Senior GRC Expert
Listed on 2026-05-30
-
IT/Tech
Cybersecurity, Information Security, Data Security
Job Details
Job Title:
Senior GRC Expert (Information Security)
Position Type:
Individual Contributor
Reporting To:
Director, Governance, Risk, and Compliance (GRC)
Department:
Information Security
Location:
Austin, Texas (in office 2x a week)
The Senior GRC Expert is a key contributor within Forcepoint’s GRC team. As part of the Information Security organization, this role focuses on ensuring alignment with compliance frameworks, regulatory requirements, industry standards, and internal security policies with a focus on enablement through scalable, automated, and audit‑ready compliance operations.
Key Responsibilities- Serve as the subject‑matter expert for information security compliance programs to support existing and new certifications, attestations, and self‑assessment requests.
- Plan and manage internal and external audits for ISO (27001, 27017, 27018, 27701) and SOC 2.
- Design, implement, and maintain security controls mapped to corporate policies and control frameworks (ISO, SOC 2, CIS, NIST
800‑53, NIST CSF, ITGC, etc.). - Own daily administration of the GRC compliance platform, including control monitoring, evidence management, and audit workflows.
- Partner with cross‑functional teams to ensure controls are operating effectively and evidence is collected consistently.
- Track, report, and present compliance metrics and key risk indicators (KRIs) to leadership.
- Conduct annual reviews and updates of information security policies, standards, and procedures.
- Support compliance with security‑related awareness and training programs focused on onboarding, annual training, and policy acknowledgments.
- Respond to customer security questionnaires and documentation requests.
- Support compliance‑related risk assessments, policy exception requests, and remediation planning.
- Coordinate with security and business teams to close compliance gaps and improve the company security posture.
- Provide support for business continuity and disaster recovery (BC/DR) governance and compliance activities.
- Establish strong, trusted partnerships with internal stakeholders across business and technical teams.
- Educate and assist stakeholders responsible for supporting compliance controls to ensure engagement and alignment.
- Improve efficiency and maturity of GRC processes through automation and tooling.
- Achieve successful, timely completion of audits and certifications.
- Demonstrate measurable progress in GRC program maturity and transformation initiatives.
- Bachelor’s degree preferred, or equivalent education and experience.
- 5+ years of experience in information security or GRC; 3+ years in a cloud product environment preferred (ideally AWS).
- Demonstrated experience leading ISO and SOC2 audits.
- Strong knowledge of security frameworks and controls (e.g., ISO
27001, SOC2, CIS, NIST
800‑53) and the ability to support additional compliance framework requests. - Ability to communicate security requirements clearly across all levels of the organization.
- Experience defining, reporting, and presenting risk metrics and KRIs.
- Industry certifications (e.g., CISSP, CISM, GIAC) are a plus.
- Collaborative, detail‑oriented, and comfortable driving change through influence.
Salary range: $ – $ (variable compensation included). The range represents the low and high end of compensation for this position and is one component of the total compensation package, which may also include bonuses, paid time off, and other region‑specific benefits.
Flexibility to support occasional off‑hours work during audits or critical business needs is required.
Equal Employment OpportunityForcepoint is committed to equal employment opportunities for all applicants and employees without regard to race, color, creed, religion, sex, sexual orientation, gender identity, marital status, citizenship status, age, national origin, ancestry, disability, veteran status, or any other legally protected status. Forcepoint confirms its dedication to advancing the principles of equal employment opportunity.
Forcepoint is committed to providing reasonable accommodations for applicants with disabilities. Accommodation requests may be sent to Forcepoint, as a federal contractor, complies with all applicable export and defense regulations. Applicants must be U.S. persons as required by regulation.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).