
Job Overview
Location
USA - Remote
Job Type
Full-time
Category
Data Science
Date Posted
July 16, 2026
Full Job Description
đź“‹ Description
- • You'll be the first person at Close whose full-time job is protecting our customers' data and our company: GRC (security governance, risk, and compliance), internal security (identity, devices, access, vendors), incidents, and the customer-facing resources that prove we do this well.
- • You'll run our GRC program — then automate it. Vanta day to day (controls, policies, alerts, evidence, vendor reviews), leading our SOC 2 Type 2 audits, annual risk assessments, and evaluating additional frameworks (ISO 27001, HIPAA).
- • You'll own how customer data moves through our stack. Audit what flows to third-party tools (and stop what shouldn't), and build a real process for deletion requests across our analytics stack.
- • You'll be the security gate for new tools and vendors. Confirm SOC 2 status, get the DPA signed, add them in Vanta, update the subprocessor list — with a process that lets the team adopt new tools (AI especially) quickly and safely.
- • You'll make Close best-in-class at communicating trustworthiness. Own trust.close.com and our security/privacy/GDPR pages, and turn them into the place where customers' security questions can answer themselves.
- • You'll coordinate product security audits. Run pen tests and audits of our product jointly with Engineering — vendor selection, scoping, and the artifacts we need for customers and partners (e.g., Google OAuth restricted scopes).
- • You'll investigate and clean up security incidents. When something looks off, you're the one who digs in to run it down and contain it — work that currently falls to Engineering by default.
- • You'll own our identity and device security. SSO/IAM strategy and configuration, MDM across the fleet, the security side of onboarding/offboarding, and regular access reviews so no one keeps a key they shouldn't.
- • You'll run our employee security program. Training people actually remember, phishing simulations to keep us honest, and ongoing monitoring (e.g., 1Password Watchtower) with follow-through.
🎯 Requirements
- • 5+ years of building Security & Trust programs.
- • Technical enough to know how our systems work.
- • Automation and efficiency minded.
- • AI-positive.
🏖️ Benefits
- • Competitive pay plus an organization-wide goal-based bonus.
- • ~5 weeks of PTO to start. Plus a 1-week all-company Winter Holiday Break and paid US holidays.
- • 80% Work Option: Work with your manager to choose between a standard 5-day week or a 4-day week at 80% pay.
- • Paid leave for primary and secondary caregivers.
- • A 1-month paid sabbatical every 5 years with the team.
- • Two medical plans with Close covering 99% of your premium, plus Dental, Vision, HSA, FSA, and company-paid Long-Term Disability.
- • We match your contributions up to 6%, vested immediately.
Skills & Technologies
See exactly how your profile matches this role — strengths, skill gaps, and what to do about them.
About Elastic, Inc.
Elastic Inc. is the developer of Close, a CRM platform built for inside sales teams. It combines calling, SMS, email sequencing, and pipeline management in a single interface, emphasizing speed and automation for B2B sales workflows. Founded in 2013 and headquartered in Palo Alto, California, the company serves thousands of small to mid-sized businesses seeking an all-in-one sales engagement solution without external integrations.
Subscribe to the weekly newsletter for similar remote roles and curated hiring updates.
Newsletter
Weekly remote jobs and featured talent.
No spam. Only curated remote roles and product updates. You can unsubscribe anytime.
Similar Opportunities
1 month ago
2 months ago

Hangar Aviation Technologies, Inc.
2 months ago

Singular Intelligence Ltd.
18 days ago

