Lead IT governance and risk management, including executive reporting and risk register maintenance.
Develop KPI and KRI dashboards to translate complex data into actionable insights for senior leadership.
Oversee ITSM governance, ServiceNow optimization, and vendor risk management.
Our partner is a global organization operating in a sophisticated Governance, Risk & Compliance environment, connecting technology, cybersecurity, privacy, and operational risk. It fosters a collaborative culture with a focus on work-life balance and professional development.
Own and continuously improve Camunda's Information Security Management System (ISMS), driving measurable improvements.
Drive security audit cycles for ISO 27001, SOC 2, and future frameworks with minimal supervision.
Review information security requirements in customer contracts and lead responses to complex security questionnaires.
We are the enterprise platform for agentic orchestration, enabling organizations to coordinate AI agents, people, and systems across complex business processes. We are a fully remote, global team trusted by over 700 organizations, named a GP Bullhound Next Unicorn and Great Place to Work certified.
Lead and mature the GRC program across SOC 2, ISO 27001, PCI DSS, and other compliance frameworks, including audit preparation and evidence collection.
Own the annual security risk assessment process using NIST SP 800-30 methodology, including stakeholder interviews and risk scoring.
Drive security awareness training, AI governance, and Data Loss Prevention program development while collaborating with cross-functional teams.
RainFocus is a rapidly growing software company that provides an industry-disrupting event management platform for Fortune 500 companies like Adobe, Cisco, and IBM. The company is well-funded, growing fast, and building a culture that is challenging, fun, and exciting.
Own and strengthen the controls environment, ensuring compliance requirements are effectively implemented and maintained.
Support and mature the GRC program, including SOC 2 operations and alignment with frameworks such as NIST.
Manage vendor risk assessments, regulatory licensing, and security issue lifecycle across jurisdictions.
Mesh enables consumers to pay and be paid with any asset, bridging crypto payments into everyday commerce. Backed by investors like PayPal Ventures and Paradigm, the company is building infrastructure for the global economy with a small, fast-moving team.
Build and lead the Cyber GRC function, including policy, NIST/CIS/ISO frameworks, and regulatory compliance.
Manage vendor risk and security assessments across the vendor lifecycle.
Drive security awareness, AI governance, and quantified cyber risk reporting.
Mariner is a leading financial services firm providing wealth management and advisory solutions to individuals and institutions. The company fosters a collaborative, innovative culture focused on professional growth, diversity, and work-life balance.
Lead day-to-day management of cybersecurity and information security programs, including schedules, milestones, and performance metrics.
Serve as the primary liaison between executives, cybersecurity teams, and operational stakeholders, facilitating governance forums and executive reviews.
Support strategic planning, risk management, and organizational change initiatives to modernize cybersecurity capabilities.
ERP International provides health, science, and technology solutions to government and commercial sectors. Founded in 2006, the company is headquartered in Laurel, MD, with satellite offices nationwide and has been recognized as a Top Workplace for seven consecutive years.
Support enterprise cybersecurity governance, compliance, and risk management programs.
Conduct security control assessments, audit readiness, and policy development.
Coordinate with technical teams and executive leadership to drive cybersecurity modernization.
ERP International is a nationally respected provider of health, science, and technology solutions supporting government and commercial clients. The company has been named a Top Workplace by WTOP News for 7 years and offers a culture of employee recognition, community outreach, and professional development.
Lead the GRC strategy, shifting from bureaucratic to strategic enabler focused on real business risk.
Manage cyber risk quantification, third-party risk, and continuous compliance programs.
Oversee information security governance, AI governance, and IAM governance, reporting to the CISO.
Grupo QuintoAndar is the largest real estate ecosystem in Latin America, covering all phases of the housing journey. The company is valued at over USD 5.1 billion, with a culture of innovation, collaboration, and high performance working with top professionals.
Lead bespoke customer engagements end-to-end, from discovery to solution architecture and configuration of tailored Risk Cloud solutions.
Leverage AI and automation to accelerate delivery, optimize processes, and provide strategic GRC advisory to enterprise customers.
Manage project scope, timelines, and account health while mentoring junior consultants and collaborating cross-functionally.
LogicGate is the leading AI GRC platform for the enterprise, helping governance, risk, and compliance teams manage uncertainty and drive business value. The company is recognized as a top workplace and fosters a culture of ownership, impact, and inclusion, with a commitment to employee growth and community involvement.
Lead and advance governance, risk management, compliance, and information security programs to support organizational objectives and regulatory requirements.
Manage vulnerability management, third-party risk, security governance, policy development, and AI governance initiatives.
Partner with leaders to foster a culture of accountability, risk awareness, and continuous improvement.
Ultimate Medical Academy is a non-profit healthcare educational institution with a national presence, headquartered in Tampa, Florida and founded in 1994. The organization offers online and on-campus programs and fosters a culture of integrity, student success, and team member development.
Build and scale Enterprise Risk Management, Third-Party Risk Management, and policy frameworks for a leading fintech company.
Lead regulatory examination and audit readiness, ensuring institutional-grade compliance.
Work remotely with a collaborative team backed by top-tier investors and industry experts.
Ondo Finance offers institutional-grade, blockchain-enabled investment products and services, including tokenized funds and decentralized finance technology. The company is a well-funded, fully remote team backed by leading investors such as Founders Fund and Coinbase Ventures, with a culture focused on innovation and collaboration.
Independently plan and conduct IT and cybersecurity risk assessments across European laboratories and IT environments.
Assess technical and organizational controls covering network security, IAM, endpoint security, cloud, and IT resilience.
Translate technical findings into clear business risks and produce high-quality reports for management.
Eurofins Scientific is an international life sciences company providing analytical testing services to make life safer and healthier. The company has grown to over 63,000 staff across a decentralized network of 950 laboratories in 60 countries, committed to diversity and sustainability.
Identify, capture, and maintain project risks, issues, and opportunities in the risk register, facilitating workshops with project teams and SMEs.
Perform qualitative assessments, contribute data for quantitative cost/schedule risk analysis, and track mitigation actions to ensure accountability.
Prepare risk reports, dashboards, and executive summaries, monitor emerging risks, and coordinate with delivery teams to embed risk into decision-making.
Accenture Infrastructure & Capital Projects helps develop and deliver factories, grids, transit systems, and public infrastructure, doing it smarter, safer, and more sustainably. The company blends project management, engineering, technology, and strategy with digital innovation and AI, fostering a culture of bold thinking and high performance.
Assist in monitoring compliance with frameworks like ISO 27001, SOC 2, and Cyber Essentials.
Maintain the central Risk Register and track remediation progress across departments.
Support policy management and compliance training across the organization.
We are a global Physical AI company using data and AI to improve critical industries like healthcare, water, energy, and telecom. Our teams are ambitious, curious, and practical, with colleagues across Africa, Europe, the UK, and the US.
Take ownership of information security governance, including policies, risk registers, and control documentation.
Manage day-to-day security program operations, mentor analysts, and coordinate cross-functional initiatives.
Lead incident response, compliance support, and serve as primary counterpart to the vCISO.
Aries is a financial technology company building modern infrastructure and products for active investors and traders. As a growing organization, they are investing in a practical, accountable security program deeply integrated into how the company operates.
Lead and mature Fullscript's security compliance program across SOC 2, PCI DSS, and HITRUST frameworks.
Manage internal and external audits, coordinate remediation efforts, and maintain continuous audit-readiness.
Partner cross-functionally with Security, Engineering, Privacy, Legal, and Product to translate compliance requirements into scalable practices.
Fullscript is a health technology company that powers every part of care by providing practitioners with clinical insights, lab interpretations, and high-quality supplements. With over 125,000 practitioners and 10 million patients, they foster a culture of curiosity, collaboration, and putting people first.
Lead pre-sales, scoping workshops, and SOW development for ServiceNow Security, Risk, and OT solutions.
Provide architectural guidance, business acumen, and deep product expertise to customers and partners.
Serve as practice director on marquee accounts, mentoring delivery teams and ensuring delivery standard adherence.
ServiceNow is the AI control tower for business reinvention, helping 85% of the Fortune 500 work smarter, faster, and better. We build an AI-native culture where technology and talent are unstoppable together.
Own GRC workstreams from initial request through evidence collection, testing, and remediation.
Test security controls and conduct risk assessments to identify gaps and drive realistic remediation.
Support audits, vendor reviews, customer questionnaires, and policy maintenance across teams.
YipitData is a leading market research and analytics firm for the disruptive economy, providing actionable insights from alternative data. The company has a global presence with offices in the US, APAC, and India, and is recognized as an Inc. Best Workplace for three consecutive years, emphasizing transparency, ownership, and continuous mastery.
Lead GRC activities including risk management framework, security assessments, and continuous monitoring for assigned systems.
Collaborate with engineering and security teams to integrate GRC principles into system lifecycles and DevSecOps practices.
Develop and maintain security documentation, support ATO processes, and provide risk briefings to leadership.
The partner company helps organizations strengthen cybersecurity programs through modern GRC practices and engineering expertise. It is a fully remote organization with a collaborative culture focused on technical excellence and professional growth.
Lead the Trust Risk Program to drive risk-based decisions across security, privacy, trusted AI, and resilience.
Guide product and engineering teams in proactive risk management and develop AI-enabled modernization strategies.
Establish enterprise mechanisms for mitigation accountability and communicate program health to executives.
Autodesk creates software that powers the design and making of everything from buildings to movies. The company fosters a culture of belonging and innovation, with a global team dedicated to transforming how things are made.