Description
The role is responsible for developing and maintaining information security policies, standards, procedures, and governance structures; supporting enterprise risk assessments and risk treatment; ensuring compliance with laws, regulations, and contractual requirements; coordinating audits and remediation; maintaining security KPIs, KRIs, and management reports; overseeing third-party vendor security controls; and driving continuous improvement. The position requires a bachelor’s degree in a relevant field and 5–9 years of information security governance, risk, and compliance experience, including hands-on framework implementation and audit experience.
