We're looking for someone who has actually done this not just advised on it. You'll be the person who walks into a client's organization, assesses where they stand, and gets them to ISO 27001 and/or SOC 2 compliance. No hand-holding, no micromanagement.
What You'll Do
- Lead end-to-end ISO 27001 ISMS implementation for clients
- Conduct gap assessments, risk assessments and control design for SOC 2
- Write and implement security policies, procedures and controls
- Manage client stakeholders CISOs, IT heads, compliance teams
- Coordinate with external auditors to get clients across the finish line
- Support proposal writing and client scoping when needed
What We're Looking For
- 3+ years in GRC / Information Security compliance
- Hand-on experience delivering ISO 27001 and/or SOC 2 implementations
- Background from Big 4/5 or reputed consulting firm strongly preferred
- Certified ISO 27001 Lead Implementer (PECB or BSI) must have
- CISA, CISSP or CISM is a plus
- Robust client communication skills roles and responsibilities
Important
Please apply only if you have personally delivered ISO 27001 and/or SOC 2 implementation projects for clients.