Lead and advance governance, risk management, compliance, and information security programs to support organizational objectives and regulatory requirements.
Manage vulnerability management, third-party risk, security governance, policy development, and AI governance initiatives.
Partner with leaders to foster a culture of accountability, risk awareness, and continuous improvement.
Lead the governance, risk, and compliance function across security policies, standards, risk management, audits, and third-party risk.
Own audit readiness and ongoing compliance programs across frameworks such as SOC 2, ISO 27001, GovRAMP, PCI DSS, HIPAA, NIST CSF, and more.
Manage third-party and supply chain risk management, including vendor security reviews, due diligence, and remediation tracking.
Accela provides government software solutions to improve efficiency, increase citizen engagement, and enable thriving communities. They have been an industry leader for nearly 20 years and are committed to diversity, equity, and inclusion.
Defines program goals, governance frameworks, and measurable objectives for cyber risk and compliance programs.
Manages user attestations, third-party risk, cyber contract negotiation, and coordination of IT audits/assessments.
Implements GRC tooling and monitors program effectiveness through KPIs, QA reviews, and control testing.
Velera is a credit union service organization providing fintech solutions to over 4,000 financial institutions. The company fosters a remote-first, inclusive culture with a focus on employee wellbeing and belonging.
Lead the design and governance of control frameworks and risk workflows within the GRC platform, ensuring alignment with compliance requirements like HIPAA, HITRUST, and NIST.
Oversee risk assessments, control testing, and vendor evaluations to identify and mitigate security risks.
Manage policy lifecycle, audit coordination, and reporting on control effectiveness and risk indicators.
USAP is a healthcare organization focused on providing anesthesia services and patient safety. It is a growing company with a culture of security, compliance, and collaboration.
Lead GRC initiatives to protect the business and strengthen technology risk posture.
Translate complex risk data into clear insights and action plans for leadership.
Build and improve policies, standards, and procedures for governance and compliance.
Herbalife is a global nutrition company focused on developing and distributing dietary supplements and personal care products. The company employs thousands worldwide and fosters a collaborative, fast-paced environment with a culture of accountability and continuous improvement.
Drive compliance, risk management, and security assurance as a GRC Specialist.
Own third-party risk management and maintain security documentation.
Support audits, self-assessments, and customer security inquiries.
Avid provides technology and collaboration tools for creators to entertain, inform, educate, and enlighten the world. The company fosters a culture of passion, customer focus, and innovation, with employees who believe in their mission.
Coordinate vendor security assessments and track remediation activities.
Maintain accurate documentation and workflow updates within ServiceNow.
Support daily operational activities for an enterprise Third-Party Risk Management program.
Del Oro Consulting is a consulting firm that delivers third-party risk management and cybersecurity governance services. The company offers a remote work culture and provides benefits including medical, dental, vision, and 401(k) matching.
Perform enterprise risk assessments using NIST CSF, SOC 2, and CIS frameworks.
Develop and execute security awareness programs including training and phishing simulations.
Support governance and control management by maintaining policies and control libraries.
Protective helps protect customers against life's uncertainties by providing insurance and peace of mind. The company offers a collaborative environment with a focus on employee wellbeing and work-life balance.
Own and continuously improve the company's compliance program across SOC 2, GDPR, ISO 27001, and other frameworks.
Lead external audits, develop security policies, and partner with engineering teams to implement controls.
Manage third-party risk, respond to customer security questionnaires, and build compliance metrics for executive reporting.
10a Labs is the safety and threat-intelligence layer trusted by frontier AI labs, AI unicorns, Fortune 10 companies, and leading global technology platforms. They are a high-growth technology company with a collaborative culture, operating in a fast-moving environment.
Manage and implement complex controls frameworks for large systems consisting of Cloud infrastructure and SaaS services.
Design and develop automation solutions for evidence collection across Cloud infrastructure, endpoints, and SaaS services.
Conduct risk assessments across business units and processes, identifying risk findings and recommending remediation strategies.
Virtru is a data protection platform that enables secure sharing without sacrificing security or privacy. Backed by top venture capital firms, the company helps Fortune 500 companies and government agencies achieve true data security with freedom to share.
Operate as a trusted advisor to executive teams, guiding them through complex cybersecurity challenges and building security programs.
Develop enterprise security strategies, roadmaps, and governance frameworks, translating technical risks into business impact.
Lead risk assessments, incident response planning, and compliance initiatives aligned with NIST, CIS, and ISO frameworks.
DYOPATH simplifies technology for clients while investing deeply in its people. Recognized as a Great Place to Work for five consecutive years, the company prides itself on building exceptional teams to deliver secure solutions.
Lead customer security reviews, RFPs, RFIs, and questionnaires to keep deals moving.
Own SOC 2 Type II program management and the customer-facing trust portal.
Author security policies and manage AI compliance frameworks.
Sparkrock helps social benefit organizations like nonprofits, school boards, and government agencies reach their full potential through technology. They are a best-in-class, 100% remote organization with a focus on culture and growth, serving over 150,000 users.
Act as a trusted advisor to business leaders, bridging security risks and business priorities.
Lead security assessments, risk reviews, and remediation planning for new products and enterprise changes.
Maintain clear visibility of security risk, control health, metrics, and dashboards, escalating when needed.
Experian is a global data and technology company, powering opportunities for people and businesses around the world. With a team of 25,200 people in 32 countries, they foster an inclusive, purpose-driven culture and have been recognized as a World's Best Workplace in 2025.
Lead the GRC strategy, shifting from bureaucratic to strategic enabler focused on real business risk.
Manage cyber risk quantification, third-party risk, and continuous compliance programs.
Oversee information security governance, AI governance, and IAM governance, reporting to the CISO.
Grupo QuintoAndar is the largest real estate ecosystem in Latin America, covering all phases of the housing journey. The company is valued at over USD 5.1 billion, with a culture of innovation, collaboration, and high performance working with top professionals.
Lead the risk and compliance function, building frameworks to protect data and meet regulatory standards.
Collaborate cross-functionally to identify and mitigate operational, IT, and privacy risks.
Manage audits, incident response, and training to promote a strong culture of data security.
BIS Safety Software is a SaaS company that builds software to help organizations manage safety training, learning, and compliance. The company has been growing since 2006 and offers a collaborative culture with an Employee Stock Ownership Plan, valuing humility and ownership.
Develop and execute cybersecurity strategy, roadmap, and governance to protect Voyager's information systems and mission-critical environments.
Lead security operations, incident response, vulnerability management, and compliance with government regulations like CMMC and NIST.
Oversee security architecture, risk management, and team leadership to enable secure innovation in aerospace and defense.
Voyager is an innovative space, defense, and national security technology company delivering transformative, mission-critical solutions. It fosters a culture where innovation thrives, curiosity is rewarded, and impact is real, with a team of doers, thinkers, and builders united by purpose.
Coordinate governance activities for strategic Technology and Cybersecurity programs in LATAM.
Support the Vulnerability Management Program and M&A technology integration initiatives.
Develop KPIs, dashboards, and executive reports to drive risk-based decision-making.
Experian is a global data and technology company that drives opportunities for people and businesses worldwide. With 25,200 employees in 32 countries, the company is people-centric, inclusive, and recognized as a top workplace.
Lead global security and compliance programs across multiple business units.
Manage SOC 2 Type II audits and customer trust initiatives.
Drive AI governance and security awareness training efforts.
The partner company is a technology organization that prioritizes security and compliance to build customer trust. It operates in a growing, multi-business environment with a remote-first culture and a focus on operational excellence.
Own and continuously improve Camunda's Information Security Management System (ISMS), driving measurable improvements.
Drive security audit cycles for ISO 27001, SOC 2, and future frameworks with minimal supervision.
Review information security requirements in customer contracts and lead responses to complex security questionnaires.
We are the enterprise platform for agentic orchestration, enabling organizations to coordinate AI agents, people, and systems across complex business processes. We are a fully remote, global team trusted by over 700 organizations, named a GP Bullhound Next Unicorn and Great Place to Work certified.
Own and continuously mature the company risk register, designing AI-assisted workflows for real-time risk posture.
Lead external audit management (SOC 2 Type II) and automate evidence collection pipelines in Vanta.
Engineer the Trust and Assurance program for scale, including automated vendor risk intake and AI-assisted response generation.
ButterflyMX empowers people to open and manage doors & gates from a smartphone, with products installed in over 20,000 properties worldwide. As a distributed, primarily remote workforce, they seek intelligent, passionate, and collaborative individuals driven by shared commitment to excellence and innovation.