ISO 27001 Risk Management Director
Location: Remote
Compensation: Salary
Reviewed: Thu, Aug 27, 2026
This job expires in: 14 days
Job Summary
Owning the execution of critical governance, risk, and compliance initiatives, the full-time salaried ISO 27001 Risk Management Director will manage external auditor relationships, oversee SOC 1 and SOC 2 audits, and lead ISO 27001 certification efforts in a remote environment.
Key responsibilities
- Own end-to-end execution of SOC 1 and SOC 2 Type II audits, including scoping, evidence collection, and remediation tracking
- Lead the ISO 27001:2022 audit readiness and certification process, managing relationships and coordinating evidence
- Build and operate the enterprise risk register, conducting assessments and maintaining updates across business units
Required qualifications
- 8-12+ years of experience in GRC, IT audit, or enterprise risk management with direct ownership of SOC 1/SOC 2 audits
- ISO 27001 Lead Implementer certification with credentialed implementation experience
- Working knowledge of SOX ITGC requirements in a publicly traded company
- Experience building an enterprise risk register and KRI/KPI reporting framework for executive audiences
- Strong management of POA&M and remediation lifecycle across cross-functional teams
Complete Job Description
The complete job description is available to members. Premium membership includes:
Full access to 41,015 remote jobs from human-vetted companies, updated daily
Resume Builder - AI-powered tool to craft, enhance, and tailor your resume to a specific job
Twice-monthly live group coaching and the full Remote Career Center
20% member discount on Career Services
Backed by a 30-day money-back guarantee