高级总监,安全治理
Senior Director, Security Governance
ZoomInfo 是职业加速的地方。我们快速行动,大胆思考,并赋能你完成一生中最好的工作。你将与 deeply 关心团队、彼此挑战并庆祝胜利的同事一起工作。凭借能放大你影响力的各种工具和一个支持你抱负的文化,你不仅会做出贡献,还会迅速实现目标。
职位描述:高级安全治理、风险与合规总监(爱尔兰)
地点:爱尔兰(都柏林或远程)
汇报对象:首席信息安全官
职位简介:
ZoomInfo 正在寻找一位具有战略眼光且注重行动的 **高级安全治理、风险与合规(GRC)总监**,以成熟我们的企业级治理、风险和合规职能。向 CISO 汇报,你对 AI 如何改变 ZoomInfo 的 GRC 职能有清晰的愿景,并具备执行该愿景的能力。你还将定义安全 AI 创新的边界,平衡风险缓解与创新速度。你将组建并领导一支位于美国和印度的高效团队,以保障我们的数字增长,管理第三方风险,并简化审计准备,确保安全成为竞争优势而非障碍。你也是积极主动的贡献者,能够作为球员兼教练,与团队一起深入细节。
**你将负责:**
- GRC 战略与领导:制定并执行 GRC 路线图,领导治理、风险和合规项目。
- 风险管理:设计并维护企业风险登记册,与业务负责人合作识别、量化和缓解风险。
- 持续合规与审计:管理符合框架(ISO 42001、ISO 27001、ISO 27701、ISO 27017 和 SOC2、CIS 控制)的合规性,并推动持续合规,而不仅仅是年度审计。
- 第三方风险(TPRM):建立并管理合适的供应商风险计划,评估供应商成熟度并审查安全合同。
- 安全销售支持:通过建立客户信任并快速响应查询,提升 ZoomInfo 交易速度并确保客户服务。
- 自动化与报告:利用代理 AI 和 GRC 平台(如 ServiceNow GRC、Vanta 等)自动化流程,生成指标并交付高管仪表盘。
- 跨职能影响:作为安全、法律、产品和高管领导之间的关键联络人,确保风险态势与业务目标一致。
**你将带来:**
- 经验:10+ 年相关经验
查看英文原文
ZoomInfo is where careers accelerate. We move fast, think boldly, and empower you to do the best work of your life. You’ll be surrounded by teammates who care deeply, challenge each other, and celebrate wins. With tools that amplify your impact and a culture that backs your ambition, you won’t just contribute. You’ll make things happen–fast.
Job Description: Senior Director of Security Governance, Risk and Compliance (Ireland)
Location: Ireland (Dublin or Remote)
Reporting to: Chief Information Security Officer
Job Summary:
ZoomInfo is seeking a strategic and action-oriented **Senior Director of Security Governance, Risk, & Compliance (GRC)** to mature our enterprise-wide governance, risk, and compliance function. Reporting to the CISO, you have a vision for how AI will be used to transform the GRC function at ZoomInfo, and the skills to execute your vision. You will also define the guardrails for safe AI innovation, balancing risk mitigation with speed of innovation. You will build and lead a high-performing team based in the US and India to secure our digital growth, manage third-party risk, and simplify audit readiness, ensuring security is a competitive advantage rather than a barrier. You are also a strong and active contributor who is comfortable as a player-coach, getting into the details alongside your team.
**What You’ll Do:**
- GRC Strategy & Leadership: Define and execute a GRC roadmap, leading governance, risk, and compliance programs.
- Risk Management: Design and maintain the enterprise risk register, partnering with business leaders to identify, quantify, and mitigate risks.
- Continuous Compliance & Audit: Manage compliance with frameworks (ISO 42001,ISO 27001, ISO 27701, ISO 27017, and SOC2, and CIS Controls) and drive continuous compliance rather than just annual audits.
- Third-Party Risk (TPRM): Build and manage a right-sized vendor risk program, assessing vendor maturity and reviewing security contracts.
- Security Sales Support: Enable ZoomInfo transaction velocity and ensure customer service by building customer trust and rapidly responding to inquiries
- Automation & Reporting: Leverage Agentic AI and GRC platforms (ServiceNow GRC, Vanta, and others) to automate processes, generate metrics, and deliver executive dashboards.
- Cross-Functional Influence: Act as the key liaison between Security, Legal, Product, and executive leadership to align risk posture with business objectives.
**What You Bring**:
- Experience: 10+ years in info security/GRC, including 5+ years in a senior leadership role.
- Expertise: Deep knowledge of risk frameworks (NIST AI RMF) and security compliance standards (ISO, SOC 2).
- Actionable Leadership: Proven track record of scaling security teams, maturing programs, and building "security-by-design" cultures.
- Executive Presence: Ability to translate complex technical risks into business-relevant context for executive leadership and customers
- Education: Bachelor’s degree in a relevant field (Master’s/PhD preferred).
- Certifications: CISSP, CISM, CRISC, or CISA strongly preferred.
#LI-AP3
#LI-Remote
**About us:**
ZoomInfo (NASDAQ: GTM) is the Go-To-Market Intelligence Platform that empowers businesses to grow faster with AI-ready insights, trusted data, and advanced automation. Its solutions provide more than 35,000 companies worldwide with a complete view of their customers, making every seller their best seller.
ZoomInfo is committed to protecting your privacy when you apply for jobs with us. Please review our Job Applicant [Privacy Notice](https://drive.google.com/file/d/1yiG-k0YX_sW10PiJk_xliDc3W-veJCrK/view?usp=drive_link) for more details on how we handle your personal information.
ZoomInfo may use a software-based assessment as part of the recruitment process. More information about this tool, including the results of the most recent bias audit, is available [here](https://www.zoominfo.com/legal/nyc-local-law-144-notice).
ZoomInfo is proud to be an equal opportunity employer, hiring based on qualifications, merit, and business needs, and does not discriminate based on protected status. We welcome all applicants and are committed to providing equal employment opportunities regardless of sex, race, age, color, national origin, sexual orientation, gender identity, marital status, disability status, religion, protected military or veteran status, medical condition, or any other characteristic protected by applicable law. We also consider qualified candidates with criminal histories in accordance with legal requirements.
For Massachusetts Applicants: It is unlawful in Massachusetts to require or administer a lie detector test as a condition of employment or continued employment. An employer who violates this law shall be subject to criminal penalties and civil liability. ZoomInfo does not administer lie detector tests to applicants in any location.