Apply

Ready to go for it?

AI Apply speeds things up—apply directly if you prefer.

FREE ACCESS
5,000–10,000 jobs/day
Scoutfield Logo

See all jobs on Scoutfield

Search thousands of fresh jobs every day.

Discover
  • Fresh listings
  • Fast filters
  • No subscription required
Create a free account and start exploring right away.
Anthology Inc

Director – Governance, Risk and Compliance

Anthology Inc

. Lead efforts to assess the confidentiality, integrity, and availability of information through the company’s global ISMS framework .

Posted 9/23/2026full-timeRemote • United StatesLead💰 $154,000 - $209,000 per yearWebsite

Core Competencies

Role fit
Core Competencies

Use this summary to align your resume positioning with the role.

Demonstrates expertise in managing information security frameworks, including ISMS documentation and compliance with regulatory standards. Proficient in risk assessment, vendor management, and leading security initiatives while ensuring effective communication with senior management.

Highest-signal resume keywords
ISMS Documentation ManagementISO27000 Series UnderstandingCISA, CISM, CISSP CertificationIT Audit and Compliance ExperienceVendor Risk Assessment

ATS Keywords

Tailor your resume
Applicant Tracking System Keywords

Tip: use these terms in your resume and cover letter to boost ATS matches.

Hard Skills
Information Security ManagementRisk AssessmentSecurity Control DesignCompliance MonitoringIncident Response ManagementProject ManagementCloud ImplementationData Privacy LawsIdentity and Access ManagementSecurity Policy Development
Soft Skills
Strong Communication SkillsMentoringCollaborationDocumentation SkillsOrganizational Skills
Tools & Technologies
ISO/SOC AuditsFedRAMPGovRAMPIL-4 ProgramsCloud InfrastructureNetwork Technologies
Certifications & Qualifications
CISACISMCISSP
Industry Keywords
Information SecurityCompliance RequirementsSecurity ThreatsThird-Party ComplianceBusiness Continuity Management

Tech Stack

Tools & technologies
Cloud

About the role

Key responsibilities & impact
  • Lead efforts to assess the confidentiality, integrity, and availability of information through the company’s global ISMS framework
  • Develop and maintain ISMS documentation, including policies, standards, and procedures
  • Recommend security program alignment with compliance requirements to the CISO, Product Management, Legal, and Finance leadership teams
  • Manage information risk and collaboratively design and assess information security controls, including identity and access management
  • Monitor regulatory environments, security threats, and compliance best practices; update policies and procedures
  • Maintain and improve organizational information security awareness
  • Translate business and information security needs into the ISMS
  • Coordinate external audits with 3PAO, ISO/SOC auditors, PCI DSS QSA firms, and other assessors
  • Coordinate audit responses and remediation efforts
  • Conduct vendor risk assessments and ensure third-party compliance with security and privacy standards
  • Review and monitor Security Incident Response and Business Continuity Management activities
  • Measure ISMS control effectiveness and communicate findings to senior management
  • Enforce document control management processes for the ISMS
  • Assist with forecasting, planning, and risk assessment aligned with technology strategy
  • Maintain industry knowledge and recommend new technologies
  • Manage projects, including requirements analysis, project planning, and completion tracking
  • Assist with vendor management, forecasting, and program budget management
  • Manage personnel through mentoring and cross-training

Requirements

What you’ll need
  • US Citizenship
  • 10+ years of hands-on experience in IT audit and/or compliance
  • Strong documentation and communication skills
  • Strong understanding of ISO27000 series, NIST Special Publication 800 series, SOC audits, and security requirements of Data Privacy laws
  • Previous experience gaining an ATO or P-ATO for a cloud implementation under FedRAMP, GovRAMP, or IL-4 programs
  • Understanding of software development lifecycle methodologies, cloud and server infrastructure, and network technologies
  • Experience managing security staff and collaborating with global teams
  • Fluency in written and spoken English
  • Current CISA, CISM, CISSP, or equivalent certification strongly preferred
  • Must be legally authorized to work in the country where the role is based
  • Must maintain work authorization for the duration of employment
  • No visa sponsorship or immigration support provided

Benefits

Comp & perks
  • Additional compensation such as company bonus or benefits
  • Equal employment opportunity/affirmative action protections