# Senior Director, Security Governance

**Company:** [ZoomInfo](https://hotfix.jobs/companies/zoominfo)
**Location:** Remote
**Role:** Security Engineering
**Experience:** 10+ years
**Skills:** Information Security, Governance Risk Compliance, Nist Ai Rmf, Iso 42001, ISO 27001, Iso 27701, Iso 27017, SOC 2, Cis Controls, Third-Party Risk Management, Servicenow Grc, Vanta, Agentic AI, Cissp, Cism
**Posted:** 2026-09-02

> Leads ZoomInfo’s enterprise security governance, risk, and compliance strategy for Ireland, including continuous compliance, third-party risk, AI-enabled automation, and executive reporting. Requires 10+ years in information security or GRC, senior leadership experience, and strong knowledge of NIST, ISO, and SOC 2 frameworks.

## Job Description

## Responsibilities
- Define and execute an enterprise-wide governance, risk, and compliance roadmap.
- Design and maintain the enterprise risk register, partnering with business leaders to identify, quantify, and mitigate risks.
- Manage continuous compliance with ISO 42001, ISO 27001, ISO 27701, ISO 27017, SOC 2, and CIS Controls.
- Build and manage a right-sized third-party risk management program, including vendor maturity assessments and security contract reviews.
- Support security sales by enabling transaction velocity, building customer trust, and responding rapidly to customer inquiries.
- Use Agentic AI and GRC platforms to automate processes, generate metrics, and deliver executive dashboards.
- Serve as a liaison between Security, Legal, Product, and executive leadership to align risk posture with business objectives.
- Build and lead a high-performing team across the United States and India while contributing as a player-coach.

## Requirements
- 10+ years of experience in information security or GRC.
- 5+ years in a senior leadership role.
- Deep knowledge of risk frameworks, including NIST AI RMF, and security compliance standards such as ISO and SOC 2.
- Proven ability to scale security teams, mature programs, and build security-by-design cultures.
- Strong executive presence and ability to translate complex technical risks into business-relevant context for executives and customers.
- Bachelor's degree in a relevant field.
- CISSP, CISM, CRISC, or CISA strongly preferred.

## Nice-to-haves
- Master's degree or PhD.
- Experience using ServiceNow GRC, Vanta, and other GRC platforms.
- Experience applying AI to transform GRC functions and establishing guardrails for safe AI innovation.

## Similar jobs

- [Forward Deployed Security Engineer](https://hotfix.jobs/jobs/eea32ce9-298f-4136-b08a-056bc6e91835) - Stripe - Dublin, Ireland
- [Incident Response Manager - Abuse Operations](https://hotfix.jobs/jobs/71053b9f-bd13-4cfb-957f-ad2c78e23c5a) - Stripe - Seattle, WA
- [Senior Security GRC Analyst](https://hotfix.jobs/jobs/b54fb115-3bb7-4d88-8fdc-b7901d26d90d) - Monarch - Remote - $180k – $215k/yr
- [Security Engineer - Product](https://hotfix.jobs/jobs/d32dc9fa-f31b-4fc4-a7c6-eade39acfb64) - Wiz - Berlin, Germany
- [Lead Product GRC Subject Matter Expert](https://hotfix.jobs/jobs/57c937d5-05e3-4033-875a-890645c4aa6b) - Vanta - Remote - $230k – $270k/yr

**Apply:** https://hotfix.jobs/jobs/ccfdf172-eb64-4ea3-8092-97329baaa948
**Canonical:** https://hotfix.jobs/jobs/ccfdf172-eb64-4ea3-8092-97329baaa948