Назад
Company hidden
3 часа назад

Director, Security Governance, Risk and Compliance (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
director
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Director, Security Governance, Risk and Compliance (Cybersecurity): Leading global security governance, risk, compliance, customer trust, privacy, and M&A due diligence programs with an accent on regulatory frameworks, security controls, audits, and cross-functional change management. Focus on building risk management and compliance roadmaps, improving GRC evidence workflows with AI, and aligning security requirements with engineering, product, legal, sales, and executive stakeholders.

Location: Austin, Texas, United States. Applicants must be authorized to work in the U.S. without current or future employer sponsorship.

Company

hirify.global provides software solutions and operates a global security program focused on customer trust, governance, risk, and compliance.

What you will do

  • Lead a global team covering security governance, risk, compliance, customer trust, privacy, and related activities.
  • Own security policies, procedures, controls, and the information security risk management program.
  • Lead internal assessments, external audits, certification efforts, and regulatory compliance initiatives.
  • Manage security M&A due diligence, incident response support, data governance, and product certification activities.
  • Configure and maintain GRC tools for evidence collection, gap identification, and risk management.
  • Partner with engineering, product, legal, sales, marketing, HR, auditors, vendors, and executive leadership to drive compliant operational change.

Requirements

  • 10+ years of experience in governance, risk, compliance, or a related field, including 3–5 years in leadership or management.
  • Extensive experience managing security policies, procedures, and controls in complex, regulated environments.
  • Experience leading internal assessments, external compliance audits, vendor management, risk programs, incident response strategies, and data governance.
  • Strong knowledge of GDPR, HIPAA, SOC 2, ISO 27001, ISO 27701, ISO 9001, ISO 42001, DORA, NIST, and the Secure Controls Framework.
  • Strong communication, leadership, stakeholder management, and operational change skills.
  • U.S. work authorization without current or future visa sponsorship is required.

Nice to have

  • Experience with GxP, FDA, ICH, FedRAMP, FISMA, SOX, HIPAA, or HITECH certification efforts.
  • LogicGate administration experience.
  • CISA, CISM, CRISC, CISSP, CIPP/E, or CIPP/US certification.

Culture & Benefits

  • Collaborative, cross-functional environment with an emphasis on transparency, accountability, trust, and security culture.
  • Strategic leadership role combining people management with hands-on execution.
  • Opportunity to use AI and other technologies to reduce compliance overhead and improve operational efficiency.
  • Equal opportunity workplace with consideration for candidates regardless of legally protected characteristics.
  • Employment is subject to applicable global sanctions and export control requirements.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →