Head of Global Assurance
$287,200–$359,000 year
On-site · New York City, New York, United States or San Francisco, California, United States
Job Summary
Lead assurance programs across Scale’s Global Public Sector and Commercial businesses, including FedRAMP, NIST frameworks, SOC 2, ISO 27001, and other customer, regulatory, and business assurance requirements. Manage and develop a technical assurance team responsible for public sector authorizations, commercial assurance, audits, customer commitments, control evidence, remediation, and reporting. Set priorities and operating cadences for assurance workflows, including intake, evidence collection, control owner follow-up, remediation tracking, metrics, and deadline management. Build the metrics, dashboards, and reporting cadences that give company leadership a clear view of program health, key risks, and strategic priorities. Partner with Legal on contract-driven assurance obligations, sensitive escalations, external-facing responses, and customer-facing representation issues. Work closely with Global Public Sector, Enterprise, Security, Engineering, Product, and other control owners to validate evidence, track remediation, and support authorization and audit requirements. Collaborate across Legal and GRC on a unified controls framework for security and other regulatory requirements. Manage relationships with external auditors, assessors, and certification bodies.
Required Qualifications
- 10+ years of experience in cybersecurity compliance, GRC, public and commercial sector assurance, IT audit, cloud security, or related roles.
- Active U.S. security clearance, SCI eligible.
- Experience leading global or region-specific assurance programs through scalable control frameworks.
- Experience managing senior technical assurance, cybersecurity compliance, GRC, audit, or control evidence professionals.
- Experience managing distributed teams across time zones.
- Deep familiarity with FedRAMP, continuous monitoring, authorization packages, and related NIST frameworks.
- Experience leading customer assurance, control evidence, remediation, reporting, and audit workflows.
- Experience overseeing SOC 2, ISO 27001, and other commercial assurance frameworks.
- Experience with external assessors, authorizing officials, government customers, public sector partners, commercial auditors, or certification bodies.
- Experience working with legal teams on contract-driven assurance obligations, and strong judgment on when to escalate legal, contractual, technical, security, customer-facing, or privileged issues.
- Excellent communication skills, including the ability to explain technical assurance issues clearly to legal, business, security, and executive audiences.
- Experience developing compliance or assurance approaches for emerging technologies, including GenAI, AI/ML, data platforms, or cloud infrastructure.
- Experience advising leadership on assurance, compliance, and risk tradeoffs in fast-moving technical environments.
- Experience with defense, federal civilian, classified, national security, GovCloud, or JAB authorization environments.
Desired Qualifications
- CISSP
- CISM
- CISA
- CCSP
- AWS Certified Solutions Architect
- Azure Solutions Architect
Apply with one swipe on Sorce. We auto-fill applications and apply on your behalf — no cover letters, no 40-minute forms.
Hiring someone like this?
Get your role in front of qualified candidates on Sorce.