boxinc
ISO 42001 Compliance Manager
At a Glance
- Location
- Redwood City, California, United States
- Experience
- 4+ years
- Posted
- 2026-06-15T19:36:56-04:00
Key Requirements
Required Skills
Certifications
- CISA
- CISM
- CISSP
- ISO
Domain Knowledge
- Cloud
- Regulatory
Requirements
4+ years experience leading and performing ISO 27001 audits or in an equivalent technology and compliance related role managing security audits
Familiar with GCP cloud computing, AI architectures, Data governance and model validations
Extensive knowledge of at least 2 or more of the following compliance frameworks (ISO 27001, ISO 27017, ISO 27018, ISO 42001, PCI, SOC, NIST 800-53)
ISO 27001 Lead Implementer certification and ISO 42001 Lead Auditor certification
Big 4 Experience or Management Consulting Experience
Box lives its values, with community and in-person collaboration being a core part of our culture.
Responsibilities
Drive and Lead Box’s annual ISO Certification program for AIMS against ISO 42001
Create and own the AIMS program and assess AI Governance effectiveness while working with internal teams
Execute external audits with third-party auditors and maintain relationships
Work across multiple frameworks and regulatory standards, including but not limited to ISO, PCI, NIST, AICPA SOC
Drive improvements in existing processes and develop new innovative and efficient solutions
Communicate gaps to management and coordinate cross functional team meetings to remediate and close the control gaps