1,378,238open jobs
80,057companies
203,636added this week
Browse all
Salary
≈ $107k – $210k per year (Estimated)
Location
Hybrid (Palo Alto, United States, London, United Kingdom)
Seniority
Middle · 3+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 8, 2026. First seen by Alion on Jul 29, 2026.

Overview
Company
Impact
Profile match
Volta is the category-defining, vertically integrated AI infrastructure platform. Compute financed like infrastructure, delivered as The Utility of Compute™.

About Volta

Volta is the category-defining, fully vertically integrated AI infrastructure platform - from capital to clusters to software, under a founder-led enterprise. Our mission is The Utility of Compute™: AI infrastructure as dependable and available as electricity, for every organization that needs it. Launched with a $10B strategic partnership with one of the leading frontier AI labs, a Series A led by Andreessen Horowitz, and a $5B AI Infrastructure Fund, Volta is building the infrastructure layer of the AI era from the ground up. We are 100+ people across London, Palo Alto, and New York, with rapid growth expectations to hundreds.

About The Role

Volta builds and operates large scale GPU compute infrastructure for frontier AI customers. Those customers hold us to real security obligations, written into contracts with dates attached, and our lenders and investors examine our security posture as part of financing. Compliance here is not a paperwork exercise at the edge of the business. It is a condition of doing business.

We are working toward ISO 27001 certification and SOC 2 Type II attestation across a company that is scaling quickly, operating multi-tenant infrastructure in several countries, and deploying into partner data centers. The Senior Manager, Cyber Security Engineering owns that program, its scope, and its direction. You are the engineer who makes it work in practice: implementing and evidencing controls, keeping the GRC platform accurate, preparing what auditors and customers ask for, and chasing the details that decide whether an audit goes well.

This is a compliance role on an engineering team. You will spend as much time with platform and infrastructure engineers as with documents, and you will need to be able to tell whether a control is actually working or only described.

What You Will Be Doing

Compliance Execution

  • Implement and maintain the control set defined for our ISO 27001 and SOC 2 Type II programs, tracking status, owners, and gaps against the certification timeline.

  • Operate our GRC platform (Vanta) day to day: configure and maintain integrations, monitor automated control checks, and resolve drift and failing controls.

  • Collect, organize, and quality-check evidence so that it is complete, current, and defensible when an auditor asks for it.

  • Maintain ISMS documentation to the standard the Senior Manager sets: policies and procedures, the risk register, and records of corrective actions.

  • Support internal audit and management review with the data and analysis they need.

Audit Support

  • Prepare evidence packages and control walkthroughs ahead of audit fieldwork.

  • Support auditors during fieldwork, gathering what they request and coordinating the engineers who need to answer.

  • Track findings through to closure and verify that corrective actions actually took effect.

Customer and Contractual Obligations

  • Map the security obligations in customer contracts to specific controls, and flag where we do not yet meet them.

  • Draft responses to customer security questionnaires and due diligence requests for review, keeping answers consistent with what we actually do.

  • Prepare material supporting lender and investor due diligence on security and compliance.

Risk and Third Parties

  • Carry out risk assessments and vendor and third-party security reviews, and document the results.

  • Maintain the exception register so that accepted risk stays visible, owned, and time-bound.

  • Support the physical security control set at our sites and offices, working with the local contact at each location.

Regulatory

  • Maintain the records and reporting needed for regulatory obligations across our footprint, including NIS2 registrations and national authority contacts, and GDPR-related documentation.

Working With Engineering

  • Turn control requirements into concrete, schedulable work with platform and infrastructure teams, and follow it through to done.

  • Automate evidence collection wherever possible. Anything depending on someone remembering a quarterly screenshot will eventually fail an audit.

  • Support security awareness training delivery, business continuity documentation, and DR test evidence.

  • Handle the compliance side of incidents: records, notification tracking, and corrective action follow-up.

What You Bring

  • 3+ years in information security, with a meaningful part of it in compliance, GRC, or audit-facing work.

  • Hands-on experience working within an ISO 27001 or SOC 2 program, including preparing evidence and supporting an external audit.

  • Working knowledge of technical controls in a cloud or infrastructure environment. You should be able to read a system design and form a view on whether a control is real, and hold that view in a conversation with the engineer who built it.

  • Experience with a GRC platform such as Vanta, Drata, or equivalent, including maintaining integrations rather than only using the dashboard.

  • Practical exposure to risk assessment and documentation.

  • Strong writing. Evidence, procedures, and customer-facing responses all have to be clear and hold up under scrutiny.

  • Organized and persistent. Much of this role is knowing what is outstanding, whose it is, and when it is due, without needing to be reminded.

  • Able to work with engineers as a partner rather than a gate. You will get more done by making the compliant path the easy one than by escalating.

  • Comfortable in a company where the program is being built rather than inherited, and where the process for something often does not exist yet.

  • Fluency with AI-assisted workflows for evidence handling, questionnaire response, and documentation.

Nice to Have (But Not Essential)

  • Familiarity with NIS2, or with correspondence with national authorities such as the BSI.

  • Exposure to cloud, IaaS, HPC, or data center environments, and the physical security controls that come with colocation.

  • Experience supporting enterprise or hyperscaler customer security reviews.

  • Scripting ability in Python or similar for automating evidence collection and reporting.

  • Awareness of ISO 42001 or emerging AI-specific assurance frameworks.

  • Relevant certification such as ISO 27001 Lead Implementer, ISO 27001 Lead Auditor, CISA, or CISM.

    REQ-90

What We Offer

At Volta, we believe people do their best work when they feel supported, trusted and able to grow. We're building a company where you can make an impact, keep a healthy balance between work and life, and build a career you're proud of.

As a global team, we do our best to provide great benefits wherever you're based. While some benefits vary by country due to local regulations, we believe looking after our people is simply the right thing to do.

  • Competitive salary based on the work you do here, not your previous salary

  • Equity in Volta, giving you the opportunity to share in the company's long-term success

  • Retirement/pension contributions

  • Comprehensive health, wellbeing and insurance benefits

  • Generous number of vacation days each year

Additional Information

Background Checks

All offers of employment at Volta are conditional on the satisfactory completion of pre-employment screening, which includes confirmation of your right to work, verification of your employment history and a criminal record check, where this is permitted by local law. Screening is carried out by Zinc, an accredited third-party provider, after an offer is made and all information is handled confidentially and in accordance with applicable data protection law.

Equal Opportunity

Volta is an equal opportunity employer. We are committed to building a diverse and inclusive team and make employment decisions based on skills, qualifications, experience and business needs. We do not discriminate on the basis of race, colour, religion, sex, sexual orientation, gender identity or expression, national origin, age, disability, veteran status or any other legally protected characteristic.

Accessibility

Volta is committed to providing an accessible recruitment experience for all candidates. If you require accommodations or adjustments at any stage of the application or interview process, please contact us at [email protected]. We will work with you to identify reasonable accommodations that enable you to participate fully in the hiring process.

Candidate Privacy Notice

By applying, you consent to the processing of your personal data for recruitment purposes in accordance with applicable data protection laws, including the UK GDPR, EU GDPR and relevant US state privacy regulations. Your data will be shared only with those involved in the hiring process and will not be used for unrelated purposes. For details, see our Recruitment & Candidate Privacy Notice.

Note to Recruitment Agencies

Volta does not accept unsolicited CVs or candidate profiles from recruitment agencies. Any unsolicited submissions, including those sent directly to hiring managers or employees, will be treated as the property of Volta. No agency fees will be payable unless a valid, signed recruitment agreement is in place, and the agency has been specifically engaged for the relevant vacancy.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,378,238 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Palo Alto
$133k – $199k per year • Remote (United States) • Full-Time • 5+ years exp • United States
Python
AI/ML
Model Context Protocol
AI Agents
LLM
Human-in-the-Loop
LLM Guardrails
NIST AI RMF
DevOps
Terraform
GCP
GitHub Actions
CloudFormation
CI/CD
AWS
Kubernetes
SRE
Platform Engineering
Amazon EKS
DNS
Cybersecurity
Threat Modeling
OWASP
Apply
≈ $185k – $367k per year (Estimated) • In office • Full-Time • 5+ years exp • San Jose
AI/ML
AI Agents
LLM
Anomaly Detection
Machine Learning
Cybersecurity
OWASP Top 10
Threat Modeling
SIEM
Apply
$152k – $168k per year • Hybrid • Full-Time • 5+ years exp • Bachelor's Degree • North Andover
DevOps
GCP
Azure
AWS
Cybersecurity
Crowdstrike
MITRE ATT&CK
Cyber Kill Chain
Microsoft Entra ID
Active Directory
SIEM
Apply
$159k – $202k per year • Equity • In office • Full-Time • 3+ years exp • Bachelor's Degree • Austin
Python
Java
Ruby
C#
C++
C#
.NET
DevOps
AWS
TCP/IP
DNS
Cybersecurity
Threat Modeling
Apply
$110k – $135k per year • Hybrid • 3+ years exp • Bachelor's Degree • Portland
PowerShell
AI/ML
Copilot
Model Context Protocol
LLM
NIST AI RMF
DevOps
Azure
CI/CD
Cybersecurity
Microsoft Sentinel
Microsoft Defender
Zero Trust
Least Privilege
Threat Modeling
Microsoft Defender for Cloud
Microsoft Entra ID
SIEM
DLP
OWASP
Apply
≈ $31k – $54k per year (Estimated) • In office • Part-Time • Soest
Cybersecurity
GDPR
Management
Microsoft Office
Apply
≈ $44k – $124k per year (Estimated) • In office • Nationals only • Bachelor's Degree • Dubai
Cybersecurity
ISO 27001
Apply
≈ $49k – $118k per year (Estimated) • In office • Full-Time • Belgium
Cybersecurity
GDPR
Apply
≈ $37k – $72k per year (Estimated) • In office • Full-Time • Italy
Cybersecurity
GDPR
Apply
≈ $74k – $152k per year (Estimated) • Equity • Hybrid • Contractor • 5+ years exp • Berlin • Dortmund • Frankfurt am Main • Göttingen • Karlsruhe
Kotlin
TypeScript
DevOps
CI/CD
Cybersecurity
GDPR
HIPAA
Analytics
ETL/ELT
Apply
$150k – $189k per year • Remote (Germany, France, United Kingdom, Finland, Norway) • Full-Time • 10+ years exp • Bachelor's Degree
DevOps
GCP
Azure
AWS
Incident Management
Cybersecurity
ISO 27001
SOC 2
GDPR
Management
ITIL
Apply
≈ $94k – $220k per year (Estimated) • Remote (EU, Europe) • Full-Time
DevOps
Incident Management
Cybersecurity
GDPR
Apply
$192k – $270k per year • Hybrid • Full-Time • Palo Alto • New York • London
Python
AI/ML
Model Context Protocol
Function Calling
AI Agents
EU AI Act
Tool Use
Cybersecurity
ISO 27001
SOC 2
GDPR
Least Privilege
Management
Slack
Confluence
Jira
Apply
$79k – $86k per year • Hybrid • Full-Time • 5+ years exp • London
Cybersecurity
GDPR
Management
Google Workspace
Microsoft Office
Apply
$159k – $178k per year • Hybrid • Full-Time • 6+ years exp • London
Cybersecurity
GDPR
Apply
$250k – $300k per year • Equity • In office • 5+ years exp • Palo Alto
Apply
≈ $48k – $83k per year (Estimated) • In office • 2+ years exp • High School Diploma • Palo Alto
Apply
Talent Partner 1 day ago
≈ $76k – $206k per year (Estimated) • In office • Full-Time • PhD • Palo Alto
Apply
$117k – $158k per year • Hybrid • Full-Time • 4+ years exp • Bachelor's Degree • Palo Alto
Python
SQL
AI/ML
Claude
ChatGPT
LLM
Agentic Workflows
Apply
≈ $49k – $81k per year (Estimated) • In office • Internship • Master's Degree • New York • Seattle • Palo Alto • San Francisco
Python
Java
C++
C++
TensorFlow C++
PyTorch C++
AI/ML
MLFlow
Computer Vision
NLP
TensorFlow
PyTorch
Machine Learning
Apply
See all jobs
This is one of many
1,378,238 more open roles from verified company boards, updated every day.