GRC / Compliance Lead - Cybersecurity
- Discuss this with your agent
- Open in Claude
- Open in ChatGPT
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Role details
Tech stack
Job description
As GRC/Compliance Lead, you will own the risk register, regulatory compliance mapping, and audit program for our clients - including compliance with data protection and health-information regulations. This role is initially being led by Spinks Technologies executive leadership; we are hiring a permanent Compliance Lead to assume full ownership of the program as the engagement matures.
What You’ll Do
- Own client IT risk register management and reporting
- Lead regulatory compliance mapping (data protection law, health-information regulations, ISO 27001/NIST/CIS)
- Lead annual internal security audits and configuration/posture assessments
- Own gap-analysis reporting against recognized frameworks
- Prepare compliance documentation and contribute to quarterly executive security briefings
- Partner with the SOC Manager on incident-related compliance/regulatory obligations
Requirements
- Bachelor’s degree in Cybersecurity, Information Technology, Legal/Compliance, or a related discipline
- CISM, CISA, or equivalent GRC-focused certification required
- 5+ years of experience in GRC, IT audit, or regulatory compliance leadership roles
- Experience with healthcare or other regulated-industry compliance frameworks (e.g., HIPAA or comparable)
Preferred Qualifications
- Direct HIPAA compliance program leadership experience
- Familiarity with AWS Audit Manager or similar compliance-automation tooling
- Experience supporting government or public-sector clients
Pay: $125,000.00 - $135,000.00 per year
License/Certification:
- CISM (Required)
About the company
Spinks Technologies, Inc. is a cloud engineering, AI automation, and cybersecurity solutions provider serving government, healthcare, and enterprise clients, headquartered in Gwinnett County, Georgia. Our team designs and operates AWS-native security architectures, AI-augmented monitoring, and compliance programs for clients operating in regulated environments.
We are building our cybersecurity delivery team in support of a pending managed cybersecurity services engagement for a hospital system in the Caribbean, protecting clinical and administrative systems across a hybrid on-premises, private cloud, and Microsoft 365 environment.
Apply for this position
This job is hosted externally. Click below to view the full posting and apply.
Prepare application
- Draft this with your agent
- Open in Claude
- Open in ChatGPT
Good distractions
Talks and stories from around this role — technically off-topic, practically not.
Moments
Explore playlistsVideos
See allRelated articles
See all
Software Engineer Salary London
Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.
Data Analyst Salary in the UK
Dev Digest 134 - Where pixels sing?