The Compliance Program Manager will oversee and maintain ISO 27001:2022 and SOC 2 compliance across multiple brands and products ensuring alignment with security risk and legal requirements. They will coordinate audits manage remediation efforts and work closely with crossfunctional teams to implement security controls. Additionally they will track evolving regulations advise leadership on risk posture and enhance compliance processes.
Key Responsibilities:
- Lead ISO 27001:2022 and SOC 2 audits ensuring continuous compliance.
- Manage compliance roadmaps across multiple business units.
- Collaborate with security legal and IT teams on risk mitigation.
- Oversee thirdparty vendor security assessments.
- Develop policies procedures and training for compliance awareness.
Qualifications :
Requirements:
- 56 years of experience managing compliance programs for ISO 27001:2022 and SOC 2 in a corporate environment.
- Proven ability to oversee complex programs spanning multiple brands and products.
- Strong knowledge of risk management audit processes and regulatory frameworks.
- Experience working crossfunctionally with security legal and engineering teams.
- Excellent project management and stakeholder communication skills.
- Ability to manage thirdparty auditors and compliance assessments.
NicetoHaves:
- Experience with additional frameworks (e.g. NIST GDPR HIPAA).
- CISSP CISA or other relevant certifications.
- Knowledge of cloud security compliance (AWS Azure GCP).
- Experience in a multinational or highly regulated industry.
- Familiarity with GRC tools and automation for compliance tracking.
- Ability to develop training programs for compliance awareness.
Additional Information :
All your information will be kept confidential according to EEO guidelines. Qualified applicants will be asked to complete a 30minute online assessment as a part of your application.
Remote Work :
Yes
Employment Type :
Fulltime