9 hours ago

Cybersecurity GRC Specialist

UBQ.io

Hybrid
Full Time
$125,000
Hybrid

Job Overview

Job TitleCybersecurity GRC Specialist
Job TypeFull Time
Offered Salary$125,000
LocationHybrid

Who's the hiring manager?

Sign up to PitchMeAI to discover the hiring manager's details for this job. We will also write them an intro email for you.

Uncover Hiring Manager

Job Description

About UBQ.io

UBQ.io is a global technology service provider dedicated to building a more sustainable, independent, and equitable future. We partner with global companies across industries, including AI, blockchain, software, biotech, and education, to transform bold ideas into real, meaningful solutions.

Our expertise spans technology consulting, AI and Machine Learning development, Blockchain integration, and global team collaboration. With a worldwide network of specialists, we help organizations stay ahead in a rapidly evolving digital landscape.

At UBQ.io, we don’t just advise, we collaborate. Our commitment to innovation, sustainability, and social responsibility guides everything we do as we help clients build technologies that empower people, communities, and industries to thrive.

About The Role: Cybersecurity GRC Specialist

The Cybersecurity Governance, Risk & Compliance (GRC) Specialist plays a key role in driving robust governance, risk management, and compliance initiatives. This role focuses on developing and improving security policies and procedures, guiding ISO 27001 and SOC 2 readiness, and managing complex security due diligence requests. The ideal candidate is highly organized, analytical, and comfortable working in a fast-paced environment where aligning technical controls with business requirements is essential.

Key Responsibilities

  • Develop, review, and continuously improve cybersecurity policies, standards, and procedures.
  • Guide organizations through ISO 27001 and/or SOC 2 compliance readiness, gap analyses, and formal audit processes.
  • Manage, complete, and streamline responses to security due diligence questionnaires and risk assessments.
  • Conduct third-party vendor risk assessments to ensure external partners meet required security and compliance frameworks.
  • Track and report on compliance metrics, identified security risks, and remediation efforts.
  • Collaborate with cross-functional technical and legal teams to ensure security controls are effectively implemented and continuously monitored.

Qualifications

  • Bachelor’s degree in Cybersecurity, Information Technology, or a related field (or equivalent practical experience).
  • At least 3 years of experience in a GRC (Governance, Risk, and Compliance) role within Information Security.
  • Hands-on experience implementing, maintaining, or auditing security frameworks, specifically ISO 27001 and/or SOC 2.
  • Experience managing security questionnaires and conducting vendor risk due diligence.
  • Industry certifications (e.g., CISA, CRISC, CISM, CISSP, or ISO 27001) are a strong plus.
  • Ability to translate complex technical security concepts into clear, actionable business processes.
  • Strong communication skills and a customer-service mindset for engaging with diverse stakeholders.

About You

You enjoy working at the intersection of security, business, and compliance, ensuring that policies are practically applied rather than just theoretical. You are structured, reliable, and detail-oriented.

Key skills/competency

  • Cybersecurity Governance
  • Risk Management
  • Compliance Frameworks
  • ISO 27001
  • SOC 2
  • Security Policies
  • Vendor Risk Assessment
  • Due Diligence
  • Information Security
  • Audit Processes

Tags:

Cybersecurity GRC Specialist
Governance
Risk Management
Compliance
ISO 27001
SOC 2
Due Diligence
Vendor Risk
Policies
Auditing
Remediation
CISA
CRISC
CISM
CISSP
Information Security
GRC Frameworks
Risk Assessments
Security Controls

Share Job:

How to Get Hired at UBQ.io

  • Research UBQ.io's culture: Study their mission, values, recent news, and employee testimonials on LinkedIn and Glassdoor to understand their commitment to sustainability and innovation.
  • Tailor your resume for GRC expertise: Customize your resume to highlight experience in ISO 27001, SOC 2, vendor risk, and policy development, using keywords relevant to the Cybersecurity GRC Specialist role.
  • Showcase problem-solving in interviews: Prepare to discuss real-world examples of how you've translated complex technical security concepts into actionable business processes.
  • Demonstrate compliance and risk knowledge: Be ready to articulate your understanding of GRC frameworks, security due diligence, and your ability to track and report on compliance metrics effectively.
  • Highlight communication and collaboration: Emphasize your customer-service mindset and ability to engage with diverse stakeholders and cross-functional teams, a critical aspect of this remote role.

Frequently Asked Questions

Find answers to common questions about this job opportunity

Explore similar opportunities that match your background