Dash Technologies is seeking an experienced ISMS Manager to lead the company’s information security, privacy, risk, audit, AI governance, and compliance programs. The role will manage compliance across ISO 27001, ISO 27701, ISO 42001, SOC 2, HITRUST, and HIPAA, while coordinating with relevant teams supporting ISO 9001, ISO 13485, CMMI, IEC 62304, and ISO 14971 requirements. The successful candidate will own the ISMS, manage risk and audit activities, maintain compliance evidence, oversee security questionnaires, and act as the primary contact for auditors, certification bodies, clients, and regulatory stakeholders.
What You’ll Do
ISMS and Compliance Governance
Own the day-to-day operation and continual improvement of the ISMS and privacy program.
Develop and maintain security, privacy, AI governance, and compliance policies and procedures.
Maintain risk registers, control matrices, statements of applicability, compliance calendars, and audit-ready documentation.
Ensure controls align with business requirements, client commitments, regulatory obligations, and applicable standards.
Coordinate compliance activities across ISO 27001, ISO 27701, ISO 42001, SOC 2, HITRUST, and HIPAA.
Risk, Audit and Evidence Management
Lead information security, privacy, AI, vendor, operational, and compliance risk assessments.
Maintain risk-treatment plans, vulnerability dashboards, remediation trackers, and residual-risk reports.
Manage audit findings, nonconformities, corrective actions, and preventive actions through closure.
Ensure evidence is complete, current, traceable, and mapped to applicable controls.
AI Governance and Privacy
Lead the ISO 42001 Artificial Intelligence Management System program.
Maintain AI inventories, risk assessments, impact assessments, data-governance processes, and lifecycle controls.
Promote responsible AI principles, including transparency, explainability, human oversight, fairness, security, and privacy.
Manage privacy compliance under ISO 27701 and HIPAA.
Support PHI, PII, data flow, retention, access control, breach assessment, and cross-border data management activities.
SOC 2, HITRUST, and Security Questionnaires
Coordinate SOC 2 Type II control operation, evidence collection, and audit readiness.
Manage HITRUST readiness, control implementation, evidence preparation, and remediation.
Own enterprise security questionnaires and customer due-diligence requests.
Maintain an approved knowledge base of questionnaire responses and supporting evidence.
Coordinate responses with Sales, Legal, Engineering, Infrastructure, Delivery, HR, and leadership teams.
Quality and Medical Device Compliance Coordination
Coordinate with relevant teams supporting ISO 9001 and ISO 13485 requirements.
Support alignment with CMMI process requirements.
Coordinate information security and privacy inputs for IEC 62304 software lifecycle activities.
Support security and product-risk alignment with ISO 14971.
Ensure security and privacy requirements are incorporated into development, change management, supplier management, release, and incident-management processes.
Training, Reporting and Stakeholder Management
Deliver security, privacy, compliance, and responsible AI awareness training.
Track training completion and maintain required records.
Prepare monthly and quarterly reports on risks, audits, incidents, control effectiveness, training, and remediation.
Lead management review meetings and recommend corrective and preventive actions.
Manage relationships with auditors, certification bodies, HITRUST assessors, SOC 2 firms, GRC vendors, legal counsel, and compliance consultants.
Your Impact
Success in the First 6–12 Months
All scheduled audits, assessments, renewals, and client responses completed on time.
Audit-ready policies, risk registers, control mappings, and evidence repositories maintained.
ISO 27001, ISO 27701, ISO 42001, SOC 2, HITRUST, and HIPAA programs operating effectively.
Monthly risk and compliance dashboard implemented for leadership.
Audit findings, client queries, and remediation actions closed within agreed timelines.
Security, privacy, compliance, and role-based training completed by 100% of employees.
Structured security-questionnaire process established with clear ownership.
ISO 42001 AI governance controls embedded into relevant products, services, and processes.
Effective coordination established across ISO 9001, ISO 13485, CMMI, IEC 62304, and ISO 14971 activities.
What You Bring — Must-Have
10+ years of experience in information security, privacy, GRC, compliance, risk, or audit management.
At least 5 years in an ISMS Manager, Information Security Manager, GRC Manager, or similar leadership role.
Hands-on experience with multiple frameworks, including:
ISO 27001 and ISO 27701.
ISO 42001 or AI governance.
SOC 2 Type II.
HITRUST.
HIPAA.
Experience supporting ISO 9001, ISO 13485, CMMI, IEC 62304, or ISO 14971.
IT Services and IT Consulting Software Development and IT System Custom Software Development
What We Offer
About the Company
Searching, interviewing and hiring are all part of the professional life. The TALENTMATE Portal idea is to fill and help professionals doing one of them by bringing together the requisites under One Roof. Whether you're hunting for your Next Job Opportunity or Looking for Potential Employers, we're here to lend you a Helping Hand.
Disclaimer: talentmate.com is only a platform to bring jobseekers & employers together.
Applicants
are
advised to research the bonafides of the prospective employer independently. We do NOT
endorse any
requests for money payments and strictly advice against sharing personal or bank related
information. We
also recommend you visit Security Advice for more information. If you suspect any fraud
or
malpractice,
email us at abuse@talentmate.com.
You have successfully saved for this job. Please check
saved
jobs
list
Applied
You have successfully applied for this job. Please check
applied
jobs list
Do you want to share the
link?
Please click any of the below options to share the job
details.
Report this job
Success
Successfully updated
Success
Successfully updated
Thank you
Reported Successfully.
Copied
This job link has been copied to clipboard!
Apply Job
Upload your Profile Picture
Accepted Formats: jpg, png
Upto 2MB in size
Your application for Manager - ISMS
has been successfully submitted!
To increase your chances of getting shortlisted, we recommend completing your profile.
Employers prioritize candidates with full profiles, and a completed profile could set you apart in the
selection process.
Why complete your profile?
Higher Visibility: Complete profiles are more likely to be viewed by employers.
Better Match: Showcase your skills and experience to improve your fit.
Stand Out: Highlight your full potential to make a stronger impression.
Complete your profile now to give your application the best chance!