





Remote role and mid-level experience increase applicant density despite niche GRC specialization.
Strong IT audit/GRC and framework expertise required, making cross-industry transfer limited.
Requires 3+ years IT audit/GRC experience and compliance knowledge, enforcing moderate screening.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Support implementation and maintenance of cybersecurity and GRC programs aligned with compliance frameworks like SOC 2 and ISO 27001.
Manage day-to-day GRC platform operations including controls monitoring, evidence management, and vendor risk records.
Own first-level audit response tasks, recurring compliance activities, client communications, and project management for cybersecurity engagements.
Bachelor's or Master's degree in IT, CIS, MIS, or related field.
3+ years experience in IT Audit, Cybersecurity, or IT Risk Advisory roles; candidates with 5+ years and prior management experience preferred.
Knowledge of compliance frameworks: SOC 2, ISO 27001, HIPAA, PCI-DSS, NIST, FedRAMP, and CMMC.
Relevant certifications preferred: CompTIA Security+, CISA, CISM, CISSP, or AWS Cloud Practitioner.
Experienced in operationalizing cybersecurity and GRC programs within client delivery teams.
Familiar with managing compliance platform tools and client audit request responses independently.
Demonstrates proactive communication by proposing solutions and maintaining strong client and industry relationships.