Remote Source

    Security Compliance Manager

    United States
    Full-Time
    Mid (3-6 yrs)
    Legal & Compliance
    Posted on February 10, 2026
    Role Summary:
    Filevine is looking for a Security Compliance Manager to join our Information Security team and ensure that our platform, applications, and infrastructure are compliant and secured at the highest levels, thus protecting and enhancing customer trust. If you are bright, hardworking, and ambitious and enjoy taking ownership of security and compliance, we want to talk to you. This is an exciting opportunity to join a world-class team.
    Responsibilities
  1. Strategize and outline goals and objectives of the GRC (IT Audit and Risk management) programs.
  2. Assist with security efforts to meet HIPAA, SOC 2 Type I & II, GDPR, CCPA/CPRA, CJIS and other compliance requirements.
  3. Lead and perform audits to determine compliance with state and federal laws, rules, and regulations.
  4. Plan and organize CJIS audit and training procedures, programs, services, and activities.
  5. Work directly with Information Security, Legal, HR, Compliance and Development teams to ensure secure IT and IS best practices are fully adopted at Filevine.
  6. Assess, prioritize, and assist with managing risks on identified vulnerabilities.
  7. Provide privacy audits and compliance assessments for Filevine business units
  8. Perform on-going security auditing and testing to improve software security.
  9. Review audit, compliance and risk assessment issues that arise and manage them to resolution.
  10. Provide audit frameworks and risk assessment methodologies contemplating new software solutions to help mitigate security vulnerabilities and other business risks.
  11. Maintain documented Policy and Procedure libraries for compliance purposes.
  12. Complete Third-party vendor risk management and security questionnaires for Filevine.
  13. Provided annual Internal audit and risk assessment functions.
  14. Facilitate and lead annual penetration testing and auditing efforts.
  15. Develop a familiarity with new auditing and risk assessment tools and techniques.
  16. Qualifications
  17. 1-3 years of prior management experience leading a team.
  18. 3-5 years of experience conducting SOC2, HIPAA, and PCI audits.
  19. 3-5 years of experience or strong knowledge of ISO, StateRAMP, FedRAMP, and CMMC frameworks.
  20. 3-5 years of experience conducting security risk assessments.
  21. 3-5 years of experience working with audit logs and writing scripts in SIEMs.
  22. 3-5 years of experience in Security, IT or Compliance.
  23. Apply for this position

    Company:  Filevine

    Provides legal practice management software with AI capabilities for law firms and legal professionals.
    501-1000 employees
    Software & IT Services
    HQ: United States