About this role
<div class="content-intro"><p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>We Speak Safety and Efficiency: </strong> </span></p>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">In September of 2024, Bestpass, Fleetworthy, ExpressTruckTax and Drivewyze rebranded as Fleetworthy. This rebrand reflects our ongoing mission to simplify fleet safety, compliance, and toll management under one unified brand.</span></p>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Fleetworthy is revolutionizing road safety and fleet management with a command center for safety, compliance, and efficiency. Our connected suite provides real-time insights and control, enabling customers to maximize efficiency, reduce risk, and save money.</span></p>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">With technology that unifies safety, compliance, toll management, weigh station bypass, and more, Fleetworthy empowers organizations to perform at their best. We simplify operations to ensure every vehicle and driver is not just compliant, but beyond compliant. Supporting millions of drivers and vehicles, Fleetworthy is leading a new era in road safety and fleet technology. </span></p>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>At Fleetworthy, you’re in the driver’s seat!</strong> </span></p></div><p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">We’re hiring a forward-looking Security Manager to lead and mature our security and compliance program. This is a managerial role that blends technical ownership, program leadership, and business-aligned risk management. The right candidate will take a risk-based approach to protect systems and data, drive continuous improvement, and own annual ISO 27001 and SOC 2 audit readiness and execution.</span></p>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>Core Responsibilities</strong></span></p>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>Risk, Strategy & Program Leadership</strong></span></p>
<ul>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Define, maintain and evolve a risk-based security strategy and roadmap aligned to business objectives.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Lead formal risk assessments, maintain a risk register, and prioritize remediation by business impact and likelihood.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Translate risk decisions into measurable security initiatives and KPIs.</span></li>
</ul>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>Compliance, Audits & GRC</strong></span></p>
<ul>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Own end-to-end ISO 27001 and SOC 2 programs and ensure timely completion of annual audits (internal and external).</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Coordinate audit planning, evidence collection, remediation tracking, and auditor liaison.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Maintain policy acceptance and staff compliance using our GRC platform. Drive attestations, exceptions, corrective actions, and reporting.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Prepare readiness assessments, internal audit schedules, and continuous monitoring to maintain certification and attestations.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Host Incident Response Tabletops aligned with our ISMS IR policy.</span></li>
</ul>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>Policy & Standards Management</strong></span></p>
<ul>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Create, revise and operationalize security policies, standards and procedures to ensure they are functional, enforceable, and compliant with ISO 27001, SOC 2 and applicable laws/regulations.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Ensure policies reflect operational realities (performance, availability, business workflows) while meeting security and compliance objectives.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Run the policy lifecycle: drafting, stakeholder review, approval, publishing, implementation, training and periodic review.</span></li>
</ul>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>Technical Program & Operations</strong></span></p>
<ul>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Serve as the company’s primary internal and external representative for security concerns, events, and incident response activities.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Oversee vulnerability management, patching, endpoint protection, identity & access management, and cloud security controls across on-prem and cloud environments in collaboration with our IT Support team.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Define security requirements and review system designs, including cloud (AWS/Azure/GCP) and hybrid architectures.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Partner with IT and Development to ensure secure system configuration, logging, monitoring, and incident readiness.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Lead security incident response coordination, post-incident reviews and remediation ownership.</span></li>
</ul>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>People & Cross-Functional Collaboration</strong></span></p>
<ul>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Mentor, and grow security team members; set clear objectives and career development plans.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Act as the security liaison to the business to align security with business priorities.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Oversee third-party/vendor risk assessments and security requirements for procurement.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Meet with customers to address security & compliance questions.</span></li>
</ul>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>Other</strong></span></p>
<ul>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Own budgeting and sourcing of security tools and services.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Execute other duties typical of a security manager as required.</span> </li>
</ul>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>Skills & Qualifications</strong></span></p>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>Required</strong></span></p>
<ul>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">5+ years of hands-on security experience with at least 2 years in a security leadership or manager role.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Demonstrated experience owning ISO 27001 and SOC2 programs, including successful audit cycles and remediation.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Strong practical knowledge of risk management frameworks and a documented, risk-based decision process.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Hands-on familiarity with cloud platforms (AWS, Azure), identity & access management, endpoint protection, SIEM/EDR and vulnerability scanning.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Experience with GRC platforms and running policy attestation workflows (eg; Drata, Vanta, etc)</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Excellent written and verbal communication skills. Ability to author clear, enforceable policies and communicate risk to technical and executive audiences.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Bachelor’s degree in Computer Science, Information Security, or related field (or equivalent experience)</span></li>
</ul>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;"><strong>Preferred</strong></span></p>
<ul>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Professional certifications such as CISSP, CISM, CISA, or ISO27001 Lead Implementor/Auditor.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Prior experience supporting hybrid environments (on-prem + cloud) and virtual infrastructure (VMware).</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Familiarity with SOC2 auditor expectations, control mapping, and evidence generation.</span></li>
<li><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Experience with automation, scripting, and security tooling integrations.</span></li>
</ul>
<p><strong><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Compensation</span></strong></p>
<p><span style="font-family: arial, helvetica, sans-serif; font-size: 12pt;">Up to $105,000 USD Yearly </span></p><div class="content-conclusion"><p><span style="font-size: 12pt;"><strong><span data-contrast="auto"><span data-ccp-parastyle="Normal (Web)">What Drives Us to Work Every Day:</span></span></strong><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559740":240}"> </span></span></p>
<ul>
<li style="font-size: 12pt;" data-leveltext="" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt;"><span data-contrast="auto">We pride ourselves on making a difference, for our employees, clients, and their businesses.</span></span></li>
<li style="font-size: 12pt;" data-leveltext="" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt;"><span data-contrast="auto">We accept team members for who they are and what they bring to the table.</span><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559739":160,"335559740":240}"> </span></span></li>
<li style="font-size: 12pt;" data-leveltext="" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt;"><span data-contrast="auto">We are proud to build all our relationships based on transparency and trust.</span><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559739":160,"335559740":240}"> </span></span></li>
<li style="font-size: 12pt;" data-leveltext="" data-font="Symbol" data-listid="3" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"multilevel"}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt;"><span data-contrast="auto">We are a team of energetic and curious individuals passionate about the work we do every day!</span><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559739":160,"335559740":240}"> </span></span></li>
</ul>
<p><span style="font-size: 12pt;"><span data-ccp-props="{"201341983":0,"335559739":160,"335559740":259}"> <strong>Our Core</strong></span><strong><span data-contrast="none"><span data-ccp-charstyle="Strong"><strong> </strong>Values – We are 1TEAM</span></span></strong><span data-ccp-props="{"201341983":0,"335559739":160,"335559740":259}"> </span></span></p>
<ul>
<li style="font-size: 12pt;" data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt;"><strong><span data-contrast="auto">People </span></strong><strong><span data-contrast="auto">1</span></strong><strong><span data-contrast="auto">st</span></strong><span data-contrast="auto"> - People 1st! We win as a team by collaborating, having each other’s backs, and bringing out the best in each other. We always treat others as they would like to be treated. </span><span data-ccp-props="{"201341983":0,"335559739":160,"335559740":259}"> </span></span></li>
<li style="font-size: 12pt;" data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt;"><strong><span data-contrast="auto">T</span></strong><strong><span data-contrast="auto">rust - </span></strong><span data-contrast="auto">We inspire trust by delivering on our promises, owning outcomes, being transparent in our communications, and acting with integrity. </span><span data-ccp-props="{"201341983":0,"335559739":160,"335559740":259}"> </span></span></li>
<li style="font-size: 12pt;" data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt;"><strong><span data-contrast="auto">E</span></strong><strong><span data-contrast="auto">very Trip Matters - </span></strong><span data-contrast="auto">Because every trip that our customers take is important to them, it's important to us. Whether it is a load being hauled across the country or a service vehicle traveling on a toll road, our customers count on us to deliver the right expertise, software, and data to make every trip safe, efficient, and productive. </span><span data-ccp-props="{"201341983":0,"335559739":160,"335559740":259}"> </span></span></li>
<li style="font-size: 12pt;" data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt;"><strong><span data-contrast="auto">A</span></strong><strong><span data-contrast="auto">lways Innovating -</span></strong><span data-contrast="auto"> We solve for the customer and focus on outcomes. We are nimble in our approach. When we fail, we fail fast and learn from it. We are here to disrupt, not to fit in.</span><span data-ccp-props="{"201341983":0,"335559739":160,"335559740":259}"> </span></span></li>
<li style="font-size: 12pt;" data-leveltext="" data-font="Symbol" data-listid="2" data-list-defn-props="{"335552541":1,"335559685":720,"335559991":360,"469769226":"Symbol","469769242":[8226],"469777803":"left","469777804":"","469777815":"hybridMultilevel"}" data-aria-posinset="1" data-aria-level="1"><span style="font-size: 12pt;"><strong><span data-contrast="auto">M</span></strong><strong><span data-contrast="auto">indset -</span></strong><span data-contrast="auto"> We are committed to a growth mindset. Our efforts and attitudes are what determine our abilities. We embrace good criticism. We seek new challenges. We never stop learning.</span><span data-ccp-props="{"201341983":0,"335559739":160,"335559740":259}"> </span></span></li>
</ul>
<p><span style="font-size: 12pt;"><strong><span data-contrast="auto">About Bestpass:</span></strong><span data-contrast="auto"> Bestpass is a comprehensive payment platform provider and leader in toll management solutions for commercial fleets of all sizes. Bestpass saves fleets time and money by consolidating payments and providing insight into cost per vehicle. Bestpass, founded in 2001, covers 100% of major toll roads across the U.S., supports more than 30,000 customers, and processes over $1.5 billion in toll transactions annually. Bestpass offers a range of toll coverage options for owner-operators, regional fleets, and national fleets, as well as customized solutions for specific needs.</span><span data-ccp-props="{"201341983":0,"335559739":160,"335559740":259}"> </span></span></p>
<p><span style="font-size: 12pt;"><strong><span data-contrast="auto">About Fleetworthy Solutions:</span></strong><span data-contrast="auto"> Fleetworthy Solutions, Inc. provides DOT safety and regulatory compliance services to commercial fleets that take them Beyond Compliant. Fleetworthy combines exceptional client service, advanced technologies, and more than 40 years of transportation industry expertise to make sure that drivers and assets are truly fleetworthy. The company helps private fleets, for-hire carriers and third-party logistics companies of all sizes surpass compliance of federal, state, and local regulations and streamline processes to reduce costs and mitigate risks. </span><span data-ccp-props="{"201341983":0,"335559739":160,"335559740":259}"> </span></span></p>
<p><span style="font-size: 12pt;"><em><span data-contrast="auto">Fleetworthy is committed to fostering a diverse and inclusive culture that is respectful and welcoming of individual differences. We are proud to be an equal opportunity employer and all qualified applicants will receive consideration for employment without regard to race, color, religion or belief (or lack thereof), sex, nationality, national or ethnic origin, civil status, age, citizenship status, sexual orientation, disability, genetic information, familial status, marital or registered civil partnership status, pregnancy or maternity status, gender identity, gender reassignment, military or veteran status, or any other protected characteristic in accordance with applicable laws and regulations</span></em><span data-ccp-props="{"134233117":true,"134233118":true,"201341983":0,"335559739":160,"335559740":240}"> </span></span></p></div>