Security Governance Lead - ISO 27001 & DORA

Alan

United States

Remote

USD 150,000 - 230,000

Full time

5 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Alan is seeking a Security Governance & Risk professional to own the ISO 27001 ISMS, define scope and ensure ongoing compliance with DORA, HDS and other regulatory requirements. You will lead audit programmes, coordinate with Internal Audit, and collaborate with Legal and Risk teams to manage third‑party security and incidents.

The role emphasizes translating complex regulations into practical controls, maintaining a robust security posture across infrastructure, platform, and engineering teams.

Qualifications

  • Experience leading ISO 27001 ISMS programmes and audits.
  • Deep understanding of DORA, RGPD, HDS and related health data regulations.
  • Ability to translate regulatory requirements into technical controls.

Responsibilities

  • Own the security governance and risk posture for the company.
  • Lead security audits and coordinate with internal/external auditors.
  • Manage third‑party security risk and vendor assessments.
  • Collaborate with Legal, Internal Audit and Risk teams to ensure regulatory compliance.

Skills

ISO 27001
DORA compliance
Risk management
Regulatory liaison
Audit coordination

Job description

Alan is seeking a Security Governance & Risk professional to own the ISO 27001 ISMS, define scope and ensure ongoing compliance with DORA, HDS and other regulatory requirements. You will lead audit programmes, coordinate with Internal Audit, and collaborate with Legal and Risk teams to manage third‑party security and incidents.

The role emphasizes translating complex regulations into practical controls, maintaining a robust security posture across infrastructure, platform, and engineering teams.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer - GRC
Security Engineer - GRC

Alan • United States

Remote
USD 150,000 - 230,000
InfoSec & Risk Manager — ISO 27001, DORA, Audits
InfoSec & Risk Manager — ISO 27001, DORA, Audits

Qwist Group • United States

Hybrid
USD 120,000 - 180,000
Impact & Ownership
Flexibility: Hybrid across Berlin &amp
Personal growth
+1
Senior GRC ISMS Security Analyst - ISO 27001 & IAM Lead
Senior GRC ISMS Security Analyst - ISO 27001 & IAM Lead

Dorsey & Whitney LLP • Washington

On-site
USD 114,000 - 148,000
Comprehensive medical insurance
Dental insurance
Vision insurance
+2
Director, Governance & Policy (ISO 27001 & GRC)
Director, Governance & Policy (ISO 27001 & GRC)

riot-platforms-careers • United States

On-site
USD 180,000 - 280,000
Bonus
Equity grant
401(k) match
+4
Senior Information Security & Compliance Lead (ISO27001/SOC)
Senior Information Security & Compliance Lead (ISO27001/SOC)

Dexory • United States

Hybrid
USD 122,000 - 163,000
Private healthcare
Life insurance
Income protection
+5
Senior GRC & ISMS Security Analyst
Senior GRC & ISMS Security Analyst

Dorsey & Whitney LLP • Salt Lake City (UT)

On-site
USD 120,000 - 180,000
Global GDPR, Security & Legal Specialist
Global GDPR, Security & Legal Specialist

Portage Ventures GP Inc. • Indiana (PA)

Hybrid
USD 90,000 - 150,000
Equity package
Hybrid office in Canada HQ
Lunch allowance
+8
Remote Security & Compliance Lead (ISO27001/SOC 2)
Remote Security & Compliance Lead (ISO27001/SOC 2)

Mozilla Corporation • United States

Remote
USD 92,000 - 138,000
Generous bonus plans
Medical, dental, and vision coverage
Generous retirement contributions with
+4
Senior Risk & Controls Manager (ISO27001/SOC2)
Senior Risk & Controls Manager (ISO27001/SOC2)

HireHi • United States

Remote
USD 150,000 - 206,000
Remote ISO 27001 Security Specialist — Controls Lead
Remote ISO 27001 Security Specialist — Controls Lead

GCS Recruitment • United States

Remote
USD 80,321 - 120,482