RainFocus provides an industry-disrupting software platform for in-person, virtual, and hybrid events, serving Fortune 500 companies like Adobe, Cisco, IBM, and Oracle. The company is well-funded, rapidly growing, and offers a challenging, fun, and exciting environment.
Lead and mature the GRC program across SOC 2, ISO 27001, PCI DSS, and other compliance frameworks, including audit preparation and evidence collection.
Own the annual security risk assessment process using NIST SP 800-30 methodology, including stakeholder interviews and risk scoring.
Drive security awareness training, AI governance, and Data Loss Prevention program development while collaborating with cross-functional teams.