Own and maintain ongoing compliance with ISO 27001, ISO 27701,I SO 42001, GDPR, and NIST 800-171 requirements Prepare for, coordinate, and support internal and external security audits, including evidence collection and remediation tracking Conduct risk assessments, identify compliance gaps, and recommend corrective actions Develop, implement, and continuously improve information security policies, procedures, and controls Monitor regulatory and framework changes to ensure continued compliance Partner closely with IT, Security, and cross-functional teams to align compliance initiatives with security operations Maintain audit artifacts, compliance documentation, and records to support certifications and assessments Act as the primary liaison with auditors, regulators, and third-party assessors Support incident response activities by ensuring proper compliance documentation and reporting Deliver training and guidance to employees on security policies and best practices. Bachelor's degree in Information Security, Cybersecurity, Compliance, or a related field (or equivalent experience) 3+ years of experience in information security compliance, risk management, audit, or a related role Hands-on experience with ISO 27001, ISO 27701, NIST 800-171, and GDPR Relevant certifications preferred: CISA, CISM, CISSP, ISO 27001 In lieu of a degree, 8+ years of relevant experience will be considered.