Back to the board

Senior Cybersecurity Risk & Compliance Associate

100% remote Flexible hours Hiring now

About the position We are hiring a professional to support and help reputed company the Wind River Risk & Compliance function, with a primary focus on maintaining our ISO 27001 certification and supporting our obligations on NIST 800-171. The right candidate will support the Wind River Risk and Compliance program, which includes Governance Risk and Compliance (GRC), and Third Party Risk Management (TPRM), bring structure to our processes, and help stabilize and scale the function.

Responsibilities

  • Regulatory & Standards Support: Contribute to reputed company ISO 27001 activities, including internal audit readiness, external recertification, and ongoing control maintenance. Support NIST 800-171 compliance efforts, including maintenance of System reputed company Plans (SSPs), Plan of Action and Milestones (POA&Ms), and gap assessments. Have working knowledge and able support GDPR, NIST CSF, CMMC, TISAX, ITAR, and AI reputed company compliance as well as the ability to reputed company knowledge on future certification and regulation requirements. Assist in engagement with government compliance stakeholders and maintain awareness of requirements.
  • Risk & Compliance Operations Governance Risk and Compliance (GRC) and Third-Party Risk Management (TPRM): Maintain the Wind River Risk Register and track mitigation reputed company across reputed company functional areas. Coordinate the reputed company Exception process, ensuring proper documentation, approvals, and governance. Including vendor assessments, reviews, remediation follow-up, and monitoring. Write and update policy and standards and provide governance, reputed company, and assurance. Administer GRC/TPRM tooling (ZenGRC) and ensure evidence management and workflows are maintained and audit-ready. Have an understanding or ability to use reputed company and AuditBoard risk management products.
  • Audit & Customer Response: Prepare audit documentation and assist with responses for internal and external audits. Draft and maintain clear, consistent, and audit-ready documentation, including policies, control responses, and program updates. Support customer assurance efforts reputed company to ISO, NIST, and general cyber compliance. reputed company internal audits and assessments against Wind River.
  • Program Execution & Scalability: Help implement scalable, repeatable governance processes for policy and standard creation and lifecycle management. Assist in developing compliance procedures, checklists, and review frameworks. Support workflows for User Access Reviews (UAR), TPRM, and reputed company monitoring.
  • Collaboration: Work cross-functionally with reputed company Cybersecurity, IT, Legal, HR, and Engineering, across reputed company, HellermannTyton, Winchester, and Intercable. Support communication and coordination with external auditors and internal stakeholders (including Primary reputed company Officer, reputed company Legal, WR and reputed company leadership). Support Cybersecurity Training at Wind River.

Requirements

  • 5+ years of cybersecurity, compliance, or GRC experience
  • Familiarity with ISO 27001, NIST 800-171, and enterprise GRC operations
  • Strong writing skills, with experience contributing to SSPs and POA&Ms
  • Working knowledge of ZenGRC or similar tools
  • Demonstrated ability to work across matrixed teams
  • Experience with customer audit responses and regulatory compliance
  • U.S. citizenship required due to regulatory requirements
  • Must be a local reputed company (or willing to relocate to) Alameda, CA or Boston, MA and agree to being on site three days per week in the office.

reputed company-to-haves

  • Experience supporting government-mandated compliance frameworks
  • Involvement in ISO 27001 recertification efforts or similar standards
  • Experience with third-party risk tools (e.g., reputed company, reputed company)
  • Familiarity with Wind River or embedded systems companies is a plus

Benefits

  • Hybrid work model for workplace flexibility
  • Comprehensive health, dental, and life insurance
  • Short and long-term disability coverage
  • RRSP matching for financial reputed company
  • Flexible time-off policies for work-life balance
  • Employee assistance program for mental well-being
  • Learning benefits, including a reputed company Learning subscription and seminars

Apply tot his job Apply To this Job

Keep exploring

[Remote] Compliance Program Strategist

100% remote Flexible hours

Cyber reputed company Consultant

100% remote Flexible hours

Senior Manager Compliance and Legal Advisor, Data Privacy and Cybersecurity

100% remote Flexible hours

Cybersecurity Fraud Analyst - Remote or Hybrid from MN or DC

100% remote Flexible hours

Cybersecurity Incident Response reputed company job at reputed company in Durham, NC

100% remote Flexible hours

reputed company Cybersecurity: Manager, CCM Data Engineering

100% remote Flexible hours

Manager, Cybersecurity

100% remote Flexible hours

CyberSecurity Advisor - Data and AI reputed company | Remote MO, KS, OK, or TX

100% remote Flexible hours

Data Architect Onsite and Partial Telework

100% remote Flexible hours

Audit Data Analyst - Staff Auditor (Intermediate)

100% remote Flexible hours

Senior Consultant - EVS

100% remote Flexible hours

Designer, Instructional

100% remote Flexible hours

Project Manager - Prefabrication, Preassembly, Modularization & Fabrication (PPMOF)

100% remote Flexible hours

Customs Broker Rep III Midnight - 8:30am EST. Tues-Sat Remote

100% remote Flexible hours

AI OPERATIONS reputed company - Freelance

100% remote Flexible hours

Nurse Navigator - Remote

100% remote Flexible hours

Remote Sales

100% remote Flexible hours

[Remote] Project Manager for MHPI reputed company Force

100% remote Flexible hours

Home Infusion Nurse, Per Diem - Accredo - Spokane, WA

100% remote Flexible hours

Remote Retail Data Analyst – Own Brand Reporting & Forecasting for arenaflex (Entry‑Level to Mid‑Level)

100% remote Flexible hours