GRC Security compliance leader

Avantdigitalnow

San Francisco (CA)

On-site

USD 120,000 - 150,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

A leading digital security firm is seeking a GRC Security Compliance Leader for a remote position. Candidates should have 8-10 years of experience in Information Security and Compliance, with expertise in ISO 27001 and other relevant standards. Responsibilities include managing Information Security Management Systems and supporting compliance with audits and vendor assessments. This role is vital in enhancing security protocols and coordinating ISMS efforts across business units.

Qualifications

  • 8-10 years' experience in Information Security, Compliance, Risk Management.
  • Expertise in Information Security implementation for ISO 27001.

Responsibilities

  • Support implementing and managing Information Security Management Systems by ISO27001 standards.
  • Coordinate ISMS roll-out efforts and support ISO27001 certification efforts.
  • Manage compliance efforts to maintain Common controls at individual business units.

Skills

Information Security
Compliance
Risk Management
ISO 27001 Implementation
NIST 800-53
CMMC

Job description

GRC Security compliance leader
Job Description:

Job Title: GRC Security Compliance Leader

Location: Remote

Duration: 12+ Months (Contract)

Responsibilities:

  • Support implementing and managing Information -Security Management Systems by ISO27001 standards.
  • 3rd party Risk/compliance Assessment through a questionnaire.
  • Customer and Vendor Contracts Risk Assessment.
  • Cloud security experience has been needed since today when many vendors' products are in SAAS form.
  • Coordinate ISMS roll-out efforts for individual business units in scope and support ISO27001 certification efforts.
  • Manage compliance and sustaining efforts to maintain Common controls implemented at individual business units.
  • Support Supply Chain and Third-Party Vendor Risk management program activities
  • Enhance existing Common Controls to align with business & customer needs and Information security policy and Standards.
  • Help prepare security assurance materials for internal and external audiences, including maintaining our security responses to customer questionnaires.
  • Prepare regular metrics related to Trust office programs, including ISMS, for management updates.
  • Assist with evidence gathering for audits, update centralized GRC tool with audit performance, and perform related compliance activity.
  • Assist in POC and enhancement of GRC tool supporting Trust office objectives.
  • Perform Ad-hoc activities required to support the Trust office.
  • Support ad-hoc meetings /updates in the early morning IST and PST Time Zone.

Skill Set:

  • 8-10 Years experience in Information Security, Compliance, Risk Management
  • Expertise in Information Security implementation for ISO 27001 and other relevant standards such as SOX (US role)-NIST 800- 53, CMMC.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Infosec or GRC Leader
Infosec or GRC Leader

Avantdigitalnow • San Francisco (CA)

On-site
USD 95,000 - 130,000
Remote GRC Security & Compliance Leader
Remote GRC Security & Compliance Leader

Avantdigitalnow • San Francisco (CA)

Remote
USD 120,000 - 150,000
Senior GRC / Information Security Compliance Analyst
Senior GRC / Information Security Compliance Analyst

RecruitHook • Teaneck Township (NJ)

On-site
USD 120,000 - 160,000
GRC Specialist (Governance, Risk & Compliance)
GRC Specialist (Governance, Risk & Compliance)

360CyberX • United States

On-site
USD 70,000 - 90,000
Remote Infosec & GRC Leader - ISO27001 & Risk
Remote Infosec & GRC Leader - ISO27001 & Risk

Avantdigitalnow • San Francisco (CA)

Remote
USD 95,000 - 130,000
Senior GRC Analyst
Senior GRC Analyst

Jobtailor • New York (NY)

On-site
USD 140,000 - 190,000
GRC Analyst – SecOps
GRC Analyst – SecOps

Bright Defense, LLC. • United States

On-site
USD 70,000 - 90,000
Information Security Engineer, GRC
Information Security Engineer, GRC

KYOCERA AVX Components Corporation • Fountain Inn (SC)

On-site
USD 90,000 - 120,000
Senior GRC Specialist
Senior GRC Specialist

Franklin Fitch • United States

Remote
USD 100,000 - 130,000
Cyber GRC Specialist
Cyber GRC Specialist

Jobtailor • Washington

On-site
USD 90,000 - 130,000