and periodically reviewed. Communicate key risks, trends, and mitigation activities to leadership. Compliance & Regulatory Oversight Manage compliance programs related to ISO 27001, SOC 2, HIPAA, GDPR, UK Cyber Essentials, NIST Cybersecurity Framework, and other applicable regulations. Coordinate control assessments, evidence collection, gap analyses, corrective actions, and compliance reporting. Monitor regulatory … compliance, audit, or information security. 3+ years of people leadership, supervisory, or demonstrated workstream leadership experience. Experience supporting or leading ISO 27001, SOC 2, HIPAA, privacy, or similar compliance programs. Experience conducting risk assessments, managing audits, tracking remediation activities, and performing third-party security risk assessments. Experience within healthcare, medical ...