One Identity enables organizations of all sizes to better secure, manage, monitor, protect, and analyze information and infrastructure to help fuel innovation and drive their businesses forward. With team members around the globe, we intend to continue to grow revenues and add value to customers. Life at One Identity means collaborating with dedicated professionals with a passion for technology. When we see something that could be improved, we get to work inventing the solution. Our people demonstrate our winning culture through positive and meaningful relationships. We invest in our people and offer a series of programs that enable them to pursue a career that fulfills their potential. Our team members’ health and wellness are our priority, as well as rewarding them for their hard work.
Senior Advisor, Information Security Governance, Risk & Compliance
Location
United States
Posted
45 days ago
Salary
Not specified
No structured requirement data.
Job Description
Role Description
We are seeking a strategic GRC leader who can translate complex regulatory frameworks into actionable, scalable practices. This role drives continuous compliance, leads ISO 27001 and SOC 2 audits, and partners across the organization to embed security and privacy into business processes. The ideal candidate is a thought leader in compliance maturity, adept at leveraging automation and analytics to reduce risk and improve resilience.
Responsibilities
-
Governance
- Develop and maintain IT security and privacy policies aligned with global standards.
- Deliver engaging compliance training (New Hire Orientation, Privileged Access, Annual Security Awareness).
- Champion a culture of security and compliance across all business units.
-
Risk Management
- Conduct enterprise-wide IT risk assessments and recommend mitigation strategies.
- Mature insider threat and third-party risk programs.
- Collaborate on investigations (legal hold, eDiscovery) and ensure secure data handling.
- Maintain and enhance risk registers, ensuring timely reviews and updates.
-
Compliance
- Lead audits and assessments for ISO 27001, SOC 2, and NIST CSF.
- Implement and monitor controls across multiple frameworks (ISO, NIST, GDPR, SOC 2).
- Stay ahead of emerging regulations (AI governance, global privacy laws).
- Drive adoption and optimization of GRC platforms for automation and reporting.
- Partner with IT and business teams to ensure compliance in cloud and SaaS environments.
-
Strategic Initiatives
- Contribute to the GRC roadmap, aligning with business objectives and regulatory trends.
- Leverage analytics and automation to streamline compliance processes.
- Monitor emerging risks (AI, supply chain, privacy) and advise leadership on proactive measures.
Qualifications
- 4+ years in IT GRC, security, privacy, or audit roles.
- Hands-on experience with GRC tools and frameworks (ISO, NIST CSF, GDPR, SOC 2).
- Strong understanding of cloud security and SaaS compliance.
- Excellent communication and stakeholder engagement skills.
Preferences
- Bachelor’s degree in Information Security, Risk Management, or related field.
- Certifications: CISA, CRISC, CISSP, CISM, CIPP/US/EU (or ability to obtain within 12 months of hire).
- Experience in control mapping and automation across frameworks.
- Familiarity with AI governance and emerging regulatory requirements.
Company Description
One Identity enables organizations of all sizes to better secure, manage, monitor, protect, and analyze information and infrastructure to help fuel innovation and drive their businesses forward. With team members around the globe, we intend to continue to grow revenues and add value to customers.
- When you join our team, you will have the opportunity to build and develop products at a scale few others can provide.
- Our product portfolio serves a large base of customers, and we are addressing the strategic imperatives for enterprise businesses.
- Working with some of the most talented employees the industry has to offer, we provide enhanced career opportunities for team members to learn and grow in a rapidly changing environment.
Benefits
- Life at One Identity means collaborating with dedicated professionals with a passion for technology.
- When we see something that could be improved, we get to work inventing the solution.
- Our people demonstrate our winning culture through positive and meaningful relationships.
- We invest in our people and offer a series of programs that enable them to pursue a career that fulfills their potential.
- Our team members’ health and wellness are our priority, as well as rewarding them for their hard work.
Job Requirements
- 4+ years in IT GRC, security, privacy, or audit roles.
- Hands-on experience with GRC tools and frameworks (ISO, NIST CSF, GDPR, SOC 2).
- Strong understanding of cloud security and SaaS compliance.
- Excellent communication and stakeholder engagement skills.
- Preferences
- Bachelor’s degree in Information Security, Risk Management, or related field.
- Certifications: CISA, CRISC, CISSP, CISM, CIPP/US/EU (or ability to obtain within 12 months of hire).
- Experience in control mapping and automation across frameworks.
- Familiarity with AI governance and emerging regulatory requirements.
Benefits
- Life at One Identity means collaborating with dedicated professionals with a passion for technology.
- When we see something that could be improved, we get to work inventing the solution.
- Our people demonstrate our winning culture through positive and meaningful relationships.
- We invest in our people and offer a series of programs that enable them to pursue a career that fulfills their potential.
- Our team members’ health and wellness are our priority, as well as rewarding them for their hard work.
Related Guides
Related Categories
Related Job Pages
More Security Analyst Jobs
Senior Cyber Threat Intelligence Analyst
Control RisksThe global specialist risk consultancy - Helping organisations succeed in a volatile world
Senior Cyber Threat Intelligence Analyst implementing defense strategies against cyber threats
Principal Specialist, SAP Security Analyst handling ERP security design and implementation
Threat Intelligence Analyst, Quantitative Methods
MoonshotSocial enterprise working to end online harms, applying evidence, ethics and human rights.
Analyst delivering threat intelligence reports monitoring targeted violence in the US
Senior Product Security Analyst
Omilia - Conversational IntelligenceOmilia is the leading provider of Natural Language Understanding enabled IVR & natural dialogue interaction solutions.
Senior Product Security Analyst ensuring security across product lifecycle.