boxinc

ISO 42001 Compliance Manager

At a Glance

Location
Redwood City, California, United States
Experience
4+ years
Posted
2026-06-15T19:36:56-04:00

Key Requirements

Required Skills

GCP

Certifications

  • CISA
  • CISM
  • CISSP
  • ISO

Domain Knowledge

  • Cloud
  • Regulatory

Requirements

4+ years experience leading and performing ISO 27001 audits or in an equivalent technology and compliance related role managing security audits

Familiar with GCP cloud computing, AI architectures, Data governance and model validations

Extensive knowledge of at least 2 or more of the following compliance frameworks (ISO 27001, ISO 27017, ISO 27018, ISO 42001, PCI, SOC, NIST 800-53)

ISO 27001 Lead Implementer certification and ISO 42001 Lead Auditor certification

Big 4 Experience or Management Consulting Experience

Box lives its values, with community and in-person collaboration being a core part of our culture.

Responsibilities

Drive and Lead Box’s annual ISO Certification program for AIMS against ISO 42001

Create and own the AIMS program and assess AI Governance effectiveness while working with internal teams

Execute external audits with third-party auditors and maintain relationships

Work across multiple frameworks and regulatory standards, including but not limited to ISO, PCI, NIST, AICPA SOC

Drive improvements in existing processes and develop new innovative and efficient solutions

Communicate gaps to management and coordinate cross functional team meetings to remediate and close the control gaps