Source Job

19 jobs similar to GRC Subject Matter Expert (SME)

Jobs ranked by similarity.

  • Lead and mature LiveKit’s security and privacy compliance programs.
  • Own the day-to-day operations of compliance workflows.
  • Partner closely with Security and IT Engineers on controls design, documentation, governance, and audits.

LiveKit is revolutionizing the AI landscape by providing the network infrastructure that powers multimodal AI interfaces.

US

Deliver successful consulting engagements across multiple Risk offerings while maintaining a high degree of customer satisfaction. Perform qualitative and quantitative risk assessments using industry-recognized frameworks. Provide advisory services to GuidePoint customers to help mature their cyber risk management and information security programs.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk.

India

Opportunity for a compliance and risk management professional to provide strategic guidance on governance, risk, and regulatory compliance frameworks. The Senior GRC Consultant will lead enterprise-wide risk assessments, develop policies and procedures, and ensure adherence to AML/CFT regulations, with a focus on UAE compliance standards. This position combines analytical rigor with hands-on advisory work, allowing you to influence compliance practices and enhance operational resilience.

Jobgether is a Talent Matching Platform that partners with companies worldwide to efficiently connect top talent with the right opportunities through AI-driven job matching.

US

Lead and support customer security audits and respond to security questionnaires. Prepare, coordinate, and manage ISO 27001 audits. Ensure ongoing compliance with HIPAA, NIST CSF, and other regulatory requirements.

OneStudyTeam specializes in speeding up clinical trials and increasing the chance of new therapies being approved with the ultimate goal of improving patient outcomes.

Canada US Europe

As a Compliance and Risk Specialist, you will support the Compliance and Risk team by leading compliance initiatives. You will conduct risk assessments and remediation activities. You will contribute to the development of security strategies for systems deployed globally.

Canadian Bank Note Company (CBN) is a trusted leader in secure technology solutions for governments and businesses worldwide.

Europe

  • Perform IT audit engagements (ISO27001) and readiness assessments.
  • Evaluate the design and effectiveness of technology controls.
  • Communicate IT audit findings to management and identify performance improvement opportunities.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance.

US

Serve as a strategic partner to client leadership, understanding business objectives, operational challenges, maturity levels, and long-term goals. Lead rationalization of client Cybersecurity Program, including people, process, and operational considerations. Drive alignment of recommended solutions to client maturity models, enterprise priorities, and operational needs.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk.

$148,000–$222,000/yr
US

  • Conduct third party security and privacy reviews to reduce third party risks.
  • Identify business risks and recommend risk treatment options.
  • Collaborate with internal teams to improve third party due diligence processes.

Airtable is the no-code app platform that empowers people closest to the work to accelerate their most critical business processes.

The Sr. Manager, Governance Risk and Compliance (GRC) is responsible for overseeing Included Health's regulatory compliance, risk management, and governance programs. Ensuring compliance with healthcare regulations (HIPAA, HITECH, SOC 2), and building a robust GRC framework to protect PHI. This role plays a crucial role within the Governance, Risk & Compliance team, reporting directly to the Chief Information Security Officer.

Included Health is a new kind of healthcare company, delivering integrated virtual care and navigation, aiming to raise the standard of healthcare for everyone.

Europe

As an Information Security Officer at Form3, you'll play a pivotal role in strengthening and evolving our information security governance, risk, and compliance practices. Work closely with teams across the organization to embed security into business and technology decisions. Combine strategic oversight with practical execution, ensuring our controls, frameworks, and awareness initiatives remain industry leading as we scale globally.

Form3 is a company that offers a cloud-native, environment while helping define how security scales with the business.

Global Unlimited PTO

  • Use security and compliance tools (GRC tools) to help the company stay audit-ready
  • Manage IT assets and access permissions for team members and internal systems
  • Support daily security operations related to ISO 27001 / SOC 2

Hopae is building the world’s most trusted digital identity platform — private, secure, and built for real life. Backed by top global investors, Hopae operates across Seoul, Paris, and San Francisco, bringing together exceptional talent from over 10 nationalities.

US

Plan and schedule remote security assessments for new and existing third-party relationships/engagements. Communicate Experian's third party risk management/security due diligence requirements to internal and external stakeholders. Identify information security deficiencies or risks at third parties and communicate with all stakeholders to obtain action plans, due dates, and documentation to evidence remediation of identified security risks/gaps.

Experian is a global data and technology company, powering opportunities for people and businesses around the world.

LATAM

Lead day-to-day activities for SOC 2 and other IT compliance engagements. Guide staff, engage with clients, and play a key role in the delivery of high-quality audits and readiness assessments. Identify control gaps and provide recommendations for remediation.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance.

EMEA

Responsible for operating, supporting, and developing the ISO Practice with a high level of quality, productivity, and satisfaction for both clients and employees. Oversees the delivery of ISO certification services, ensures compliance with accreditation requirements. Leads the development of the audit team to drive efficiency, profitability, and growth within the practice.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance.

$125,000–$145,000/yr
US 4w PTO

  • Drive the implementation of technical controls and evidence gathering in collaboration with engineering for compliance standards.
  • Manage the daily operational reality of audits, customer questionnaires, and internal IT/Security support requests.
  • Rapidly prototype and ship internal tools, custom Vanta integrations, and scripts using AI-assisted development to close automation gaps.

Sayari is a risk intelligence provider equipping public and private sectors with visibility into complex commercial relationships. They deliver corporate and trade data from over 250 jurisdictions and are headquartered in Washington, D.C. They were also featured as one of Inc.’s “Best Workplaces” for 2025.

US 5w PTO

  • Comprehend a client's compliance/risk/InfoSec environment and convey a high-value proposition.
  • Facilitate product demonstrations and answer product questions.
  • Consult clients on industry best practices as they learn about AuditBoard.

AuditBoard is the leading audit, risk, ESG, and InfoSec platform on the market, with more than 50% of the Fortune 500 leveraging their technology.

$137,820–$204,996/hr

Provide visionary leadership and strategic direction for our critical Cybersecurity GRC Security Risk Assessment function. Responsible for identifying, evaluating, and mitigating cyber risks through comprehensive internal and external assessments. Contribute significantly to a secure and trusted digital environment across the entire organization.

CommonSpirit Health delivers more than 20 million patient encounters annually through more than 2,300 clinics, care sites and 137 hospital-based locations.

EMEA

  • Support the audit and assurance teams in performing ISO 27001 certification assessments and related information security audits.
  • Assist in audit planning, evidence review, report preparation, and overall quality assurance.
  • Handle client ingestion and onboarding activities, perform HubSpot data scrubbing and updates, and register new engagements in Asana and coordinate Insight ONE transfers.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance.

Maintain and improve documentation for ISO 9001 and ISO/IEC 27001. Support internal audits, track findings, and monitor corrective and preventive actions. Collaborate with cross-functional teams to enhance quality, security, and operational excellence.

Miratech is a global IT services and consulting company that brings together enterprise and start-up innovation to support digital transformation.