Added
6 days ago
Type
Full time
Salary
Salary not provided

Related skills

iso 27001 vanta pci dss soc 2 onetrust

πŸ“‹ Description

  • Lead RainFocus's GRC program across SOC 2, ISO 27001, PCI DSS, and others.
  • Audit prep, evidence collection, auditor relationships.
  • Manage and mature control framework; map new regs; gap assessments.
  • Own annual security risk assessment (NIST SP 800-30).
  • Update security policies and documentation for best practices.
  • Partner with Engineering to mature vulnerability management and secrets scanning.

🎯 Requirements

  • Bachelor's in Tech, Cybersecurity, or related field desirable.
  • 6+ years in GRC, IT audit, or info security compliance.
  • In-depth knowledge: SOC 2, ISO 27001, PCI DSS, NIST 800-series, GDPR.
  • Experience with formal risk assessments, not just checklists.
  • Certs like CISA, CRISC, CISSP, CIPP, CIPM desirable.
  • Familiarity with tools: Drata, OneTrust, Vanta, etc.

🎁 Benefits

  • Competitive salary and benefits, 401k, generous PTO.
Share job

Meet JobCopilot: Your Personal AI Job Hunter

Automatically Apply to All Other Jobs. Just set your preferences and Job Copilot will do the rest β€” finding, filtering, and applying while you focus on what matters.

Related All Other Jobs

See more All Other jobs β†’