The mission
Turn security and compliance commitments into controls the team can operate and prove.
What you will own
- Own the security program and risk register.
- Coordinate telecom, privacy, and recording-consent counsel.
- Run vendor and access reviews.
- Lead incident readiness.
- Support enterprise diligence and audit evidence.
What success looks like
- Security and data flows are accurately inventoried.
- The control roadmap is risk-ranked.
- Customer diligence is timely and truthful.
- Consent, retention, access, incident, and vendor controls operate continuously.
What we are looking for
- Security-program ownership in SaaS.
- Risk-based control design.
- Vendor, privacy, and incident experience.
- Ability to separate legal advice from operational implementation.
Helpful, not mandatory
- SOC 2.
- CPaaS or telecom.
- TCPA and call-recording exposure.
- Startup security.
Compensation
The base salary range is $130,000-$180,000 USD for a US-remote employee. Final compensation will reflect role level, location policy, experience, benefits, variable compensation where applicable, and equity. Contractor arrangements are scoped separately.
How we evaluate
We use the same core evidence for every candidate: comparable outcomes, ownership, customer judgment, role skill, communication, and learning velocity. The process normally includes a short screen, a paid and bounded work sample, structured interviews, and reference checks.
Example paid work sample: Review a fictional KaiCalls data flow and identify the top risks, immediate controls, evidence plan, and questions requiring qualified counsel.
Your first 90 days
- First 30 days: Complete the risk and data-flow baseline.
- By 60 days: Close critical gaps and organize evidence.
- By 90 days: Establish the control calendar and run an incident exercise.
How to apply
Email kai@kaicalls.com with the role title in the subject line. Include your resume or LinkedIn profile.