Principal - GRC Advisory

March 18

Apply Now
Logo of Coalfire

Coalfire

Coalfire is a cybersecurity services provider that helps businesses improve their security resilience and streamline regulatory compliance. The company offers expert-led services, including threat-focused cybersecurity programs, compliance automation, risk management, and security advisory services across various industries such as financial services, healthcare, retail, and technology. Coalfire is known for its hacker and defender expertise, and its platforms are designed to fortify clients' cyber resilience, reduce attack surfaces, and accelerate the achievement of compliance objectives like FedRAMP and HITRUST.

IT Audits and Risk Asessments • Penetration Testing • PCI-DSS / PA-DSS Compliance Assessments • HIPAA / HITECH / HITRUST Assessments • FFIEC Controls Assessments

1001 - 5000 employees

Founded 2001

🔒 Cybersecurity

📋 Compliance

🏢 Enterprise

📋 Description

• Coalfire is on a mission to make the world a safer place by solving clients’ hardest cybersecurity challenges. • Work at the cutting edge of technology to advise, assess, automate, and navigate the ever-changing cybersecurity landscape. • As a Principal Consultant on the ISO/SOC Advisory team, you'll serve as a Compliance Advisory subject matter expert (SME). • Evaluate and enhance security of complex systems impacting risk and compliance for organizations. • Mentor and develop team members to help grow their capabilities. • Engage outwardly into the community through blog posts, technical white papers, and conference speaking engagements.

🎯 Requirements

• 7+ years of experience in an IT security audit, assessment, compliance, risk management, or data privacy role. • Knowledge and awareness of the latest information risk, security and compliance innovations, trends, challenges and solutions. • Knowledge of strategy, privacy and risk standards/frameworks and professional practices (NIST, ISO, CIS Top 20, ISSA, CSA CMM, Privacy by Design and FAIR, etc.). • Knowledge of the typical enterprise risk and security operational practices. • Knowledge of information security related solutions, tools and utilities. • Experience in strategy development, setting direction for team members, influencing both internally and externally. • Experience building common compliance frameworks as well as mapping between different compliance requirements. • Demonstrated breadth of security expertise in various sub domains such as encryption, identity, incident response, etc. • Hands-on technical expertise is nice to have due to the technical components of the frameworks that are worked with. • Experience with risk assessment methodologies and risk reporting for executive leadership. • Proven background in clearly writing complex technical documents that can be presented across a varied enterprise corporate audience. • 7+ years of experience working with one or more of the following: • Payment Card Industry (PCI) Council's Payment Card Industry Data Security Standard (PCI DSS) • ISO/IEC 27001:2022 • ISO 9001:2015 • System and Organization Controls (SOC) 2 • National Institute of Standards and Technology (NIST) frameworks (800 series) • HITRUST framework • Health Insurance Portability and Accountability Act (HIPAA) • Health Information Technology for Economic and Clinical Health Act (HITECH) • Bachelor's Degree in Computer Science, Information Systems Management, Information Security, Business or equivalent experience required. • CISSP • CISM or CISA • In addition, dependent on the framework(s) you will be supporting you must have one or more of the following: • ISO: ISO/IEC 27001 Lead Auditor/Implementer • Certified CSF Practitioner (CCSFP) • PCI: Qualified Security Assessor (QSA)

🏖️ Benefits

• Paid parental leave • Flexible time off • Certification and training reimbursement • Digital mental health and wellbeing support membership • Comprehensive insurance options

Apply Now

March 15

Key member of the Compliance team ensuring adherence to healthcare regulations at Honest Health. Play a central leadership role in compliance initiatives.

March 15

CREO

51 - 200

Lead a team delivering GxP Quality and Regulatory consulting services across Life Sciences. Manage staff, client relations, and business development.

March 15

Ledger

501 - 1000

Manage regulatory issues and influence favorable policies for digital assets in North America.

March 14

Ledger

501 - 1000

Manage regulatory issues and compliance for Ledger's business in the Americas, focusing on digital assets.

March 13

Seeking a Principal Regulatory Affairs Specialist to navigate regulatory requirements for medical devices. Join Johnson & Johnson in developing innovative healthcare solutions.

🇺🇸 United States – Remote

💵 $105k - $194.3k / year

💰 Pre Seed Round on 2022-03

⏰ Full Time

🔴 Lead

🚔 Compliance

Discover 100,000+ Remote Jobs!

Join now to unlock all jobs

Discover hidden jobs

We scan the internet everyday and find jobs not posted on LinkedIn or other job boards.

Head start against the competition

We find jobs within 24 hours of being posted, so you can apply before everyone else.

Be the first to know

Daily emails with new job openings straight to your inbox.

Choose your membership

Cancel anytime

Loved by 10,000+ remote workers

Wall of Love

Frequently asked questions

We use powerful scraping tech to scan the internet for thousands of remote jobs daily. It operates 24/7 and costs us to operate, so we charge for access to keep the site running.

Of course! You can cancel your subscription at any time with no hidden fees or penalties. Once canceled, you’ll still have access until the end of your current billing period.

Other job boards only have jobs from companies that pay to post. This means that you miss out on jobs from companies that don't want to pay. On the other hand, Remote Rocketship scrapes the internet for jobs and doesn't accept payments from companies. This means we have thousands more jobs!

New jobs are constantly being posted. We check each company website every day to ensure we have the most up-to-date job listings.

Yes! We’re always looking to expand our listings and appreciate any suggestions from our community. Just send an email to Lior@remoterocketship.com. I read every request.

Remote Rocketship is a solo project by me, Lior Neu-ner. I built this website for my wife when she was looking for a job! She was having a hard time finding remote jobs, so I decided to build her a tool that would search the internet for her.

Why I created Remote Rocketship

Choose your membership

Cancel anytime

Loved by 10,000+ remote workers
Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or lior@remoterocketship.com