Skip to content
ZoomInfoZoomInfo

Senior Director, Security Governance

Leads ZoomInfo’s enterprise security governance, risk, and compliance strategy for Ireland, including continuous compliance, third-party risk, AI-enabled automation, and executive reporting. Requires 10+ years in information security or GRC, senior leadership experience, and strong knowledge of NIST, ISO, and SOC 2 frameworks.

About the job

Responsibilities

  • Define and execute an enterprise-wide governance, risk, and compliance roadmap.
  • Design and maintain the enterprise risk register, partnering with business leaders to identify, quantify, and mitigate risks.
  • Manage continuous compliance with ISO 42001, ISO 27001, ISO 27701, ISO 27017, SOC 2, and CIS Controls.
  • Build and manage a right-sized third-party risk management program, including vendor maturity assessments and security contract reviews.
  • Support security sales by enabling transaction velocity, building customer trust, and responding rapidly to customer inquiries.
  • Use Agentic AI and GRC platforms to automate processes, generate metrics, and deliver executive dashboards.
  • Serve as a liaison between Security, Legal, Product, and executive leadership to align risk posture with business objectives.
  • Build and lead a high-performing team across the United States and India while contributing as a player-coach.

Requirements

  • 10+ years of experience in information security or GRC.
  • 5+ years in a senior leadership role.
  • Deep knowledge of risk frameworks, including NIST AI RMF, and security compliance standards such as ISO and SOC 2.
  • Proven ability to scale security teams, mature programs, and build security-by-design cultures.
  • Strong executive presence and ability to translate complex technical risks into business-relevant context for executives and customers.
  • Bachelor's degree in a relevant field.
  • CISSP, CISM, CRISC, or CISA strongly preferred.

Nice-to-haves

  • Master's degree or PhD.
  • Experience using ServiceNow GRC, Vanta, and other GRC platforms.
  • Experience applying AI to transform GRC functions and establishing guardrails for safe AI innovation.

Skills

Information Security, Governance Risk Compliance, Nist Ai Rmf, Iso 42001, ISO 27001, Iso 27701, Iso 27017, SOC 2, Cis Controls, Third-Party Risk Management, Servicenow Grc, Vanta, Agentic AI, Cissp, Cism

Stripe

Stripe

Dublin, Ireland

Forward Deployed Security Engineer
No salary listedOn-site10+ YOESecurity Engineering

Leads live fraud and abuse incident response, investigates high-risk accounts, and helps merchants remediate security threats. Requires 10+ years of security or fraud incident-response experience, expert Python and SQL skills, and expertise in forensics, threat intelligence, and network security.

Stripe

Stripe

Seattle, WA
Incident Response Manager - Abuse Operations
No salary listedOn-site10+ YOESecurity Engineering

Leads end-to-end fraud and abuse incident response, investigating high-risk accounts, coordinating cross-functional mitigation, and improving detection and response capabilities. Requires 10+ years of security or fraud incident response experience, strong Python and SQL expertise, and experience with forensics and automated workflows.

Monarch

Monarch

Remote

Senior Security GRC Analyst
$180k+/yrRemote5+ YOESecurity Engineering

Own and scale security governance, risk, compliance, and customer assurance programs, including audits, controls monitoring, third-party risk, policies, and security questionnaires. The role requires 3–5 years of security GRC experience and hands-on understanding of IAM, endpoint, and cloud controls.

Wiz

Wiz

Berlin, Germany
Security Engineer - Product
No salary listedOn-site7+ YOESecurity Engineering

Security Engineer responsible for threat modeling, security reviews, vulnerability management, cloud and Kubernetes security, and detection and response across products and production infrastructure. Requires 7+ years of cloud security experience and hands-on expertise with IAM, infrastructure as code, automation, and security tooling.

Vanta

Vanta

Remote

Lead Product GRC Subject Matter Expert
$230k+/yrRemote10+ YOESecurity Engineering

Leads interpretation and productization of federal compliance controls for Vanta’s public-sector platform, translating FedRAMP and related frameworks into technically testable guidance, automated detectors, mappings, and machine-readable authorization workflows. Requires 8–10+ years of hands-on federal compliance experience, especially FedRAMP program and SSP work.