Senior Information Security Manager (GRC)
Core
Own and continuously improve the Information Security Management System (ISMS) and risk program for a global AI translation platform, ensuring alignment with ISO 27001, SOC 2 Type II, and other frameworks while enabling fast-moving product teams.
Role type
Senior Information Security Manager (GRC)
Builds
Secure, compliant AI translation products for global business customers
Domain
AI/ML, Cybersecurity, Compliance
Deliverable
production ML models | dashboards & analysis
Required skills
ISO 27001, SOC 2 Type II, HIPAA, BSI C5, GRC automation tooling (Vanta), risk assessment, stakeholder management, regulatory tracking
Preferred skills
SaaS scale-up experience, evidence ownership model design, calculated risk-taking
Technologies
Vanta, GRC tooling
Responsibilities
Own and mature the ISMS and risk register; act as a hands-on participant in audits; assess risk pragmatically to unblock product teams; partner with engineering and product to embed security requirements; report on program state to leadership
Seniority
Senior, hands-on IC
