Risk And Compliance Lead

Applied Intuition

Sunnyvale, United States
$160,000 - $190,000 usd annually py
On-site (5 days a week, with flexible arrangements)
Security grc program ownership
Enterprise risk assessments
Soc 2, iso 27001, tisax audits
Applied Intuition is seeking a Risk and Compliance Lead to oversee security compliance initiatives, manage risk, and collaborate with various departments within the organization. The ideal candidate should have extensive experience in security governance, risk management, and compliance, particularly in managing audits and assessments

Job Summary

  • Own and mature the security GRC program, including policy lifecycle management, risk register maintenance, and control framework alignment across the organization.
  • Conduct comprehensive enterprise and product-level risk assessments to identify, prioritize, and track risks against the company's risk appetite - translating findings into actionable remediation plans for stakeholders.
  • Lead, manage and support compliance efforts such as, but not limited to, SOC2, ISO 27001, ISO 9001, TISAX, and federal/defense requirements - owning audit readiness, evidence collection, and remediation tracking end to end.

Matching Summary

Match Score: 85

Applied Intuition is seeking a Risk and Compliance Lead to oversee security compliance initiatives, manage risk, and collaborate with various departments within the organization. The ideal candidate should have extensive experience in security governance, risk management, and compliance, particularly in managing audits and assessments.

Salary

$160,000 - $190,000 USD annually

Skills & Requirements

Must-have

  • Security GRC program ownership
  • Enterprise risk assessments
  • SOC 2, ISO 27001, TISAX audits
  • Third Party Risk Management (TPRM)
  • GRC tooling experience

Nice-to-have

  • Automotive security and safety compliance
  • CISSP certification

Key Requirements

  • 6+ years of experience in security GRC
  • Hands on experience running Enterprise Risk Assessments
  • Past experience running Security Maturity Assessments
  • Deep hands-on experience managing SOC 2, ISO 27001, and TISAX audits
  • Experience running Third Party Risk Management programs
  • Ability to interpret compliance frameworks
  • Strong communication skills
  • Experience with GRC tooling

Work Rights

Not specified

Tailored Resume

Cover Letter