Principal Business Information Security Officer (GRC)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Principal Business Information Security Officer (GRC): Leading and maturing the outcome-led risk advisory function with an accent on GRC operating models and risk-informed decision support. Focus on scaling the BISO-aligned advisory model and translating complex technical risks into actionable business recommendations.
Location: Remote (Canada)
Company
provides Secure Access Essentials, helping individuals and organizations manage and protect access to AI, applications, and credentials.
What you will do
- Lead the continued evolution of the risk management framework to ensure it remains repeatable, scalable, and consistently applied.
- Design and scale the BISO-aligned advisory model, defining engagement patterns and communication flows.
- Provide just-in-time risk advisory for product development, engineering changes, supplier decisions, and architecture reviews.
- Build strong cross-functional partnerships, translating complex technical and business risks into actionable recommendations.
- Coach GRC Analysts to adopt advisory behaviors and apply the risk framework consistently.
- Lead executive-level risk discussions through Risk Governance Committees and produce executive-ready risk narratives and dashboards.
Requirements
- Proven experience in security, risk management, or GRC, providing advisory support to technical and business teams.
- Deep expertise in risk analysis, quantification, and risk-informed decision-making frameworks.
- Demonstrated ability to lead technical and executive-level discussions and drive stakeholder alignment.
- Experience providing security or risk guidance in fast-paced product, engineering, or SaaS environments.
- Strong facilitation, communication, and storytelling skills for creating executive-ready summaries.
- Must be based in Canada.
Nice to have
- Certifications such as CISSP, CISM, CRISC, CISA, or Security+.
- Experience working with global teams.
Culture & Benefits
- Remote-first culture with home office setup support and a dedicated remote work stipend.
- Comprehensive health coverage, including dependents.
- Flexible Paid Time Off policies, including Quarterly Self-Care Days and Volunteer Days.
- Annual learning stipend for continuous professional development.
- Peer-to-peer recognition through Motivosity and an Employee Assistance Program for well-being.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →