SOC2 Data Security (Contractor) - Aescape, Inc. New York City, New York, United States Bookmark Share Print 139 0 0

Listing Description

*** This role is 3-5 days onsite in our NYC headquarters ***


Who We Are


Aescape (pronounced 'escape') is a first-of-its-kind lifestyle robotics company bringing people and robotics together for better living. Founded in 2017, Aescape has developed fully automated massage therapy to help hospitality, fitness and healthcare industries meet the rising demand for wellness services in the face of a growing global labor shortage. Aescape delivers exceptional massages: consistent, accessible, and on your terms.

We’re proud to share that we’ve raised $44M pre-launch, affirming what we know to be true: we’re truly revolutionizing the massage experience. This is a rare opportunity to be a part of a 0-to-1 company and net-new product launch that will transform major industries.


Eric Litman is the founder and CEO of Aescape, a lifestyle robotics company revolutionizing wellness services. Eric has successfully founded and exited four companies before starting Aescape in 2017, and has established himself as an authority within the industry, consistently pushing boundaries to develop products that make people feel better and live healthier lives.


What You’ll Do


We’re looking for an experienced SOC2 IT contractor to lead our SOC2 Data Security Implementation Project.  This project focuses on aligning our data security practices, policies and procedures with SOC2 requirements, prioritizing data protection, privacy, and overall security posture. The contractor will work directly with our internal teams, the Drata compliance automation platform, and our selected SOC2 auditor to complete the Type 1 assessment.


Your responsibilities:



  • Project Management:  


    • Thoroughly assess the privacy goals and SOC2 compliance checklist, develop a comprehensive plan to implement

    • Weekly meetings & ongoing project management of deliverables to plan

    • Coordination with implementation team and routine updates to leadership


  • Technical Guidance:  


    • Prioritize plan to ensure effective use of resources

    • Provide guidance on implementation of controls to ensure the team is clear on requirements

    • Review deliverables for completeness and effectiveness


  • Training and Awareness:


    • Educate teams on the principles and requirements for SOC2

    • Develop and implement a plan to train employees and/or make them aware of privacy and security responsibilities


  • Implementation Support:


    • Support development of policies & procedures, testing as required

    • Monitoring of implemented controls for ongoing effectiveness

    • Troubleshoot and identify mitigations for identified issues, track implementation



Your deliverables:



  • Detailed Implementation Plan with timelines, responsibilities, and resources for each identified control, considering existing SOPs and the SOC2 assessment report

  • Documentation, Procedures, Test Reports for required Security Controls

  • Weekly Status Report to Stakeholders

  • Training Material for Security and Privacy procedures


Minimum Requirements:



  • A minimum of 5 years experience in leading the implementation of SOC2 Security policies within a Company developing Consumer Product

  • Prior experience using Drata to complete a SOC2 assessment 


Why You’ll Love Working Here



  • Join a trailblazing tech company anticipated to transform the massage industry

  • Making a difference with a product that empowers healthier and happier living

  • Team culture driven by passion, ambition, empowerment, inclusion, curiosity, and fun! :)

  • We’ll grow together—your personal and professional growth are equally important

  • An environment that empowers individuals, emboldens teams, and rewards achievement

  • Early stage equity in a company led by serial entrepreneurs with multiple exits

  • Competitive hourly rate




At Aescape, we're looking for passionate, driven, curious people who love a challenge. You're encouraged to apply even if your experience doesn't precisely match the job description. Your other skills will shine and set you apart—especially if your career has taken some extraordinary twists and turns. We welcome diverse perspectives and people who aren't afraid to challenge assumptions. Join our team and you’ll see why we say, Try Once, Believe Forever.

Don’t see a role that matches your interests? Share your resume here and we'll keep an eye out for you! 


Listing Details

  • Citizenship: Not Provided
  • Incentives: Not Provided

 

  • Education: Not Provided
  • Travel: Not Provided
  • Telework: Not Provided



About Us

NinjaJobs is a community-run job platform developed by information security professionals. Our unique approach of focusing strictly on cybersecurity positions allows us to personalize the user experience.

Our Contacts

1765 Greensboro Station Pl.
Suite 900
Tysons Corner Va 22102

(703) 594-7765