Talent.com
Grant Thornton
Director, Information Security Audit & Compliance (Global)Grant Thornton • Atlanta, GA, United States
No longer accepting applications
Director, Information Security Audit & Compliance (Global)

Director, Information Security Audit & Compliance (Global)

Grant Thornton • Atlanta, GA, United States
30+ days ago
Salary
$172,000.00–$258,000.00 yearly
Job type
  • Full-time
Job description

Grant Thornton is seeking a Director of Information Security Audit & Compliance to join the team. Approved office locations can be found below.

We are seeking a Director of Information Security Audit & Compliance to lead and scale a global audit and compliance practice. This role will be responsible for establishing global delivery centers, managing internal and external audits, and ensuring the information security program is governed through a consistent, defensible framework aligned to NIST CSF and NIST 800-53.

The ideal candidate combines deep audit and regulatory expertise with strong operational leadership, enabling the organization to meet regulatory, client, and certification requirements while supporting business growth and innovation.

Key Responsibilities

Audit & Compliance Strategy

  • Define and lead the global information security audit and compliance strategy across the enterprise.
  • Establish and scale global delivery centers to support audits, evidence management, and continuous compliance operations.
  • Own the audit calendar and roadmap for ISO, NIST-based, HIPAA, and client-driven audits.

Audit Management & Execution

  • Lead enterprise-wide audits and assessments including ISO 27001, NIST, HIPAA, and client-specific security audits.
  • Act as the primary point of contact for external auditors, regulators, and client assessors.
  • Ensure timely, high-quality audit deliverables, responses, and remediation plans.

Governance, Risk & Control Framework

  • Align the information security governance program to NIST Cybersecurity Framework (CSF) and NIST 800-53.
  • Develop, maintain, and mature security policies, standards, and control frameworks.
  • Ensure controls are consistently implemented, tested, and evidenced across global teams.

Continuous Compliance & Control Assurance

  • Establish processes for continuous control monitoring, internal testing, and readiness assessments.
  • Track audit findings, remediation efforts, and risk acceptances through closure.
  • Partner with technology, security, and business teams to remediate gaps and strengthen control effectiveness.

Client & Regulatory Engagement

  • Support client due diligence, RFP security responses, and client-led audits.
  • Translate technical and control-based requirements into clear, business-aligned commitments.
  • Build trust with clients by demonstrating a mature, transparent compliance posture.

Leadership & Global Team Development

  • Build, lead, and mentor a globally distributed team of audit and compliance professionals.
  • Define roles, responsibilities, career paths, and training for audit and compliance staff.
  • Foster strong collaboration with security engineering, IT, legal, privacy, and risk teams.

Required Qualifications

  • 12+ years of experience in information security, audit, or compliance, with 5+ years in senior leadership roles.
  • Deep hands-on experience leading ISO 27001, 27701, 27017, NIST, HIPAA, and client-driven security audits.
  • Strong expertise in NIST CSF and NIST 800-53 governance, control design, and assessment.
  • Proven experience building or scaling global audit and compliance delivery models.
  • Strong understanding of information security controls, risk management, and regulatory expectations.
  • Excellent communication skills with the ability to engage executives, auditors, and clients.

Preferred Qualifications

  • Experience operating in global, highly regulated environments.
  • Familiarity with SOC 1 / SOC 2, cloud compliance, and third-party risk assessments.
  • Experience implementing GRC tooling to support audit and compliance workflows.
  • Professional certifications such as CISSP, CISA, CRISC, CISM, ISO 27001 Lead Auditor, or equivalent.

The base salary range for this position is between $172,000 and $250,000. Placement within the pay range is at Grant Thornton’s discretion, and it is based on multiple factors, including but not limited to, job-related knowledge/skills, experience, business needs, progression within the role, geographic location, and internal equity. At Grant Thornton, compensation decisions are dependent upon the facts and circumstances of each position and candidate.

Create a job alert for this search

Director, Information Security Audit & Compliance (Global) • Atlanta, GA, United States

Similar jobs

IT Manager 2/Cybersecurity Audit Manager

Padmore Global Connections LLCAtlanta, GA, United States
Full-time

IT Manager 2/Cybersecurity Audit Manager.The Georgia Department of Community Health (DCH) seeks an experienced Cybersecurity Audit Manager to oversee and enhance cybersecurity compliance efforts, e... Show more

 • Promoted

Director, Internal Audit

Oscar HealthAtlanta, GA, United States
Full-time

We're hiring a Director, Internal Audit to join our Strategic Finance team.Oscar is the first health insurance company built around a full stack technology platform and a relentless focus on servin... Show more

 • Promoted

Vice President, Information Security

Procare SolutionsAtlanta, GA, United States
Full-time

Vice President, Information Security.For over 30 years, Procare Solutions has been dedicated to empowering early childhood educators by providing products and services that enable them to focus on ... Show more

 • Promoted

Senior Director - Global Indirect Procurement, Global Workplace and Security

Coca-ColaAtlanta, GA, United States
Full-time

This position is responsible for the development and execution of category strategies, strategic sourcing process, negotiations, contracting, and supplier relationship activities involving the sour... Show more

 • Promoted

Cyber Security Tower Lead

Abode TechZone LLCAtlanta, GA, United States
Full-time +1

Location: Atlanta, GA (onsite) Duration: 6+ Month Experience/Role: Responsible for the day-to-day operations of the Cyber Security team and the Enterprise Infrastructure security tools like Firewal... Show more

 • Promoted

Compliance Manager

Capital Investment AdvisorsAtlanta, GA, United States
Full-time

At Capital Investment Advisors (CIA), we strive to help clients reach their goals by focusing on our specialty:Income Investing.We are a fee-only financial advisory and portfolio management firm he... Show more

 • Promoted

IT Risk Director, Technology Risk Management Resiliency & Business Continuity

HuntingtonAtlanta, GA, United States
Full-time

IT Risk Director, Resiliency & Business Continuity.The IT Risk Director, Resiliency and Business Continuity is responsible for leading the First Line Resiliency and Business Continuity Program acro... Show more

 • Promoted

Associate Director of IT Compliance and Governance

Sumitomo PharmaAtlanta, GA, United States
Full-time

With a commitment to accelerating the development of innovative therapies, we invite you to be part of our mission to enhance healthcare and improve lives worldwide.About the RoleWe are seeking a d... Show more

 • Promoted

Senior Director, Strategy- Compliance Solutions

Automatic Data ProcessingAlpharetta, GA, United States
Full-time

Senior Director Of Strategy For Compliance Solutions.ADP is hiring a Senior Director of Strategy for Compliance Solutions.This position is part of the Corporate Strategy team that supports ADP's Co... Show more

 • Promoted

Audit Director - Atlanta, GA (Hybrid)

NorthPoint Search GroupAtlanta, GA, United States
Full-time

A seasoned audit professional with 810 years of public accounting experience and expertise in industries such as manufacturing, distribution, construction, and transportation is needed to lead comp... Show more

 • Promoted

Director, Enterprise Compliance

Inspire Brands, Inc.Atlanta, GA, United States
Full-time

Lead the enterprise compliance program, driving strategy, risk mitigation, and a culture of integrity.Enhance and continuously improve a scalable enterprise compliance program aligned to external r... Show more

 • Promoted

Manager / Director of Compliance

ClarityPayAtlanta, GA, United States
Full-time

Manager / Director of ComplianceClarityPay is seeking a Manager of Compliance / Director of Compliance to lead our growing compliance program.As an early hire to our legal and compliance team durin... Show more

 • Promoted

VP, Global Head of Product Security and Risk

CircleAtlanta, GA, United States
Full-time

VP, Global Head Of Product Security & Risk.Circle is building the next generation of global financial infrastructure through programmable money, blockchain-based payments, and cloud-native APIs.As ... Show more

 • Promoted

Manager of Information Security and Compliance

ibossAtlanta, GA, United States
Full-time

Manager Of Information Security & Compliance.Company Overview iboss is a cloud security company that enables the modern workforce to connect securely and directly to all applications from wherever ... Show more

 • Promoted

Information Security Manager

Thorndale PartnersAlpharetta, GA, United States
Full-time

We are searching for an Information Security Manager to join a great team with an industry-leading client with the intent for continued growth.Our enterprise-level client is looking for someone to ... Show more

 • Promoted

Sr. Manager, Information Risk & Controls

Telepathy, Inc.Atlanta, GA, United States
Full-time

Manager Of Information Risk And Controls.Invesco is embracing a dynamic business environment with more agile working methods, increasing our need for sophisticated technology and operational risk m... Show more

 • Promoted

BB001 - Director of Technology

Synergy America, Inc.Atlanta, GA, United States
Full-time

Show more

 • Promoted

IT Manager 2/Cybersecurity Audit Manager

4P Consulting Inc.Atlanta, GA, United States
Full-time

HYBRID: ON-SITE TWO DAYS PER WEEK.POSITION AVAILABLE FOR EXTENSIONS BASED ON PROJECT AND BUDGET APPROVAL.The Georgia Department of Community Health (DCH) seeks a dedicated and skilled Cybersecurity... Show more

 • Promoted

Internal Audit Manager, IT

Government JobsDecatur, GA, United States
Full-time

Location: 1300 Commerce Drive, Decatur, GA 30030.Purpose of Classification: The purpose of this classification is to manage the operations and staff of the Office of Independent Internal Audit.Incu... Show more

 • Promoted

Sr Mgr, Information Security

HDS IP HoldingAtlanta, GA, United States
Full-time

Senior Manager Information Security Risk & ComplianceThe Senior Manager Information Security Risk & Compliance is a hands-on leader responsible for executing and operating the organization'... Show more