Tonic

Head of Information Security

Remote

Not SpecifiedCompensation
Senior (5 to 8 years), Expert & Leadership (9+ years)Experience Level
Full TimeJob Type
UnknownVisa
Cybersecurity, Information TechnologyIndustries

Requirements

Candidates should possess at least 10 years of experience with at least 5 years specifically in information security, and 3+ years within a high-growth startup environment. They should demonstrate success in running an enterprise-wide information security program that has achieved SOC2 and HIPAA attestation, and ideally have knowledge and experience with security and compliance obligations required for government contracting such as FedRAMP, NIST 800-171, and DFARS.

Responsibilities

The Head of Information Security will evaluate and drive updates and/or migration of the application and infrastructure portfolio to meet Tonic’s security and resiliency requirements, own security operations and incident responses, identify and negotiate external services, oversee Tonic’s governance frameworks and compliance with regulations like SOC 2, GDPR, and HIPAA, define and implement a security, compliance, privacy, and IT strategy, continuously evaluate emerging threats and industry trends, manage day-to-day IT operations, support sales and go-to-market efforts by ensuring security and compliance align with customer requirements, and work with sales teams to answer customer third-party risk management questionnaires.

Skills

Information Security
Security Management
Incident Response
SOC 2
GDPR
HIPAA
Compliance
Risk Management
IT Infrastructure
Vendor Management
Contract Negotiation

Tonic

Data management solutions for developers and teams

About Tonic

Tonic.ai provides data management solutions aimed at software developers, data scientists, and quality assurance teams. Their platform enables users to de-identify, subset, and synthesize data, which helps protect sensitive information while still making it useful for testing and development. Tonic.ai operates on a subscription-based model, offering various service tiers to accommodate different organizational needs. This approach allows clients, ranging from small startups to large enterprises, to automate data pipelines and generate realistic demo data, ultimately saving time and reducing bugs in software development. Tonic.ai stands out from competitors by seamlessly integrating with both SQL and NoSQL databases, making it a versatile choice for data-driven organizations. The company's goal is to enhance data privacy and streamline data management processes to accelerate software development cycles.

Key Metrics

San Francisco, CaliforniaHeadquarters
2018Year Founded
$45.6MTotal Funding
SERIES_BCompany Stage
Data & Analytics, Enterprise SoftwareIndustries
51-200Employees

Benefits

Competitive salary and equity
Unlimited paid time off
401k plan with employer contribution
Medical, dental, and vision insurance
One Medical membership
Generous parental leave policy
Remote-friendly work environment

Risks

Competition from CustomGPT.ai threatens Tonic's position in AI-driven data solutions.
Shift towards RAG may require Tonic to adapt its offerings to stay competitive.
Pay-as-you-go model could pressure Tonic's subscription-based business model.

Differentiation

Tonic specializes in synthetic data for privacy-preserving software development and testing.
The company offers tools for database subsetting, de-identification, and data synthesis.
Tonic's platform integrates with SQL and NoSQL databases, enhancing its versatility.

Upsides

Growing interest in synthetic data boosts Tonic's AI development opportunities.
Rising adoption of RAG systems aligns with Tonic's data synthesis capabilities.
Cloud-based solutions drive demand for Tonic's scalable, flexible platforms.

Land your dream remote job 3x faster with AI