Information Security and Compliance Manager
Listed on 2026-02-01
-
IT/Tech
Cybersecurity, Information Security, Data Security, IT Support
Join Alohi and help build and scale a world-class security & compliance program that protects productivity products trusted by 4M+ people worldwide.
Alohi is an AI-first SaaS scale-up on a mission to simplify how businesses work. Our products Sign.
Plus, Dial.
Plus, Fax.
Plus, and Scan.
Plus serve 4M+ customers worldwide, from small businesses to global enterprises. We’re building category-defining tools that people actually love to use.
We started with seed support from FONGIT (Fondation Genevoise pour l’Innovation Technologique), backed by the State of Geneva. Since then, we’ve chosen to bootstrap our growth. This keeps us financially independent, customer-focused, and able to move fast without external constraints.
We’re a lean, fast-growing team based in Geneva with strong traction across global markets. This is an entrepreneurial environment where you’ll have high ownership, broad responsibilities, and direct impact from day one. You’ll work closely with leadership, helping shape decisions rather than just executing them. If you want to build something meaningful in a fast-paced, innovation-driven company, without the chaos of early-stage uncertainty or the bureaucracy of a large corporation, this is it.
Therole
We’re looking for a hands-on Information Security & Compliance Manager to strengthen Alohi’s security and compliance posture as we scale globally.
You’ll work closely with teams across Engineering, Product, Legal, and Operations to implement and operate controls day-to-day: collecting evidence, closing gaps, improving processes, and keeping Alohi audit-ready.
You’ll help maintain and continuously improve compliance with key frameworks and regulations, including ISO 27001, SOC 2, HIPAA/HITECH, and GDPR, by translating requirements into practical and measurable actions embedded into how we build and operate.
This role requires someone highly structured and organized, able to manage multiple compliance work streams in parallel while keeping the company audit-ready at all times.
This position is fully on-site at our Geneva office.
What you’ll do- Own and run security & compliance programs (e.g., ISO 27001, SOC 2, HIPAA/HITECH, GDPR, DORA, ...), including planning, control maintenance, evidence collection, audit readiness, and continuous improvement.
- Own the compliance roadmap: monitor regulatory and customer requirements, recommend which frameworks to adopt next, and prioritize initiatives based on risk and business impact.
- Build, improve, and enforce security policies and procedures aligned with industry standards and business needs.
- Lead risk management efforts: identify and assess risks across systems, vendors, processes, and data; define mitigation plans; track progress; and report on residual risk.
- Drive vendor and third-party security reviews: assess vendor documentation, support due diligence, and ensure contractual and compliance requirements are met.
- Coordinate audits and external interactions: prepare internal teams, manage timelines, engage auditors/regulators/counsel, and ensure high-quality outcomes.
- Strengthen security awareness and adoption: educate teams, improve security culture, and support control adoption without slowing delivery.
- Measure and communicate progress: define KPIs and metrics, maintain a compliance calendar, and provide clear reporting to leadership.
Must-have
- Proven experience in an information security compliance / GRC role, ideally in a SaaS or regulated environment.
- Hands-on experience with ISO 27001. Experience with SOC 2, HIPAA/HITECH, GDPR is a plus.
- Solid understanding of common security frameworks and control domains (risk, access control, vendor risk, incident management, logging/monitoring, encryption, etc.).
- Experience supporting or leading audits/investigations and working with external stakeholders (auditors, regulators, counsel).
- AI-native operator mindset: able to use AI responsibly to build repeatable workflows, automate low-value tasks, and move faster, creating 10x leverage without sacrificing accuracy, accountability, or security.
- Strong communication skills: you can explain security clearly to non-technical audiences and influence…
To Search, View & Apply for jobs on this site that accept applications from your location or country, tap here to make a Search: