Overview
In this role you will lead the Information Security program to ensure regulatory compliance and client trust. You will implement and maintain ISO 27001 aligned policies and support SOC2 readiness, audits, and certifications. Partner with internal teams to address security concerns and provide guidance to staff. You will also serve as the primary liaison for client audits and security inquiries, driving continuous improvement in governance and risk management.
Responsibilities
- Develop and maintain compliance policies and procedures per ISO 27001; SOC2 knowledge is a plus
- Run audits and assessments to sustain certifications
- Serve as main point of contact for client audit requirements and security inquiries
- Collaborate with internal teams to implement corrective actions
- Monitor compliance metrics and report trends to leadership
- Provide training on compliance across the organization
- Stay updated on regulations and best practices
Key requirements
- Bachelor
- Minimum 5 years in a compliance role within the financial industry
- In-depth knowledge of ISO 27001 standards and requirements
- Proven client-facing communication and interpersonal skills
- Strong analytical and problem-solving abilities
- Ability to work independently and in a team
- Professional certifications such as CISA, CISM, CISSP or similar are a plus
- client-facing communication
- interpersonal skills
- analytical thinking
- ISO 27001 knowledge
- SOC2 awareness (beneficial)
- compliance audits and reporting
…
