Talent.com
Grant Thornton
Director, Information Security Audit & Compliance (Global)Grant Thornton • San Francisco, CA, United States
No longer accepting applications
Director, Information Security Audit & Compliance (Global)

Director, Information Security Audit & Compliance (Global)

Grant Thornton • San Francisco, CA, United States
30+ days ago
Salary
$172,000.00–$258,000.00 yearly
Job type
  • Full-time
Job description

Grant Thornton is seeking a Director of Information Security Audit & Compliance to join the team. Approved office locations can be found below.

We are seeking a Director of Information Security Audit & Compliance to lead and scale a global audit and compliance practice. This role will be responsible for establishing global delivery centers, managing internal and external audits, and ensuring the information security program is governed through a consistent, defensible framework aligned to NIST CSF and NIST 800-53.

The ideal candidate combines deep audit and regulatory expertise with strong operational leadership, enabling the organization to meet regulatory, client, and certification requirements while supporting business growth and innovation.

Key Responsibilities

Audit & Compliance Strategy

  • Define and lead the global information security audit and compliance strategy across the enterprise.
  • Establish and scale global delivery centers to support audits, evidence management, and continuous compliance operations.
  • Own the audit calendar and roadmap for ISO, NIST-based, HIPAA, and client-driven audits.

Audit Management & Execution

  • Lead enterprise-wide audits and assessments including ISO 27001, NIST, HIPAA, and client-specific security audits.
  • Act as the primary point of contact for external auditors, regulators, and client assessors.
  • Ensure timely, high-quality audit deliverables, responses, and remediation plans.

Governance, Risk & Control Framework

  • Align the information security governance program to NIST Cybersecurity Framework (CSF) and NIST 800-53.
  • Develop, maintain, and mature security policies, standards, and control frameworks.
  • Ensure controls are consistently implemented, tested, and evidenced across global teams.

Continuous Compliance & Control Assurance

  • Establish processes for continuous control monitoring, internal testing, and readiness assessments.
  • Track audit findings, remediation efforts, and risk acceptances through closure.
  • Partner with technology, security, and business teams to remediate gaps and strengthen control effectiveness.

Client & Regulatory Engagement

  • Support client due diligence, RFP security responses, and client-led audits.
  • Translate technical and control-based requirements into clear, business-aligned commitments.
  • Build trust with clients by demonstrating a mature, transparent compliance posture.

Leadership & Global Team Development

  • Build, lead, and mentor a globally distributed team of audit and compliance professionals.
  • Define roles, responsibilities, career paths, and training for audit and compliance staff.
  • Foster strong collaboration with security engineering, IT, legal, privacy, and risk teams.

Required Qualifications

  • 12+ years of experience in information security, audit, or compliance, with 5+ years in senior leadership roles.
  • Deep hands-on experience leading ISO 27001, 27701, 27017, NIST, HIPAA, and client-driven security audits.
  • Strong expertise in NIST CSF and NIST 800-53 governance, control design, and assessment.
  • Proven experience building or scaling global audit and compliance delivery models.
  • Strong understanding of information security controls, risk management, and regulatory expectations.
  • Excellent communication skills with the ability to engage executives, auditors, and clients.

Preferred Qualifications

  • Experience operating in global, highly regulated environments.
  • Familiarity with SOC 1 / SOC 2, cloud compliance, and third-party risk assessments.
  • Experience implementing GRC tooling to support audit and compliance workflows.
  • Professional certifications such as CISSP, CISA, CRISC, CISM, ISO 27001 Lead Auditor, or equivalent.

The base salary range for this position is between $172,000 and $250,000. Placement within the pay range is at Grant Thornton’s discretion, and it is based on multiple factors, including but not limited to, job-related knowledge/skills, experience, business needs, progression within the role, geographic location, and internal equity. At Grant Thornton, compensation decisions are dependent upon the facts and circumstances of each position and candidate.

Create a job alert for this search

Director, Information Security Audit & Compliance (Global) • San Francisco, CA, United States

Similar jobs

Director, Compliance Risk

QcellsSan Francisco, CA, United States
Full-time

EnFin is a financial services company that provides financing for residential solar PV and energy efficiency upgrades, backed by Qcells.We are seeking a strategic, execution-oriented Director, Comp... Show more

 • Promoted

Senior Director, Product Security

DocuSignSan Francisco, CA, United States
Full-time

Senior Director, Product Security.As the most trusted brand in our industry, Docusign recognizes the profound importance of maintaining and enhancing customer trust in our products.The Senior Direc... Show more

 • Promoted

Senior Director, Product Compliance

FlexSan Francisco, CA, United States
Full-time

Senior Director, Product Compliance.New York, NY; Salt Lake City, UT; San Francisco, CA.Flex is a growth-stage, NYC headquartered FinTech company that is creating the best rent payment experience.I... Show more

 • Promoted

Sr. Director Information Technology

Institute on AgingSan Francisco, CA, United States
Full-time

IOA is on the forefront of revolutionary healthcare models, reshaping the way people can age in place.Our innovative models transform lives, enhance communities, and save healthcare systems million... Show more

 • Promoted

Head of IT & Security

NexHealthSan Francisco, CA, United States
Full-time

San Francisco, California, United States; Seattle, Washington, United States.Our healthcare system remains frustratingly analog.When you live in a world of one-tap car rides, instant meal delivery,... Show more

 • Promoted

Director of Internal Audit

RingCentralBelmont, CA, United States
Full-time

Reporting to the VP of Internal Audit, the Director of Internal Audit will lead the evolution of our global audit function, moving beyond traditional compliance to become a strategic advisor for ou... Show more

 • Promoted

Director, Global Compliance

Visa Inc.San Mateo, CA, United States
Full-time

About Us Visa is a world leader in payments technology, facilitating transactions between consumers, merchants, financial institutions and government entities across more than 200 countries and ter... Show more

 • Promoted

Senior Director, Compliance

GoFundMeSan Francisco, CA, United States
Full-time

GoFundMe is the world's most powerful community for good, dedicated to helping people help each other.By uniting individuals and nonprofits in one place, GoFundMe makes it easy and safe for people ... Show more

 • Promoted

Director of Global Security

VerkadaSan Mateo, CA, United States
Full-time

Verkada is transforming how organizations protect their people and places with an integrated, privacy-sensitive AI-powered platform that includes solutions for video security, access control, air q... Show more

 • Promoted

Associate Director, Enterprise Risk Management

The Clorox CompanyOakland, CA, United States
Full-time

Associate Director of Enterprise Risk Management (ERM).Clorox is the place that's committed to growth for our people and our brands.Guided by our purpose and values, and with people at the center ... Show more

 • Promoted

Senior Director, Security Engineering

RippleSan Francisco, CA, United States
Full-time

For positions that will be based in CA, the annual salary range for this position is below.Actual salaries may vary based on numerous factors including, among other things, an individual applicant'... Show more

 • Promoted

Director, Ecosystem Product Security

Stellar Development FoundationSan Francisco, CA, United States
Full-time

Director, Ecosystem & Product Security.Interested in working on cutting-edge blockchain technology and creating equitable access to the global financial system? Since 2014, the mission-driven team ... Show more

 • Promoted

Director of Governance, Risk, and Compliance

EliseAISan Francisco, CA, United States
Full-time

Director Of Governance, Risk, And Compliance (Grc).At EliseAI, we're improving the industries that matter most: housing and healthcare.Everyone needs a place to live and access to quality healthcar... Show more

 • Promoted

Head of Security & Privacy Engineering

Interface AISan Francisco, CA, United States
Full-time

Head Of Security & Privacy Engineering.AI and conversational AI and we're doing it in production, at scale, with real outcomes.A mission that matters: democratizing financial wellness for every Am... Show more

 • Promoted

Compliance Manager, Broker-Dealer & Investment Adviser

GustoSan Francisco, CA, United States
Full-time

Compliance Manager, Broker-Dealer & Investment Adviser.The Compliance Manager, Broker-Dealer & Investment Adviser is an essential member of the Gusto Retirement Compliance Team, reporting to the Co... Show more

 • Promoted

Director of Information Technology

Advantage GroupOakland, CA, United States
Full-time

Director Of Information Technology.Reporting directly to the executive leadership team, the Director of IT will be responsible for planning, directing and overseeing all aspects of the company's st... Show more

 • Promoted

Director of Information Governance

Lewis BrisboisSan Francisco, CA, United States
Full-time

Director Of Information Governance.The San Francisco, CA office of Lewis Brisbois, a full-service AmLaw 100 firm, is seeking a Director of Information Governance.The Director of Information Governa... Show more

 • Promoted

Director, R&D Information Systems

GileadSan Mateo, CA, United States
Full-time

Director, R&D Information Systems.At Gilead, we're creating a healthier world for all people.For more than 35 years, we've tackled diseases such as HIV, viral hepatitis, COVID-19 and cancer working... Show more

 • Promoted

Chief Information Security Officer

TrustlySan Francisco, CA, United States
Full-time

Chief Information Security Officer (CISO) & Head of Information Technology.At Trustly, we're building a smarter, faster, and more secure financial future by revolutionizing the world of payments.As... Show more

 • Promoted

Director of IT & Security

Sales Demo - Juliet RauschSan Francisco, CA, United States
Full-time

We are looking for an experienced IT Director to oversee all IT functions in our company.This person will be in charge of the IT team and will be experienced in creating and implementing IT policie... Show more