Karbon
Karbon14h ago
New
USD 220000-245000/yr

VP of IT and Security

United StatesUnited StatesRemoteexecutive
EngineeringSecurity
0 views0 saves0 applied

Quick Summary

Key Responsibilities

audit readiness, control design, and auditor relationships, coordinating with internal teams and external partners as control owners for evidence collection.

Technical Tools
EngineeringSecurity

Karbon is the global leader in AI-powered practice management software for accounting firms. We provide an award-winning cloud platform that helps tens of thousands of accounting professionals work more efficiently and collaboratively every day. With customers in 40 countries, we have grown into a globally distributed team across the US, Australia, New Zealand, Canada, the United Kingdom, and the Philippines. We are well-funded, ranked #1 on G2, growing rapidly, and have a people-first culture that is recognized with Great Place To Work® certification and on Fortune magazine's Best Small Workplaces™ List.

About the Role

~1 min read

This is a foundational leadership role at Karbon. 

As VP of IT & Security, you will own the following areas: 

  • Internal IT - Identity & Access, devices and configuration
  • Security - Corporate & Application
  • Governance, Risk & Compliance
  • Enterprise incident response, business continuity, and disaster recovery

You are a player-coach. You'll set strategy and own the roadmap, but you're comfortable rolling up your sleeves, analyzing logs, writing and tweaking policies, configuring tools, running a vendor evaluation, or sitting in a SOC 2 evidence review. 

You'll report directly to the CEO and work closely with Engineering, Finance, Legal, and the broader executive team.

You will lead, on day one, an existing small SecOps team that will report to you.

This role doesn't exist yet in its current form. You'll be building something meaningful from the ground up and leading the migration of our IT function from our MSP to an in-house team.

  • Own the day-to-day running of Karbon's device fleet and internal systems.
  • Establish and manage IT service delivery and support, including helpdesk operations, incident and problem management, and SLAs as we migrate away from our MSP to an internal function.
  • Own identity and access management (Okta) including device provisioning and employee onboarding and offboarding.
  • Manage endpoint management (MDM) and device policies across our global fleet of pc’s and mac’s.
  • Build and manage vendor relationships, including contracts, renewals, and performance.
  • Identify opportunities to optimize licence costs.
  • Define, maintain, and champion Karbon's strategy, policies, and standards across the organisation.
  • Own the internal security tooling stack including EDR, SIEM, email security.
  • Lead the  Application Security team.
  • Develop and maintain Karbon's information security policies and risk management framework.
  • Maintain Karbon's Risk Register and own Karbon's SOC 2 program end to end: audit readiness, control design, and auditor relationships, coordinating with internal teams and external partners as control owners for evidence collection.
  • Serve as the internal subject matter expert on compliance requirements for customer, partner, and enterprise sales conversations.
  • Own and maintain the incident response plan and playbooks
  • Define incident severity, escalation paths, and communication protocols, coordinating legal, insurance, and regulatory notification obligations during significant events.
  • Own business continuity plans and backup strategy.
  • 12+ years in IT and security with at least 5 years in a senior leadership role.
  • Proven track record managing or building an internal IT function - experience having transitioned from an MSP model is a strong advantage.
  • Hands-on operational & security experience and able to assist teams when required.
  • Deep familiarity with compliance frameworks such as SOC 2. 
  • Experience in a B2B SaaS environment is strongly preferred.
  • Identity & Access Management (Okta & Entra preferred)
  • Mobile Device Management / Endpoint Management 
  • EDR solutions such as Jamf Protect & Microsoft Defender for Endpoint
  • At least one major cloud platform either Azure, AWS or GCP
  • Office Productivity Platform - Google Workspace (preferred) or O365
  • Netskope Experience highly regarded
  • You can move between strategy and execution without losing momentum in either direction.
  • Strong communicator able to translate technical concepts into business language for a CEO, board, or enterprise customer.
  • Commercially aware - you understand how security and compliance decisions affect sales, customer trust, and product velocity.
  • Comfortable with ambiguity and building in environments where process is still being defined.
  • Collaborative by default, with the confidence to hold the line when it matters.

Karbon is at an inflection point. We're growing, our customer base includes some of the world's largest accounting firms, and enterprise trust is a competitive differentiator for us. This role exists because we're ready to own our IT and security function at the level our customers and our ambitions demand.

You'll have a seat at the table, real scope, and the support of a CEO who understands why this matters.

What We Offer

~2 min read
Gain global experience across Australia, New Zealand, UK, and Canada
Strong benefits package including:
Flexible Time Off with an encouraged 4 weeks use per year
Company paid medical for you and eligible spouse/partner and dependents
Paid dental and vision and eligible spouse/partner and dependents
401(k) with company matching
Flexible Spending Account
Up to 8 weeks paid parental leave
Work-from-home stipend
Work with (and learn from) an experienced, high-performing team
A collaborative, team-oriented culture that embraces diversity, invests in development and provides consistent feedback
Be part of a fast-growing company that firmly believes in promoting high performers from within

Karbon embraces diversity and inclusion, aligning with our values as a business. Research has shown that women and underrepresented groups are less likely to apply to jobs unless they meet every single criteria. If you've made it this far in the job description but your past experience doesn't perfectly align, we do encourage you to still apply. You could still be the right person for the role!

We recruit and reward people based on capability and performance. We don’t discriminate based on race, gender, sexual orientation, gender identity or expression, lifestyle, age, educational background, national origin, religion, physical or cognitive ability, and other diversity dimensions that may hinder inclusion in the organization.

Generally, if you are a good person, we want to talk to you. 😛

If there are any adjustments or accommodations that we can make to assist you during the recruitment process, and your journey at Karbon, contact us at people.support@karbonhq.com for a confidential discussion.

 

At this time, we request that agency referrals are not submitted for this position. We appreciate your understanding and encourage direct applications from interested candidates. Thank you!

Location & Eligibility

Where is the job
United States
Remote within one country
Who can apply
Open to applicants worldwide

Listing Details

Posted
July 24, 2026
First seen
July 24, 2026
Last seen
July 24, 2026

Posting Health

Days active
0
Repost count
0
Trust Level
87%
Scored at
July 24, 2026

Signal breakdown

freshnesssource trustcontent trustemployer trust
Karbon
Karbon
greenhouse

Karbon provides a truly collaborative platform for accounting firms to manage workflows, communicate with teams and deliver exceptional client work.

Employees
30
Founded
2014
View company profile
Newsletter

Stay ahead of the market

Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.

A
B
C
D
Join 12,000+ marketers

No spam. Unsubscribe at any time.

KarbonVP of IT and SecurityUSD 220000-245000