ISO 27001 Cyber Risk & Compliance Lead

Jobright.ai

Chicago (IL)

On-site

USD 120,000 - 180,000

Full time

13 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Competitive benefits starting day one

Job summary

Softchoice, a software-focused IT solutions provider in Chicago, seeks a Cybersecurity Risk Manager to identify, assess, and mitigate risks while building a robust risk program. You’ll lead risk governance, align with ISO 27001, guide audits, and drive remediation with cross-functional teams.

The role requires 10–15 years in IT security, hands-on governance, and strong leadership. You will report to senior leadership and shape enterprise-wide cybersecurity posture through proactive risk

Qualifications

  • 10-15 years' IT experience including security operations (SOC).
  • 5 years experience managing people directly and indirectly.
  • At least 5 years in cybersecurity governance, risk, and compliance (GRC).
  • Knowledge of risk management in cybersecurity, IT compliance, risk assessment, and control.
  • Understanding of security practices, trends, and compliance audits.
  • Auditing against information security management frameworks (SOC 2 Type 2, ISO 27001:2022).
  • Proven project management approach to drive outcomes.

Responsibilities

  • Take ownership for maturing our Risk Management governance/process and coordinate remediation.
  • Set strategic direction for cybersecurity risk management and related compliance initiatives.
  • Develop and maintain a cybersecurity risk framework aligned with ISO 27001.
  • Establish governance structures to oversee risk and compliance activities.
  • Guide the organization through audits and engagements with auditors.
  • Oversee risk assessments to define and analyze risks with a comprehensive approach.
  • Evaluate risk gravity by considering potential organizational impact.
  • Develop, prioritize, and lead execution of risk treatment plans and controls.
  • Monitor evidence-based implementation of controls to achieve compliance.
  • Drive process changes to mitigate potential risks and conduct access reviews.
  • Present risk score updates for ISMS committee and leadership review.
  • Define contingency plans and incident response playbooks for cyber crises.
  • Identify gaps in policies and drive adoption of improved cybersecurity policies.
  • Enhance employees' understanding of cybersecurity risks and best practices.
  • Provide strategic direction and mentorship to cross-functional teams.

Skills

Cybersecurity governance
Risk management
ISO 27001
Compliance audits
Security operations
Project management
Analytical skills
Research skills
Risk assessment
Policy development
Incident response
Employee training
Statistical Analysis Software
CISSP certification
CISM certification
CISA certification
CRISC certification
Professional Risk Manager
Leadership
Communication skills
Problem-solving
Team collaboration
Technical writing

Education

Bachelor's or master's degree in computer science, engineering, information security, or a related field

Tools

Statistical Analysis Software (SAS)

Job description

Softchoice, a software-focused IT solutions provider in Chicago, seeks a Cybersecurity Risk Manager to identify, assess, and mitigate risks while building a robust risk program. You’ll lead risk governance, align with ISO 27001, guide audits, and drive remediation with cross-functional teams.

The role requires 10–15 years in IT security, hands-on governance, and strong leadership. You will report to senior leadership and shape enterprise-wide cybersecurity posture through proactive risk

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Risk Manager
Cybersecurity Risk Manager

Jobright.ai • Chicago (IL)

On-site
USD 120,000 - 180,000
Competitive benefits starting day one
Senior Cyber Risk & Compliance Leader
Senior Cyber Risk & Compliance Leader

PwC • Washington

On-site
USD 124,000 - 280,000
Medical insurance
Dental insurance
Vision care
+4
Cyber Risk & Compliance Manager — Tech Security Lead
Cyber Risk & Compliance Manager — Tech Security Lead

PwC • Seattle (WA)

On-site
USD 99,000 - 232,000
Medical benefits
Dental benefits
Vision benefits
+4
Cyber Risk & Compliance Engineering Manager
Cyber Risk & Compliance Engineering Manager

PwC • Chicago (IL)

On-site
USD 99,000 - 232,000
Annual bonus
Benefits package
Global Cyber Compliance Lead (ISO 27001 & SOC 2)
Global Cyber Compliance Lead (ISO 27001 & SOC 2)

Alloy Enterprises • Milwaukee (WI)

Hybrid
USD 100,000 - 150,000
Competitive salary & bonus
Paid vacation/holidays
Benefits package
+3
Cybersecurity Manager
Cybersecurity Manager

BMA Group Global • Guaynabo (PR)

On-site
USD 120,000 - 190,000
Strategic GRC Lead - Risk & Compliance Expert
Strategic GRC Lead - Risk & Compliance Expert

Request Technology, LLC • Austin (TX)

On-site
USD 120,000 - 160,000
Remote Infosec & GRC Leader - ISO27001 & Risk
Remote Infosec & GRC Leader - ISO27001 & Risk

Avantdigitalnow • San Francisco (CA)

Remote
USD 95,000 - 130,000
Cyber Strategy & Resilience Leader
Cyber Strategy & Resilience Leader

PwC • Dallas (TX)

On-site
USD 99,000 - 232,000
Medical insurance
Dental insurance
Vision insurance
+3
Global Cyber Compliance Lead (ISO 27001 & SOC 2)
Global Cyber Compliance Lead (ISO 27001 & SOC 2)

Johnson Controls • Milwaukee (WI)

Hybrid
USD 100,000 - 150,000