Security Compliance Manager
New
USFull-TimeManager
Salary130,000 - 160,000 USD per year
Apply NowOpens the employer's application page
Job Details
- Experience
- 5+ years of experience
- Required Skills
- AWSGCPAzureRisk Management
Requirements
- 5+ years of experience in information security within a regulated environment (e.g., HIPAA, GLBA, PCI).
- Proven experience leading ISO 27001 and/or SOC 2 certification processes, including audit preparation and ongoing compliance management.
- Strong understanding of security domains such as access control, incident response, vulnerability management, BCDR, and secure SDLC.
- Experience performing risk assessments and gap analyses, with the ability to translate findings into actionable remediation plans.
- Ability to convert compliance requirements into structured engineering and operational work (tickets, workflows, ownership models).
- Strong written and verbal communication skills, with experience producing audit-ready documentation and engaging with auditors.
- Familiarity with cloud environments (AWS, GCP, or Azure) and modern software development practices is highly desirable.
- Relevant certifications such as CISA, CISM, or CISSP are a plus.
Responsibilities
- Lead ISO 27001 and SOC 2 certification readiness, including audit preparation, control implementation, surveillance audits, and ongoing compliance maintenance.
- Manage and operate the Information Security Management System (ISMS), ensuring controls are reviewed, effective, and continuously improved across the organization.
- Oversee audit evidence collection, documentation, and response processes for internal and external security audits.
- Develop, maintain, and enhance the information security risk management program, including risk registers, ownership structures, and remediation tracking.
- Partner with Security leadership to define, monitor, and report key risk and performance metrics (KRIs/KPIs).
- Translate security and compliance requirements into clear, actionable tasks for Engineering, IT, and Operations teams, including ownership and acceptance criteria.
- Coordinate cross-functional compliance efforts, including policy updates, control validation, and alignment with regulatory and customer requirements.
View Full Description & ApplyYou'll be redirected to the employer's site