Security Compliance Program Manager

yuxiglobal1· Operations
Apply Now ↗

About this role

Company Description

Yuxi Global, powered by Veritas Automata, is a technology consulting and software development company dedicated to delivering innovative solutions that drive business success. Through our strategic partnership with Veritas Automata, we combine expertise in automation, AI, and advanced technology to enhance operational efficiency and streamline complex processes. Our collaboration ensures we provide tailored, cutting-edge solutions to address evolving business challenges. At Yuxi Global, we are committed to mutual assistance, support, and collaboration with Veritas Automata to create high-impact solutions that empower our clients and drive continuous improvement.

Job Description

We are seeking a Security Compliance Program Manager to lead and coordinate cybersecurity compliance initiatives focused on SOC 2, ISO 27001, audit readiness, and security governance.

This is not a highly technical engineering role. The ideal candidate will act as the driving force behind compliance programs, ensuring stakeholders remain aligned, audit activities stay on track, and security initiatives are successfully executed across the organization.

The selected candidate will work closely with the organization's Cybersecurity Subject Matter Expert (SME), supporting the coordination, operationalization, and continuous improvement of security and compliance programs.

Key Responsibilities

  • Manage and coordinate SOC 2 and ISO 27001 compliance initiatives.
  • Drive audit readiness activities, including evidence collection, documentation management, and remediation tracking.
  • Coordinate cross-functional stakeholders and control owners to ensure timely completion of security and compliance requirements.
  • Organize meetings, maintain action-item tracking, and follow up on deliverables and deadlines.
  • Support internal and external audit activities and certification efforts.
  • Track risks, findings, remediation plans, KPIs, and program status reporting.
  • Partner closely with cybersecurity leadership and technical teams to translate compliance requirements into actionable tasks.
  • Help promote security awareness and governance best practices throughout the organization.
  • Maintain compliance documentation, policies, procedures, and evidence repositories.

Qualifications

 

  • 10+ years of experience in Cybersecurity, IT Audit, GRC, Compliance, Risk Management, or related fields.
  • Experience supporting or managing SOC 2 and/or ISO 27001 programs.
  • Strong Program Management and Project Management skills.
  • Experience coordinating audits, compliance initiatives, and cross-functional stakeholders.
  • Ability to communicate effectively with both technical and non-technical teams.
  • Experience managing action plans, timelines, risks, dependencies, and compliance deliverables.
  • Strong written and verbal English communication skills.
  • Bachelor's degree in Cybersecurity, Information Systems, Computer Science, Business, Risk Management, or related discipline.
  • Preferred Qualifications

  • Experience with cybersecurity governance and security maturity programs.
  • Experience supporting SOC 2 Type II audits and ISO 27001 certification efforts.
  • Familiarity with NIST CSF, CIS Controls, HIPAA, PCI-DSS, GDPR, or similar frameworks.
  • Experience using Jira, Confluence, Drata, Vanta, AuditBoard, ServiceNow GRC, or similar platforms.
  • Relevant certifications such as CISA, CISM, CISSP, CRISC, ISO 27001 Lead Auditor, or equivalent.
  • Ideal Candidate

    We're looking for a professional who combines:

  • Strong compliance and audit experience.
  • Excellent program management and stakeholder management skills.
  • A solid cybersecurity foundation without needing to be deeply hands-on technically.
  • The ability to drive initiatives, remove blockers, and ensure successful execution across multiple teams.
  • Core Skills: SOC 2, ISO 27001, Program Management, Audit Coordination, Compliance, Governance, Risk Management, Stakeholder Management, Security Documentation, Jira, Confluence, GRC Tools.

Additional Information

Frequently Asked Questions

Is the salary disclosed for the Security Compliance Program Manager position at yuxiglobal1?
The salary for this Security Compliance Program Manager role at yuxiglobal1 is not publicly listed. Click "Apply Now" to learn more about the compensation package on their official careers page.
Is the Security Compliance Program Manager job at yuxiglobal1 remote?
Yes, this Security Compliance Program Manager position at yuxiglobal1 is remote, with team members based in Antioquia, Medellín, Medellín, Antioquia, Colombia, co. You can work from home or anywhere in the supported regions.
Is the Security Compliance Program Manager role at yuxiglobal1 full-time or part-time?
This is listed as a Full time position. It is posted as a Security Compliance Program Manager role in the Operations department at yuxiglobal1.
Which team or department does the Security Compliance Program Manager at yuxiglobal1 belong to?
This Security Compliance Program Manager position is part of the Operations department at yuxiglobal1. See the full job description for more information about the team structure and responsibilities.
How do I apply for the Security Compliance Program Manager position at yuxiglobal1?
Click the "Apply Now" button on this page. You will be redirected to yuxiglobal1's official application portal hosted on smartrecruiters where you can submit your application directly.
When was the Security Compliance Program Manager job at yuxiglobal1 posted?
This Security Compliance Program Manager position at yuxiglobal1 was posted on Jun 11, 2026. Apply as soon as possible — early applications are often reviewed first.
Security Compliance Program Manager
yuxiglobal1
Apply for this role ↗

You'll be redirected to yuxiglobal1's official application page on SmartRecruiters.