Talent.com
Grant Thornton
Director, Information Security Audit & Compliance (Global)Grant Thornton • Columbia, SC, United States
No longer accepting applications
Director, Information Security Audit & Compliance (Global)

Director, Information Security Audit & Compliance (Global)

Grant Thornton • Columbia, SC, United States
30+ days ago
Salary
$172,000.00–$258,000.00 yearly
Job type
  • Full-time
Job description

Grant Thornton is seeking a Director of Information Security Audit & Compliance to join the team. Approved office locations can be found below.

We are seeking a Director of Information Security Audit & Compliance to lead and scale a global audit and compliance practice. This role will be responsible for establishing global delivery centers, managing internal and external audits, and ensuring the information security program is governed through a consistent, defensible framework aligned to NIST CSF and NIST 800-53.

The ideal candidate combines deep audit and regulatory expertise with strong operational leadership, enabling the organization to meet regulatory, client, and certification requirements while supporting business growth and innovation.

Key Responsibilities

Audit & Compliance Strategy

  • Define and lead the global information security audit and compliance strategy across the enterprise.
  • Establish and scale global delivery centers to support audits, evidence management, and continuous compliance operations.
  • Own the audit calendar and roadmap for ISO, NIST-based, HIPAA, and client-driven audits.

Audit Management & Execution

  • Lead enterprise-wide audits and assessments including ISO 27001, NIST, HIPAA, and client-specific security audits.
  • Act as the primary point of contact for external auditors, regulators, and client assessors.
  • Ensure timely, high-quality audit deliverables, responses, and remediation plans.

Governance, Risk & Control Framework

  • Align the information security governance program to NIST Cybersecurity Framework (CSF) and NIST 800-53.
  • Develop, maintain, and mature security policies, standards, and control frameworks.
  • Ensure controls are consistently implemented, tested, and evidenced across global teams.

Continuous Compliance & Control Assurance

  • Establish processes for continuous control monitoring, internal testing, and readiness assessments.
  • Track audit findings, remediation efforts, and risk acceptances through closure.
  • Partner with technology, security, and business teams to remediate gaps and strengthen control effectiveness.

Client & Regulatory Engagement

  • Support client due diligence, RFP security responses, and client-led audits.
  • Translate technical and control-based requirements into clear, business-aligned commitments.
  • Build trust with clients by demonstrating a mature, transparent compliance posture.

Leadership & Global Team Development

  • Build, lead, and mentor a globally distributed team of audit and compliance professionals.
  • Define roles, responsibilities, career paths, and training for audit and compliance staff.
  • Foster strong collaboration with security engineering, IT, legal, privacy, and risk teams.

Required Qualifications

  • 12+ years of experience in information security, audit, or compliance, with 5+ years in senior leadership roles.
  • Deep hands-on experience leading ISO 27001, 27701, 27017, NIST, HIPAA, and client-driven security audits.
  • Strong expertise in NIST CSF and NIST 800-53 governance, control design, and assessment.
  • Proven experience building or scaling global audit and compliance delivery models.
  • Strong understanding of information security controls, risk management, and regulatory expectations.
  • Excellent communication skills with the ability to engage executives, auditors, and clients.

Preferred Qualifications

  • Experience operating in global, highly regulated environments.
  • Familiarity with SOC 1 / SOC 2, cloud compliance, and third-party risk assessments.
  • Experience implementing GRC tooling to support audit and compliance workflows.
  • Professional certifications such as CISSP, CISA, CRISC, CISM, ISO 27001 Lead Auditor, or equivalent.

The base salary range for this position is between $172,000 and $250,000. Placement within the pay range is at Grant Thornton’s discretion, and it is based on multiple factors, including but not limited to, job-related knowledge/skills, experience, business needs, progression within the role, geographic location, and internal equity. At Grant Thornton, compensation decisions are dependent upon the facts and circumstances of each position and candidate.

Create a job alert for this search

Director, Information Security Audit & Compliance (Global) • Columbia, SC, United States

Similar jobs

Manager, Compliance and Risk

The Nuclear CompanyColumbia, SC, United States
Full-time

The Nuclear Company is the fastest growing startup in the nuclear and energy space creating a never before seen fleet-scale approach to building nuclear reactors.Through its design-once, build-many... Show more

 • Promoted

Director of Enterprise Project Portfolio Management

AgFirstColumbia, SC, United States
Full-time

Job DescriptionDirector of Enterprise Project Portfolio Management (Hybrid - Columbia, SC)The Director of Enterprise Project Portfolio Management (EPPM) leads the strategy, governance, and executio... Show more

 • Promoted

100% Remote position - IAM Security Architect - Only W2 candidates.

SCS TechColumbia, SC, United States
Remote
Full-time

Hi candidates, This position is only for W2 candidates, C2C or 1099 is acceptable for this position.I've a 100% Remote position, please find the below JD and if you feel you're qualified with the r... Show more

 • Promoted

Compliance Assistance Project Manager

Syntricate TechnologiesColumbia, SC, United States
Full-time

Compliance Assistance Project Manager.Under limited supervision, the Compliance Assistance Project Manager manages and coordinates all tasks associated with establishing the Office of Compliance As... Show more

 • Promoted

Internal Auditor, Corporate Quality (Remote US)

Getinge ABBlythewood, SC, United States
Remote
Full-time

Internal Auditor, Corporate Quality (Remote US)Join our diverse teams of passionate people and a career that allows you to develop both personally and professionally.At Getinge we exist to make lif... Show more

 • Promoted

Vice President, Risk, Safety, Compliance, Hospital

Southern Medical RecruitersColumbia, SC, United States
Full-time

Vice President, Risk, Safety, Compliance, Hospital.Clients are general acute care hospitals nationwide.Southern Medical Recruiters is a healthcare/hospital recruitment organization with hospitals c... Show more

 • Promoted

Director of ABA Services

ABS KidsColumbia, SC, United States
Full-time

The role of the Director of ABA Services is to perform consultant tasks at an exceptional level, provide clinical and professional guidance to direct care staff, lead staff, and Behavior Analysts, ... Show more

 • Promoted

Security Architect - ONLY W2 - 100% REMOTE

Information Resource Group, Inc.Columbia, SC, United States
Remote
Full-time

Title:Security Architect (ONLY W2) Duration:12 Months (Possibility of extension) Location:100% REMOTE No.Hours/Week:40 Position Overview The Security Architect Consultant will work as a Security Id... Show more

 • Promoted

SOX Auditor III

MindlanceColumbia, SC, United States
Full-time

Remote within SC - MUST be available to go onsite once in a while as per business need.Preferably local, but if not, close enough that if needed to meet with business areas, they could come to the ... Show more

 • Promoted

Director of Operations

Bonitz, IncColumbia, SC, United States
Full-time

Under the direction of the Regional Director of Operations (RDO), oversees the operational segment (Production Managers, Project Managers, Project Specialists, Estimators, Warehouse) of an individu... Show more

 • Promoted

VP, Quality Improvement Director, Risk Management, RN, BSN

Southern Medical RecruitersColumbia, SC, United States
Full-time

VP, Quality Improvement Director, Risk Management, RN, BSN.Southern Medical Recruiters is a healthcare/hospital recruitment organization with clients nationwide.Clients are general acute care hospi... Show more

 • Promoted

Security Architect - Advanced

Staffing the UniverseColumbia, SC, United States
Full-time

Security ArchitectLocation:Columbia SC On-site/Remote/Hybrid:Onsite (1st Month, Later 3 days onsite) Duration:12 Months Note:Work Location:Hybrid - the first month will be fully onsite (5 days/week... Show more

 • Promoted

Information Systems Architect - Consultant - Remote position - Only W2 candidates.

SCS TechColumbia, SC, United States
Remote
Full-time

Hi Candidates, I've a below position, if you're qualified then share resume to vikas@scstech.Job Title:Information Systems Architect - Consultant Client:State of South Carolina Wok location:Columbi... Show more

 • Promoted

Project Manager Consultant (Cybersecurity Initiatives)

Staffing the UniverseCayce, SC, United States
Full-time

Project Manager Consultant (Cybersecurity Initiatives)Location:Cayce, SC 29033 100% Remote (Must be a current South Carolina resident)Duration:12 Months (Possible Extension)Work Hours:Monday Friday... Show more

 • Promoted

Director Regulatory Compliance and BSA/AML

Elliott DavisColumbia, SC, United States
Full-time

Elliott Davis pairs forward-thinking tax, assurance and consulting services with industry-leading workplace culture.Our nine offices located in the fastest growing cities in the US are built on a f... Show more

 • Promoted

Project Manager Advanced (Accessibility Compliance Program)

KaavColumbia, SC, United States
Full-time

Project Manager Advanced (Accessibility Compliance Program).Location: Columbia, SC (Hybrid 2 Days Onsite / Week) Work Address: 1201 Main Street, Suite 600, Columbia, SC 29201 Start Date: 05/25/20... Show more

 • Promoted

Federal Capture Director (Contract) - Columbia, SC

The Wilkinson FirmColumbia, SC, United States
Part-time

Independent Consultant Opportunity.Engagement type: Independent consultant, 1099 hourly.Rate range: $100 - $500 per hour, based on experience and scope (three-tier band detailed below).Time commitm... Show more

 • Promoted

Associate Corporate Security Analyst

LanceSoftCayce, SC, United States
Full-time

Security Operations Specialist.Length of Assignment: 12 months assignment with possible of extension.What schedule is the candidate required to work: The candidate will work a 12-hour dayshift sche... Show more

 • Promoted

IAM Security Architect REMOTE

vTech SolutionColumbia, SC, United States
Remote
Full-time

Security Architect - Consultant (IAM & Automation) Location:100% Remote Job Type:Contract (12 months, with possible extension) Job Summary We are seeking an experienced Security Architect - Consult... Show more

 • Promoted

Senior Consultant - Offensive Security

EYColumbia, SC, United States
Full-time

At EY, we're committed to empowering you to shape your future with confidence.Join us to thrive in a dynamic environment where your career can take any direction you desire while contributing to bu... Show more