Skip to main content
Yuxi Global

GRC, Cybersecurity, and Compliance Professional

RemoteColombia only
Published
Role
Security
Experience
Lead
Employment
Full-time
Salary not disclosed
Check eligibility

Open to CO only. Set where you work from to check your eligibility.

No BS summary

GRC/cybersecurity compliance professional with 10+ years in Cybersecurity, IT Audit, GRC, Compliance, or Risk Management. Must have SOC 2 and/or ISO 27001 program experience, strong program/project management, audit coordination, stakeholder management, and strong written/verbal English.

Core skills

SOC 2/ISO 27001

Optional skills

NIST CSFCIS ControlsHIPAAPCI-DSSGDPRJiraConfluenceDrata

Required languages

English Strong written and verbal communication skills; required

What you'll do

  • Manage and coordinate SOC 2 and ISO 27001 compliance initiatives.
  • Drive audit readiness activities, including evidence collection, documentation management, and remediation tracking.
  • Coordinate cross-functional stakeholders and control owners to ensure timely completion of security and compliance requirements.
  • Organize meetings, maintain action-item tracking, and follow up on deliverables and deadlines.
  • Support internal and external audit activities and certification efforts.
  • Track risks, findings, remediation plans, KPIs, and program status reporting.
  • Partner closely with cybersecurity leadership and technical teams to translate compliance requirements into actionable tasks.
  • Help promote security awareness and governance best practices throughout the organization.
  • Maintain compliance documentation, policies, procedures, and evidence repositories.

What they require

  • 10+ years of experience in Cybersecurity, IT Audit, GRC, Compliance, Risk Management, or related fields.
  • Experience supporting or managing SOC 2 and/or ISO 27001 programs.
  • Strong Program Management and Project Management skills.
  • Experience coordinating audits, compliance initiatives, and cross-functional stakeholders.
  • Ability to communicate effectively with both technical and non-technical teams.
  • Experience managing action plans, timelines, risks, dependencies, and compliance deliverables.
  • Strong written and verbal English communication skills.
  • Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Business, Risk Management, or related discipline.
  • Preferred: Experience with cybersecurity governance and security maturity programs.
  • Preferred: Experience supporting SOC 2 Type II audits and ISO 27001 certification efforts.
  • Preferred: Relevant certifications such as CISA, CISM, CISSP, CRISC, ISO 27001 Lead Auditor, or equivalent.
  • Strong compliance and audit experience.
  • Excellent program management and stakeholder management skills.
  • A solid cybersecurity foundation without needing to be deeply hands-on technically.
  • The ability to drive initiatives, remove blockers, and ensure successful execution across multiple teams.

Yuxi Global, powered by Veritas Automata, is a technology consulting and software development company dedicated to delivering innovative solutions that drive business success. Through our strategic partnership with Veritas Automata, we combine expertise in automation, AI, and advanced technology to enhance operational efficiency and streamline complex processes.

IT Consulting
Salary not disclosed