Infosec or GRC Leader

Avantdigitalnow

San Francisco (CA)

On-site

USD 95,000 - 130,000

Full time

14 days+
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

A technology consulting firm is seeking an Infosec or GRC Leader to implement and manage Information Security Management Systems and coordinate risk assessments. The ideal candidate will have 8-10 years of experience in Information Security and Compliance, with expertise in ISO 27001 and relevant standards. Responsibilities include managing compliance, preparing Security Assurance materials, and supporting supply chain risk management. The role is available remotely for a duration of 6+ months.

Qualifications

  • 8-10 years of experience in Information Security, Compliance, Risk Management.
  • Expertise in implementing ISO 27001 and relevant standards.
  • Preferred certifications include CISSP and ISO 27001 Lead Auditor.

Responsibilities

  • Support implementing and managing Information Security Management Systems.
  • Coordinate Risk assessment activities and enhance Common Controls.
  • Manage compliance and sustain efforts for Common controls.
  • Support Supply Chain and Third-Party Vendor Risk management.

Skills

Information Security
Compliance
Risk Management
ISO 27001 implementation
NIST 800-53
CISSP certification

Job description

Infosec or GRC Leader
Job Description:

Job Title: Infosec or GRC Leader

Location: Remote

Duration: 6+ Months (Contract)

Responsibilities:

  • Support implementing and managing Information -Security Management Systems in accordance with ISO27001 standards.
  • Support Risk Management program and co-ordinate Risk assessment activities
  • Enhance existing Common Controls to align with business & customer needs and align with Information security policy and Standards.
  • Coordinate ISMS roll-out efforts to individual business units in scope and support ISO27001 certification effort.
  • Manage compliance and sustaining efforts to maintain Common controls implemented at individual business units.
  • Support Supply Chain and Third-Party Vendor Risk management program activities
  • Help prepare Security Assurance materials for internal and external audiences, including maintaining our Security responses to customer questionnaires.
  • Prepare regular metrics related to Trust office programs, including ISMS, for management updates.
  • Assist with evidence gathering for audits, update centralized GRC tool with audit performance, and perform related compliance activity.
  • Assist in POC and enhancement of GRC tool supporting Trust office objectives.
  • Perform Ad-hoc activities required to support the Trust office.
  • Support ad-hoc meetings /updates in the early morning IST and PST Time Zone.

Skill Set:

  • 8-10 Years experience in Information Security, Compliance, Risk Management
  • Expertise in Information Security implementation for ISO 27001 and other relevant standards such as SOX (US role)-NIST 800- 53, CMMC
  • Preferred Certifications: CISSP, ISO 27001 Lead Auditor or Implementer
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

GRC Security compliance leader
GRC Security compliance leader

Avantdigitalnow • San Francisco (CA)

On-site
USD 120,000 - 150,000
Remote Infosec & GRC Leader - ISO27001 & Risk
Remote Infosec & GRC Leader - ISO27001 & Risk

Avantdigitalnow • San Francisco (CA)

Remote
USD 95,000 - 130,000
Cybersecurity GRC Analyst
Cybersecurity GRC Analyst

duvari group • Fenton (MO)

On-site
USD 83,000 - 131,000
Information Security Engineer, GRC
Information Security Engineer, GRC

KYOCERA AVX Components Corporation • Fountain Inn (SC)

On-site
USD 90,000 - 120,000
GRC Specialist (Governance, Risk & Compliance)
GRC Specialist (Governance, Risk & Compliance)

360CyberX • United States

On-site
USD 70,000 - 90,000
Remote GRC Security & Compliance Leader
Remote GRC Security & Compliance Leader

Avantdigitalnow • San Francisco (CA)

Remote
USD 120,000 - 150,000
Information Technology Security Analyst
Information Technology Security Analyst

The Phoenix Group • Charlotte (NC)

Hybrid
USD 95,000 - 116,000
Hybrid work model
Relocation assistance
Certification sponsorship
Information Security Engineer, GRC
Information Security Engineer, GRC

KYOCERA AVX Greenville LLC • Fountain Inn (SC)

On-site
USD 100,000 - 130,000
Information Security Program Lead
Information Security Program Lead

MSA, The Safety Company • Cranberry Township

On-site
USD 120,000 - 180,000
ISO 27001 GRC Analyst — Compliance & Risk Lead
ISO 27001 GRC Analyst — Compliance & Risk Lead

duvari group • Fenton (MO)

On-site
USD 83,000 - 131,000