Demo

Director, Information Security Audit & Compliance (Global)

Grant Thornton - US
Downers Grove, IL Full Time
POSTED ON 3/17/2026
AVAILABLE BEFORE 5/16/2026

Grant Thornton is seeking a Director of Information Security Audit & Compliance to join the team. Approved office locations can be found below. 

 

We are seeking a Director of Information Security Audit & Compliance to lead and scale a global audit and compliance practice. This role will be responsible for establishing global delivery centers, managing internal and external audits, and ensuring the information security program is governed through a consistent, defensible framework aligned to NIST CSF and NIST 800-53.

The ideal candidate combines deep audit and regulatory expertise with strong operational leadership, enabling the organization to meet regulatory, client, and certification requirements while supporting business growth and innovation.


Key Responsibilities

Audit & Compliance Strategy

  • Define and lead the global information security audit and compliance strategy across the enterprise.
  • Establish and scale global delivery centers to support audits, evidence management, and continuous compliance operations.
  • Own the audit calendar and roadmap for ISO, NIST-based, HIPAA, and client-driven audits.

Audit Management & Execution

  • Lead enterprise-wide audits and assessments including ISO 27001, NIST, HIPAA, and client-specific security audits.
  • Act as the primary point of contact for external auditors, regulators, and client assessors.
  • Ensure timely, high-quality audit deliverables, responses, and remediation plans.

Governance, Risk & Control Framework

  • Align the information security governance program to NIST Cybersecurity Framework (CSF) and NIST 800-53.
  • Develop, maintain, and mature security policies, standards, and control frameworks.
  • Ensure controls are consistently implemented, tested, and evidenced across global teams.

Continuous Compliance & Control Assurance

  • Establish processes for continuous control monitoring, internal testing, and readiness assessments.
  • Track audit findings, remediation efforts, and risk acceptances through closure.
  • Partner with technology, security, and business teams to remediate gaps and strengthen control effectiveness.

Client & Regulatory Engagement

  • Support client due diligence, RFP security responses, and client-led audits.
  • Translate technical and control-based requirements into clear, business-aligned commitments.
  • Build trust with clients by demonstrating a mature, transparent compliance posture.

Leadership & Global Team Development

  • Build, lead, and mentor a globally distributed team of audit and compliance professionals.
  • Define roles, responsibilities, career paths, and training for audit and compliance staff.
  • Foster strong collaboration with security engineering, IT, legal, privacy, and risk teams.

Required Qualifications

  • 12 years of experience in information security, audit, or compliance, with 5 years in senior leadership roles.
  • Deep hands-on experience leading ISO 27001, 27701, 27017, NIST, HIPAA, and client-driven security audits.
  • Strong expertise in NIST CSF and NIST 800-53 governance, control design, and assessment.
  • Proven experience building or scaling global audit and compliance delivery models.
  • Strong understanding of information security controls, risk management, and regulatory expectations.
  • Excellent communication skills with the ability to engage executives, auditors, and clients.

Preferred Qualifications

  • Experience operating in global, highly regulated environments.
  • Familiarity with SOC 1 / SOC 2, cloud compliance, and third-party risk assessments.
  • Experience implementing GRC tooling to support audit and compliance workflows.
  • Professional certifications such as CISSP, CISA, CRISC, CISM, ISO 27001 Lead Auditor, or equivalent.

 

The base salary range for this position in the firm’s Chicago, IL, Downers Grove, IL, Cleveland, OH, Minneapolis, MN, Reno, NV, Denver, CO and Baltimore, MD offices only is between $172,000 and $258,000 per year.

 

The base salary range for this position in the firm’s Washington, DC, Boston, MA, Bellevue, WA, Los Angeles, CA, Newport Beach, CA San Diego, CA, Edison, NJ, and New York, NY, and Melville, NY offices only is between $185,760 and $278,640 per year.

 

The base salary range for this position in the firm’s San Francisco, CA and San Jose, CA offices only is between $197,800 and $296,700 per year.

Salary : $172,000 - $258,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets
Employees: Get a Salary Increase
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at Grant Thornton - US

  • Grant Thornton - US Houston, TX
  • As the Corporate Tax Manager, you’ll be a member of our corporate tax practice and work on business income tax planning, corporate compliance, and ASC 740 ... more
  • 1 Day Ago

  • Grant Thornton - US St Louis, MO
  • POSITION SUMMARY Audit Associate As an Audit Associate at Grant Thornton, your primary responsibility will be performing audit procedures in the areas of c... more
  • 2 Days Ago

  • Grant Thornton - US Chicago, IL
  • Grant Thornton is seeking a PMD Talent Effectiveness Manager to join the team. Approved office locations can be found below. The PMD Talent Effectiveness M... more
  • 2 Days Ago

  • Grant Thornton - US York, NY
  • In today’s fast-paced, technology-driven environment, organizations need transformative strategies that enable bold decisions and unlock meaningful change.... more
  • 2 Days Ago


Not the job you're looking for? Here are some other Director, Information Security Audit & Compliance (Global) jobs in the Downers Grove, IL area that may be a better fit.

  • Open Opportunities Chicago, IL
  • In this hybrid role based at our Chicago Headquarters, you will support the Information security governance, risk management and compliance program, focusi... more
  • 24 Days Ago

  • Capital One Chicago, IL
  • Cybersecurity is essential to what we do at Capital One, from protecting our customers to our associates. As part of the Information Security Office, you a... more
  • 18 Days Ago

AI Assistant is available now!

Feel free to start your new journey!