New YorkFull TimeData Science
Remotely
jiraai toolspci dssiso 27001soc 2hipaaconfluenceall othernist csf
Job Description
📋 Description
- Own ISO 27001 program end-to-end, from planning to surveillance
- Drive multi-program compliance across SOC 2, PCI DSS, HIPAA, NIST CSF
- Coordinate with external auditors and certification bodies
- Manage risk framework, policy development, and stakeholder advisory
- Automate evidence collection and testing with tooling
- Respond to customer security questionnaires and trust center needs
🎯 Requirements
- 5+ years in security governance, risk, and compliance (GRC) or security assurance
- 5+ years with ISO 27001 and PCI DSS
- Knowledge of SOC 2, HIPAA, NIST CSF
- Experience managing multi-program compliance globally (EU/UK)
- Experience drafting internal InfoSec policies and procedures
- Strong communication with engineering teams and cross-functional partners
🎁 Benefits
- Medical, dental, vision insurance
- Mental health benefits
- Family building benefits
- Childcare and pet benefits
- 401(k) with company match
- PTO and holidays, paid parental leave
Back to all jobs