GRC, Privacy & AI Governance Consultant
Listed on 2026-09-12
-
IT/Tech
Cybersecurity, Information Security & Data Protection, IT Consultant, IT Business Analyst
Command Post | Cybersecurity, GRC & AI Governance
Command Post is expanding its cybersecurity and governance capabilities and is looking for a GRC, Privacy & AI Governance Consultant to join our growing team.
This is a hands‑on, customer‑facing role supporting the delivery and continued development of the Command Post (CP) platform, with particular focus on GRC, Privacy, AI Governance / AI Ops, presales and platform support.
We are looking for someone who understands governance and compliance in practice — not simply someone who can quote frameworks. You should be comfortable working with customers to understand their requirements, translate them into controls and workflows, configure technology to support them, and demonstrate how governance can become an operational capability rather than a spreadsheet exercise.
What you'll be doing GRC & Risk- Support implementation and configuration of CP's GRC capabilities.
- Work with customers on risk registers, controls, assessments, exceptions, remediation and compliance programmes.
- Support implementation and mapping of frameworks including ISO 27001, ISO 42001, NIST CSF and other regional/international standards.
- Help customers link assets, vulnerabilities, risks, controls, exceptions and remediation activities into an integrated governance process.
- Assist with third‑party risk, compliance evidence and audit‑readiness activities.
- Support deployment and operation of CP privacy capabilities.
- Assist customers with privacy assessments, data inventories, processing activities, consent and governance workflows.
- Support requirements associated with applicable privacy and data‑protection regulations.
- Help translate privacy obligations into practical technical and operational controls.
- Support customers adopting governance for AI, LLM and machine‑learning environments.
- Assist with ISO 42001, AI risk assessments, AI inventories, control implementation and evidence management.
- Support the development of CP's emerging AI Ops / AI governance services, including monitoring, governance, assurance and operational oversight of enterprise AI.
- Work with technical teams to translate AI risks and governance requirements into measurable controls.
- Participate in customer workshops, demonstrations and discovery sessions.
- Understand customer challenges and map CP capabilities to their requirements.
- Support proposals, RFP/RFI responses, solution designs and proof‑of‑concepts.
- Deliver clear and credible demonstrations of GRC, Privacy and AI Governance capabilities to both technical and business stakeholders.
- Support onboarding, configuration and ongoing operation of customer environments.
- Investigate functional issues and coordinate resolution with engineering teams.
- Participate in UAT and validation of new platform capabilities.
- Capture customer requirements and provide structured feedback into the CP product roadmap.
- Help develop implementation guides, customer documentation, use cases and training material.
We are particularly interested in candidates with experience across several of the following areas:
- GRC, cybersecurity governance, risk or compliance
- ISO 27001 implementation or auditing
- ISO 42001 / AI governance
- NIST CSF or similar cybersecurity frameworks
- Privacy and data‑protection programmes
- Risk assessments and control implementation
- Audit and compliance evidence management
- Customer‑facing cybersecurity consulting
- SaaS or cybersecurity platform implementation
- Technical presales and solution demonstrations
You do not need to be a software developer, but you should be technically comfortable and able to work effectively with cybersecurity engineers, developers and customer technical teams.
Experience with AI governance,…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).