Summary of Position:
The Cybersecurity Assurance & Compliance Specialist is responsible for leading and supporting information security governance, risk management, compliance, and security assurance activities across the organization. The role works closely with Global IT, Legal,
HR, Internal Audit, business stakeholders, and third-party partners to maintain and improve the organization's security program.
This role is responsible for maintaining and advancing our security certification programs, including SOC 2 Type II, CMMC Level 2, and ISO/IEC 27001, while ensuring continuous audit readiness and compliance with applicable regulatory and customer requirements.
The Cybersecurity Assurance & Compliance Specialist will serve as the primary point of contact for external auditors, certification bodies, customer security assessments, and internal stakeholders. The role will also oversee enterprise cyber risk management
activities, maintain the cybersecurity risk register, and coordinate remediation efforts across business and technology teams.
This position requires a strong background in cybersecurity governance, risk, and compliance (GRC), exceptional communication skills, and the ability to translate complex technical requirements into actionable business processes.
ESSENTIAL FUNCTIONS
Compliance & Certification Management
Audit & Assurance Management
Customer Security Assurance
Cyber Risk Management
Governance & Security Program Support
QUALIFICATIONS:
Required Experience
Minimum 5 years of experience in cybersecurity, information security, IT audit, risk management, governance, or compliance.
Minimum 3 years of direct experience supporting one or more of the following:
SOC 2
ISO/IEC 27001
CMMC
NIST 800-171
Internal or external audits
Security certification programs
Experience managing compliance documentation, evidence collection, and audit
coordination.
Experience conducting risk assessments and maintaining risk registers.
Experience responding to customer cybersecurity questionnaires and security
assessments.
TECHNICAL AND SOFTWARE SKILLS:
Proficient with Microsoft 365 productivity and collaboration tools, including Teams,
Word, Excel, PowerPoint, and SharePoint.
Comfortable with governance, risk, compliance, policy management, reporting, and
documentation platforms.
Able to read and interpret business cases, project plans, risk reports, policies,
procedures, training materials, and audit documentation.
Able to prepare clear written summaries,
EDUCATION AND EXPERIENCE:
Bachelor's degree in Information Security, Cybersecurity, Information Technology,
Risk Management, Business Administration, or a related discipline is preferred.
An equivalent combination of education, professional certification, and relevant
experience may be considered.
You have successfully created your alert.
You will receive an email when a new job matching your criteria is posted.
Please check your email. It looks like you haven't verified your account yet. Here's what you're missing out on:
Didn't receive the link? Resend Verification Link