Position Details
About this role
Project Leo is hiring a Security Risk Management Specialist to drive regulatory and certification compliance for cyber and information security across Leo’s technology and infrastructure. The role includes assessing security process maturity, designing and executing compliance programs, and coordinating with external auditors for successful audit execution.
Key Responsibilities
- Assess compliance needs and maturity of processes and controls
- Design, build, and execute security or compliance programs
- Lead internal security and data usage assessments, investigations and security audits
- Develop risk management strategic control requirements and roadmaps
- Liaise with external auditors for successful audit executions
Technical Overview
Security GRC role focused on regulatory compliance, certification compliance, and audit readiness. Core work includes implementing NIST control frameworks, reviewing control activities, collecting evidence, performing security and data usage assessments/investigations, and managing identity and access management, insider threat, data protection, and third party risk topics.
Ideal Candidate
The ideal candidate is a mid-level security risk and compliance professional who has implemented NIST control frameworks and supported audits through evidence collection and control activity reviews. They can design and execute high-impact security compliance programs, collaborate across security and business teams, and effectively liaise with both external and internal stakeholders to meet regulatory and certification needs.
Must-Have Skills
Tools & Platforms
Required Skills
Hard Skills
Soft Skills
Industry & Role
Keywords for Your Resume
Deal Breakers
Must satisfy Export Control Requirement eligibility (U.S. citizen or national, U.S. permanent resident, refugee, or asylum) as stated
Get matched to jobs like this
Luna finds roles that fit your skills and career goals — no endless scrolling required.
Create a Free Profile