Source Job

Canada US Europe

As a Compliance and Risk Specialist, you will support the Compliance and Risk team by leading compliance initiatives. You will conduct risk assessments and remediation activities. You will contribute to the development of security strategies for systems deployed globally.

ISO27001 SOC2 Risk Management GRC

18 jobs similar to Compliance and Risk Specialist

Jobs ranked by similarity.

US

Lead and support customer security audits and respond to security questionnaires. Prepare, coordinate, and manage ISO 27001 audits. Ensure ongoing compliance with HIPAA, NIST CSF, and other regulatory requirements.

OneStudyTeam specializes in speeding up clinical trials and increasing the chance of new therapies being approved with the ultimate goal of improving patient outcomes.

Europe

As an Information Security Officer at Form3, you'll play a pivotal role in strengthening and evolving our information security governance, risk, and compliance practices. Work closely with teams across the organization to embed security into business and technology decisions. Combine strategic oversight with practical execution, ensuring our controls, frameworks, and awareness initiatives remain industry leading as we scale globally.

Form3 is a company that offers a cloud-native, environment while helping define how security scales with the business.

  • Lead and mature LiveKit’s security and privacy compliance programs.
  • Own the day-to-day operations of compliance workflows.
  • Partner closely with Security and IT Engineers on controls design, documentation, governance, and audits.

LiveKit is revolutionizing the AI landscape by providing the network infrastructure that powers multimodal AI interfaces.

$140,000–$200,000/yr

  • Own Swiftly's security risk register and threat models; identify, prioritize, and drive remediation of risks across application and infrastructure.
  • Design secure architectures for our SaaS platform, mobile applications, and IOT/Hardware Integration, focusing on authentication, authorization, data protection, and network boundaries.
  • Define and maintain security KPIs and dashboards for executive and board reporting.

Swiftly is on a mission to help cities move more efficiently and is the leading transit data platform for agencies to share real-time passenger information.

US

Deliver successful consulting engagements across multiple Risk offerings while maintaining a high degree of customer satisfaction. Perform qualitative and quantitative risk assessments using industry-recognized frameworks. Provide advisory services to GuidePoint customers to help mature their cyber risk management and information security programs.

GuidePoint Security provides trusted cybersecurity expertise, solutions and services that help organizations make better decisions and minimize risk.

$148,000–$222,000/yr
US

  • Conduct third party security and privacy reviews to reduce third party risks.
  • Identify business risks and recommend risk treatment options.
  • Collaborate with internal teams to improve third party due diligence processes.

Airtable is the no-code app platform that empowers people closest to the work to accelerate their most critical business processes.

Middle East

  • Define Canonical's security risk management standards and playbooks
  • Analyse and improve Canonical's security risk practices
  • Evaluate, select and implement new security requirements, tools and practices

Canonical is a pioneering tech firm at the forefront of the global move to open source. As the company that publishes Ubuntu, one of the most important open source projects, they recruit on a global basis and set a very high standard for people joining the company.

Global Unlimited PTO

  • Use security and compliance tools (GRC tools) to help the company stay audit-ready
  • Manage IT assets and access permissions for team members and internal systems
  • Support daily security operations related to ISO 27001 / SOC 2

Hopae is building the world’s most trusted digital identity platform — private, secure, and built for real life. Backed by top global investors, Hopae operates across Seoul, Paris, and San Francisco, bringing together exceptional talent from over 10 nationalities.

$125,000–$145,000/yr
US 4w PTO

  • Drive the implementation of technical controls and evidence gathering in collaboration with engineering for compliance standards.
  • Manage the daily operational reality of audits, customer questionnaires, and internal IT/Security support requests.
  • Rapidly prototype and ship internal tools, custom Vanta integrations, and scripts using AI-assisted development to close automation gaps.

Sayari is a risk intelligence provider equipping public and private sectors with visibility into complex commercial relationships. They deliver corporate and trade data from over 250 jurisdictions and are headquartered in Washington, D.C. They were also featured as one of Inc.’s “Best Workplaces” for 2025.

Europe

  • Perform IT audit engagements (ISO27001) and readiness assessments.
  • Evaluate the design and effectiveness of technology controls.
  • Communicate IT audit findings to management and identify performance improvement opportunities.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance.

  • Serve as a trusted Domain Expert/SME for client projects.
  • Provide high-level strategic guidance.
  • Share institutional knowledge and validate high-stakes GRC strategies.

REDE Consulting is a dynamic technology firm specializing in GRC (Governance, Risk, and Compliance) solutions across the finance and insurance sectors.

India

Opportunity for a compliance and risk management professional to provide strategic guidance on governance, risk, and regulatory compliance frameworks. The Senior GRC Consultant will lead enterprise-wide risk assessments, develop policies and procedures, and ensure adherence to AML/CFT regulations, with a focus on UAE compliance standards. This position combines analytical rigor with hands-on advisory work, allowing you to influence compliance practices and enhance operational resilience.

Jobgether is a Talent Matching Platform that partners with companies worldwide to efficiently connect top talent with the right opportunities through AI-driven job matching.

US

Plan and schedule remote security assessments for new and existing third-party relationships/engagements. Communicate Experian's third party risk management/security due diligence requirements to internal and external stakeholders. Identify information security deficiencies or risks at third parties and communicate with all stakeholders to obtain action plans, due dates, and documentation to evidence remediation of identified security risks/gaps.

Experian is a global data and technology company, powering opportunities for people and businesses around the world.

$80,250–$180,550/yr
EMEA

  • Oversee and lead Remote’s security team and function.
  • Manage Remote’s security strategy and its implementation.
  • Ensure the confidentiality, integrity and availability of the organisation’s systems and information.

Remote is solving modern organizations’ biggest challenge – navigating global employment compliantly with ease.

EMEA

  • Support the audit and assurance teams in performing ISO 27001 certification assessments and related information security audits.
  • Assist in audit planning, evidence review, report preparation, and overall quality assurance.
  • Handle client ingestion and onboarding activities, perform HubSpot data scrubbing and updates, and register new engagements in Asana and coordinate Insight ONE transfers.

Insight Assurance is a global audit firm on a mission to transform how organizations achieve cybersecurity and compliance.

The Sr. Manager, Governance Risk and Compliance (GRC) is responsible for overseeing Included Health's regulatory compliance, risk management, and governance programs. Ensuring compliance with healthcare regulations (HIPAA, HITECH, SOC 2), and building a robust GRC framework to protect PHI. This role plays a crucial role within the Governance, Risk & Compliance team, reporting directly to the Chief Information Security Officer.

Included Health is a new kind of healthcare company, delivering integrated virtual care and navigation, aiming to raise the standard of healthcare for everyone.

Europe

  • Design, review and develop security architectures for systems and networks.
  • Conduct security assessments and communicate identified risks from vulnerability scans.
  • Collaborate with Product & Engineering teams ensuring security integration in projects.

Jobgether is a platform leveraging AI to match candidates with suitable job opportunities. They focus on ensuring a fair and objective candidate review process, and operate with AI powered matching and partner companies.

$124,400–$207,300/yr
US

  • Designs and implements governance structure and strategic vision for interdependent elements of the compliance program.
  • Oversees the development of tactical approaches to deliver compliance services to the organization.
  • Manages a team of employees by providing direction, leadership, and oversight to ensure proper execution and performance management.

Our employees are the heart and soul of our company, and every success we experience begins with them.