27001 posture, vendor and privacy risk, incident response, our bug bounty programs, and the identity, endpoint, and access systems the whole company depends on. It is also the team our customers meet during security diligence. As our enterprise relationships deepen, increasingly with banks and other regulated institutions, our own program must be as credible as the security we deliver to customers.

Today that program is established and audit-ready. The next chapter is turning it into an enterprise-grade security function that stands up to the scrutiny of the most demanding enterprise customers, partners, and regulators, while safely accelerating our adoption of AI across the company.

What you’ll be doing

You will own the strategy, design, and continuous maturation of OpenZeppelin’s Information Security Program, and be accountable for managing the team executing it. You can issue-spot security and privacy risks before they materialize, explain the principles behind security and compliance controls to auditors and enterprise security teams, and calibrate our security program proportionate to risk.

  • Strategy, governance and budget: Set the strategic direction, multi-year roadmap, and risk posture of the Information Security Program; deliver on department OKRs; and own the IT and technology budget, with ultimate responsibility for technology procurement.
  • AI security and governance: Own the secure adoption of AI across the company: evolve our AI governance framework, review and approve AI tools and agentic workflows, and secure our agentic infrastructure (identity, least-privilege tool and data access, secrets handling, monitoring, auditability). Manage frontier model providers as critical vendors, covering security and data-handling diligence, retention and training-use commitments, DPAs and subprocessor flow-downs. Meet emerging obligations such as the EU AI Act, so we can make transparent, defensible commitments to enterprise customers about how our products and internal AI usage handle their data.
  • Compliance, audit and enterprise trust: Own our audit, certification, and attestation strategy and execution (penetration testing, SOC 2 Type 2, ISO/IEC 27001, successor frameworks) alongside internal security audits; run a third-party and vendor risk management program; and serve as the external face of our security program with customer security teams, regulated financial institutions, and auditors.
  • Privacy and data governance: Maintain a comprehensive data map of how data flows into, through, and out of the organization, including flows to model providers and through agentic workflows, with data classification, records of processing, and a vendor/subprocessor inventory. Own privacy compliance in partnership with Legal: GDPR, CCPA/CPRA, DPAs and contractual security commitments, and privacy-by-design reviews of new products and features.
  • Security operations and incident response: Own the incident response program end-to-end, including playbooks, tabletop exercises, post-incident reviews, and breach-notification obligations in partnership with Legal. Manage our bug bounty programs, and partner with development teams to embed security best practices in the SDLC and our software offerings.
  • IT and infrastructure: Oversee identity and access management, provisioning and onboarding/offboarding, end-user security (MDM, endpoint protection, security training), physical security, disaster recovery, business continuity, and data backup, using automation and AI-powered workflows to make IT and security operations scale faster than headcount.

You have

  • 10+ years of Security and IT experience, including 3+ years leading a IT Security and GRC function (not solely IT operations) in a high-growth tech company, with demonstrated ownership of strategy, not just execution.
  • A demonstrated trajectory toward CISO: you have owned a security program end-to-end, presented to executives or boards, and can articulate the “why” behind every control you have implemented.
  • Experience securing or governing AI/LLM-enabled products or enterprise AI adoption including agentic systems and third-party model-provider risk, with an ability to apply privacy and data-protection laws and practices (e.g., GDPR, CCPA/CPRA) in the AI context.

Nice to have

  • 5+ years working in blockchain or a FinTech with an enterprise client base (e.g., financial services), including navigating rigorous third-party security diligence.

Logistics:

Our interview process takes place on Google Meet or Zoom and tends to consist of the following stages:

  • Recruiter Call (30 minutes)
  • Hiring Manager Call (30 minutes)
  • Team Interview (30 minutes)
  • Leadership Interview (30 minutes)
  • Paid work test (up to 20 hours of paid work)
  • Reference checks

Benefits

  • Meet your teammates at company gatherings around the world 😎
  • Enjoy the flexibility of fully remote work 🌎
  • Take the time you need with flexible time off 🏝
  • Grow your family with 8 weeks of paid leave for primary caregivers, 4 weeks for secondary caregivers, and a one-time $3,600 baby bonus 💙
  • Build your ideal home office with up to $500 in equipment support đŸȘ‘
  • Stay covered with medical insurance đŸ„
  • Keep growing with learning and development opportunities 🧠
  • Get a monthly stipend for your preferred co-working space đŸ’»

At OpenZeppelin, we are an equal opportunity employer and we value different perspectives. We are committed to building a diverse workforce. This includes but is not limited to gender, race, sexual orientation, religion, national origin and other characteristics that make each one of us unique. In this uniqueness, we find the most value. Come join us!

Use of AI as part of the recruiting process

As part of OpenZeppelin’s recruitment process, we may use automated tools, including artificial intelligence, to assist in reviewing applications and assessing candidate qualifications. These tools are used to support our People team by identifying relevant skills and experience, and are not used to make decisions solely by automated means. All hiring decisions involve human review. Any personal data provided as part of your application will be processed in accordance with OpenZeppelin’s Data Privacy Notice.

If you have questions about this recruitment process or would like to request human review of your application, please contact us at talent@openzeppelin.com.

Read the full description
Security Head of Financial Crimes

Leads financial crimes prevention and compliance strategy for an AI-native banking platform serving business owners.

Exec Posted 26 days ago Jobicy AI
What this role involves
Flex is building the AI-native private bank for business owners. We’re re-architecting the entire financial system for entrepreneurs—from the first dollar a business earns to how that value compounds, moves,...
Read the full description