Enable job alerts via email!

Infosec or GRC Leader

Avant Digital Inc.

San Francisco (CA)

Remote

USD 100,000 - 130,000

Full time

Today
Be an early applicant

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company is seeking an Infosec or GRC Leader for a remote role. The candidate will implement and manage Information Security Management Systems in line with ISO 27001 standards, support risk management programs, and ensure compliance with security policies. This contract position lasts over 6 months and requires extensive experience in Information Security and Risk Management, along with relevant certifications. The role involves coordinating efforts across business units and preparing security assurance materials.

Qualifications

  • 8-10 years of experience in Information Security, Compliance, and Risk Management.

Responsibilities

  • Support implementing and managing Information Security Management Systems.
  • Coordinate Risk assessment activities.
  • Manage compliance and ongoing efforts to maintain Common Controls.

Skills

Information Security
Compliance
Risk Management

Education

CISSP
ISO 27001 Lead Auditor
ISO 27001 Implementer

Job description

Infosec or GRC Leader
Job Description:

Job Title: Infosec or GRC Leader

Location: Remote

Duration: 6+ Months (Contract)

Responsibilities:

  • Support implementing and managing Information Security Management Systems in accordance with ISO 27001 standards.
  • Support Risk Management program and coordinate Risk assessment activities.
  • Enhance existing Common Controls to align with business and customer needs, and ensure compliance with Information Security policies and standards.
  • Coordinate ISMS roll-out efforts to individual business units within scope and support ISO 27001 certification efforts.
  • Manage compliance and ongoing efforts to maintain Common Controls at individual business units.
  • Support Supply Chain and Third-Party Vendor Risk Management program activities.
  • Help prepare Security Assurance materials for internal and external audiences, including responses to customer questionnaires.
  • Prepare regular metrics related to Trust Office programs, including ISMS, for management updates.
  • Assist with evidence gathering for audits, update centralized GRC tools with audit performance data, and perform related compliance activities.
  • Assist in POC and enhancement of GRC tools supporting Trust Office objectives.
  • Perform ad-hoc activities required to support the Trust Office.
  • Support ad-hoc meetings and updates in early morning IST and PST time zones.

Skill Set:

  • 8-10 years of experience in Information Security, Compliance, and Risk Management.
  • Expertise in implementing Information Security standards such as ISO 27001, SOX (US role), NIST 800-53, and CMMC.
  • Preferred Certifications: CISSP, ISO 27001 Lead Auditor or Implementer.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.