Talent.com
Blue Yonder
Director of Security ComplianceBlue Yonder • Dallas, TX, United States
No longer accepting applications
Director of Security Compliance

Director of Security Compliance

Blue Yonder • Dallas, TX, United States
6 days ago
Salary
$167,075.95–$216,924.03 yearly
Job type
  • Full-time
Job description

Director Of Security Compliance

Reports to: Senior Director of GRC

Location: Scottsdale, AZ / Dallas, TX / Remote (US)

Synonymous Business Title(s): Security & Compliance Director

About Blue Yonder and the Team:

Blue Yonder is a world leader in digital supply chain transformation. Retailers, manufacturers, and logistics providers across the globe rely on our AI-driven platform to plan, execute, and optimize the flow of goods from source to consumer. Our software touches on the operations of some of the most recognizable brands in the world, which means the trust our customers place in the security, resilience, and integrity of our services is central to everything we do.

The Blue Yonder Governance, Risk, & Compliance (GRC) team protects that trust. We build and operate the programs that keep Blue Yonder secure, compliant, and audit-ready across a broad portfolio of SaaS products and the cloud platforms that run them. This is a role for a leader who wants their work to be visible to customers, regulators, and executives alike and who sees compliance not as a checkbox exercise, but as a durable business enabler.

The GRC team sits within Blue Yonder's Global Cyber Security, Risk & Compliance organization. We are the group that turns Blue Yonder's security posture into evidence the world can trust the certifications customers require, the attestations regulators expect, and the controls that keep our platform resilient. We partner closely with Engineering, Product, Privacy, Internal Audit, Legal, and Customer Trust, and our work directly enables revenue, shortens sales cycles, and protects the company's reputation. We value clear thinking, durable process, and using automation to do more meaningful work with less manual toil.

Overview:

The Director of Security Compliance leads the team responsible for planning, executing, and sustaining Blue Yonder's portfolio of information security and IT compliance certifications and attestations. Reporting to the Senior Director of GRC, you will own the end-to-end audit and compliance lifecycle scoping, evidence, control operation, auditor management, and reporting across a multi-product, multi-cloud environment.

You will lead a team of compliance professionals delivering ISO 27001, ISO 27701, ISO 22301, ISO 42001, SOC 1, SOC 2, and Sarbanes-Oxley / IT General Controls (ITGC) audits, alongside other information securitybased assessments across the Blue Yonder portfolio of services. Just as importantly, you will mature how we operate these programs replacing point-in-time scrambles with continuous, evidence-backed control operation, shared control frameworks, and automation that lets the team spend more time on judgment and less on collection.

Scope/Responsibilities:

  • Lead the compliance team responsible for delivering Blue Yonder's information security certifications and attestations, including ISO 27001, ISO 27701, ISO 22301, ISO 42001, SOC 1, SOC 2, and SOX / ITGC setting direction, priorities, and operating cadence.
  • Own the end-to-end audit lifecycle across the portfolio: scoping, control mapping, evidence collection, control operation, auditor coordination, issue remediation, and final reporting.
  • Manage external auditors and certification bodies as the primary point of accountability negotiating scope, timelines, and sampling, and driving clean, defensible outcomes.
  • Rationalize the control environment by building and maintaining a shared, cross-framework control set that lets a single control satisfy multiple obligations, reducing duplicate evidence and audit fatigue.
  • Mature SOX / ITGC compliance in partnership with Internal Audit, Finance, and control owners ensuring IT general controls over financially relevant systems are designed, operating, and evidenced effectively.
  • Stand up and scale emerging frameworks including ISO 42001 for AI management systems, aligning Blue Yonder's AI governance and responsible-AI practices with certification requirements.
  • Drive continuous compliance by championing automation, evidence pipelines, process improvements, and GRC tooling that shift the program from periodic firefighting toward always-audit-ready operation.
  • Partner across the business with Engineering, Product, Cloud Platform, Privacy, Legal, Internal Audit, and Customer Trust to embed control requirements into how services are built and run.
  • Translate compliance into business value by preparing clear reporting for executives, customers, and regulators, maturing support model for customer audits, and by enabling Sales and Customer Trust with current, accurate attestations and evidence.
  • Develop the team through coaching, clear ownership, and career growth building bench strength across frameworks and cloud platforms.

What You'll Do:

  • Proven leadership of a security compliance, IT audit, or GRC function in a complex, multi-product SaaS or technology environment, including direct management of a team of compliance professionals.
  • Deep, hands-on expertise delivering the audits central to this role ISO 27001, SOC 1, and SOC 2 with demonstrable experience managing certification bodies and audit firms end to end.
  • Working knowledge across the broader framework portfolio including ISO 27701 (privacy), ISO 22301 (business continuity), ISO 42001 (AI management systems), and Sarbanes-Oxley / ITGC.
  • Cloud fluency across the platforms that run our services Microsoft Azure (preferred), with familiarity across AWS, GCP, and OCI, and an understanding of how cloud shared-responsibility models shape control scope and evidence.
  • Practical command and control frameworks and the ability to map many overlapping requirements to a single, coherent control environment rather than running each audit as a silo.
  • A continuous-compliance mindset with real experience applying automation, evidence pipelines, and GRC platforms to scale audit readiness.
  • Strong cross-functional influence able to work credibly with Engineering and Product on technical controls while communicating clearly with executives, auditors, and customers.
  • Sound judgment on risk balancing rigor with pragmatism and knowing when a control gap is a finding to remediate versus a risk to accept and document.

What We're Looking For:

Required Qualifications:

  • Minimum 10+ years of experience in security compliance, audit, or information security within an enterprise SaaS environment.
  • Deep expertise of Security and IT compliance frameworks (SOC2, ISO 27001, ISO 22301, SOX ITGCs, etc.).
  • Experience developing, maturing, or transforming compliance programs in a cloud and/or SaaS environment.
  • Strong collaborator, working with technical and non-technical stakeholders at various levels of leadership.
  • Strong organizational and project management skills.

Preferred Qualifications:

  • Experience with GDPR and other data privacy frameworks, and the ability to operationalize privacy obligations into auditable controls (e.g., via ISO 27701).
  • Familiarity with FedRAMP and U.S. public-sector security requirements, and experience preparing environments for government-grade authorization.
  • Strong grounding in the NIST family of standards, including NIST SP 800-53 and the NIST Cybersecurity Framework, and experience mapping across frameworks.
  • Familiarity with compliance automation and GRC platforms.
  • Experience leading a geographically distributed compliance team
  • Relevant certifications such as CISA, CISM, CISSP, CIPP, ISO 27001 Lead Auditor / Lead Implementer, or equivalent.
  • Experience in supply chain, logistics, and/or enterprise SaaS, operating in a fast-moving, AI-driven product organization.
Create a job alert for this search

Director of Security Compliance • Dallas, TX, United States

Similar jobs

Global Security Director

CelesticaRichardson, TX, United States
Full-time

Reporting to senior level management, the individual in this role will provide direct & indirect supervision to security managers and employees performing security functions globally.You will be re... Show more

 • Promoted

Global Financial Crimes Firco Continuity Director (AVP)

Morgan StanleyDallas, TX, United States
Full-time

Global Financial Crimes (GFC): Firco Continuity Specialist - Director (AVP).We're seeking someone to join our team as a Global Financial Crimes (GFC): Firco Continuity Specialist - Director (AVP).I... Show more

 • Promoted

Global Financial Crimes Alert Monitoring and Screening Director (AVP)

Morgan StanleyDallas, TX, United States
Full-time

Global Financial Crimes (GFC): US AML Alert Monitoring & Screening Professional.In the Legal & Compliance division, we assist the Firm in achieving its business objectives by facilitating and overs... Show more

 • Promoted

Security Lead - Industrial Control Systems (ICS)

ClifyXDallas, TX, United States
Full-time

Security Industrial Control Systems (ICS) Manager Southwest.Locations: Oklahoma City, AZ - Phoenix, CO - Denver, TX - Austin, TX - Dallas, TX Houston - Energy domain. Show more

 • Promoted

Compliance Risk Management Lead - Vice President

ChasePlano, TX, United States
Full-time

Compliance Risk Management Lead.Bring your expertise to JPMorgan Chase.As part of Risk Management and Compliance, you are at the center of keeping JPMorgan Chase strong and resilient.You help the f... Show more

 • Promoted

Global Financial Crimes Investigations Director

Morgan StanleyDallas, TX, United States
Full-time

Global Financial Crimes (GFC): US Investigations Director.In the Legal & Compliance division, we assist the Firm in achieving its business objectives by facilitating and overseeing the Firm's manag... Show more

 • Promoted

Compliance-The Core Compliance, Associate, Dallas

The Goldman Sachs Group, Inc.Dallas, TX, United States
Full-time

Our division prevents, detects and mitigates compliance, regulatory and reputational risk across the firm and helps to strengthen the firm's culture of compliance.Compliance accomplishes these thro... Show more

 • Promoted

Director, Compliance (AML)

MoomooDallas, TX, United States
Full-time

SEC registered broker-dealers alongside a cryptocurrency brokerage all operating under the reputable wing of Futu Holdings Limited (Nasdaq: FUTU).Our core mission revolves around innovating the in... Show more

 • Promoted

Associate Director, Corporate Compliance

Oscar HealthDallas, TX, United States
Full-time

Associate Director, Corporate Compliance.We're hiring an Associate Director, Corporate Compliance to join our Corporate Compliance team.Oscar is the first health insurance company built around a fu... Show more

 • Promoted

VP, Information Technology & Security

BoingoFrisco, TX, United States
Full-time

VP, Information Technology & Security.VP, Information Technology & Security.Boingo is looking for a senior technology leader to unify corporate IT operations and Information Security under one exec... Show more

 • Promoted

Director, Academic Governance and Compliance

KIPPDallas, TX, United States
Full-time

Director, Academic Governance and Compliance.The Director of Academic Governance and Compliance is responsible for ensuring that KIPP Texas remains in full alignment with all Texas Education Agency... Show more

 • Promoted

Senior Security Architect

TradeJobsWorkForce75240 Dallas, TX, US
Full-time

Senior Security Architect Job Duties: Enhances security team accomplishments and competence by planning deliv... Show more

 • Promoted

Compliance Director

TradeJobsWorkForce75260 Dallas, TX, US
Full-time

Compliance Director Job Duties: Accomplishes compliance human resource strategies by determining acco... Show more

 • Promoted

Compliance-The Core Compliance, Associate, Dallas

Goldman SachsDallas, TX, United States
Full-time

Our division prevents, detects and mitigates compliance, regulatory and reputational risk across the firm and helps to strengthen the firm's culture of compliance.Compliance accomplishes these thro... Show more

 • Promoted

Director of DevOps, IT, and Security

ZippyDallas, TX, United States
Full-time

Director Of DevOps, It, And Security.Zippy was founded with one mission: to make getting a loan for a manufactured home simple, fast, and fully online.We believe modern manufactured homes are affor... Show more

 • Promoted

Manager, US Information Security & Control

ScotiabankDallas, TX, United States
Full-time

Manager, US Information Security & Control.Join a purpose driven winning team, committed to results, in an inclusive and high-performing culture.The Information Security Manager plays a key role in... Show more

 • Promoted

VP, Global Head of Product Security and Risk

CircleDallas, TX, United States
Full-time

VP, Global Head Of Product Security & Risk.Circle is building the next generation of global financial infrastructure through programmable money, blockchain-based payments, and cloud-native APIs.As ... Show more

 • Promoted

Compliance, Compliance Testing Group (CTG), Vice President, Dallas

The Goldman Sachs Group, Inc.Dallas, TX, United States
Full-time

Compliance Testing Group ("CTG") is seeking an individual who is a self-starter who exudes energy, curiosity, and enthusiasm to conduct investigative work covering the various firm businesses and d... Show more

 • Promoted

Director of eDiscovery

Contact Government ServicesDallas, TX, United States
Full-time

Employment Type: Full Time, Executive Level.Department: eDiscovery and Litigation.Contact Government Services is seeking an experienced and motivated Director of eDiscovery for one of our large gov... Show more

 • Promoted

Senior Director of eDiscovery

Contact Government ServicesDallas, TX, United States
Full-time

Employment Type: Full Time, Executive Level.Department: eDiscovery and Litigation.Contact Government Services is seeking an experienced and motivated Senior Director of eDiscovery for one of our la... Show more