About the role
- Define and implement the organization's GRC program, including policies, procedures, and controls
- Oversee and manage our global information security governance and compliance programs
- Develop and maintain robust security policies, procedures, and best practices
- Coordinate internal and external audits (SOC, ISO, Cyber Essentials Plus), ensuring readiness and compliance
- Conduct internal audits, identify gaps, and recommend corrective actions
- Deliver training sessions and security awareness initiatives across the organization
- Lead third-party risk assessments (TPRM) and respond to vendor security assessments
- Chair ISMS Management Review meetings and monitor cyber risk metrics
- Support IT with vulnerability management and penetration testing planning
- Contribute to data privacy and governance compliance under GDPR, UK DPA, NZ Privacy Act, etc.
- Support Business Continuity Planning (BCP) testing and documentation
Requirements
- Bachelor’s degree in Computer Science, Information Systems, or related field (or equivalent work experience)
- 10+ years of experience in IT governance, compliance, or risk management at a global company
- Proven experience with international compliance, specifically GDPR, data protection laws, and compliance initiatives
- Six Sigma is a nice to have
- ISO 27001 Internal Auditor certification is highly desirable
- Strong understanding of information security and IT governance frameworks
- Familiarity with telecommunications and technologies like networking and VoIP is preferred
- Ability to manage complex, cross-functional projects with a high attention to detail
- Excellent communication and stakeholder engagement skills
- Proficient in Microsoft Office Suite, especially SharePoint, OneDrive, Outlook, Teams, etc.
- Competitive industry salaries
- Comprehensive medical, dental, and vision insurance
- Company-provided life and disability insurance
- Matching 401 (k) plan
- Employee Emergency Assistance Fund
- Paid holidays and vacation time
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard skills
GRC program implementationinformation security governancecompliance programssecurity policies developmentinternal auditsthird-party risk assessmentsvulnerability managementpenetration testingdata privacy complianceBusiness Continuity Planning
Soft skills
attention to detailcommunication skillsstakeholder engagementproject management
Certifications
Bachelor’s degree in Computer ScienceISO 27001 Internal Auditor certificationSix Sigma