Home
/
Comprehensive
/
vCISO – GRC Advisor (Private Equity & Carveout Focus)
vCISO – GRC Advisor (Private Equity & Carveout Focus)-July 2024
Chicago
Jul 30, 2025
About vCISO – GRC Advisor (Private Equity & Carveout Focus)

About us: RKON is an ISO27001 and AICPA SOC 2 Type II certified company that specializes in providing IT migration and transformation services for the Mergers and Acquisitions market.  RKON was recently recognized as one of the 100 best places to work in IT, highlighting our competitive advantage of empowering thought leaders and providing cutting-edge solutions for the fast-paced industry of private equity. RKON is looking for ambitious professionals to join our award-winning team. We have a proven track record for finding and developing top talent with people that believe they can achieve something greater. We also pride ourselves on fostering an environment where initiative, creative thinking, and collaboration are encouraged and rewarded—a key reason for the extraordinary level of service we deliver to our customers.

RKON does not accept unsolicited resumes from staffing agencies, search firms or any third parties.

About the position: The vCISO – GRC Advisor (Private Equity Carveout Focus) will play a critical advisory role in assessing and enhancing governance, risk, and compliance (GRC) for entities undergoing private equity carveouts or mergers and acquisitions (MA). The advisor will be responsible for evaluating the target or newly independent entity’s security posture, identifying GRC gaps, and assisting with the development of tailored roadmaps to address key risks and compliance needs. This role requires a strategic thinker who understands the fast-paced environment of PE-backed entities and can provide actionable recommendations without being directly involved in technical implementation.

Key Responsibilities Include:

GRC Assessment Gap Analysis: Conduct comprehensive GRC assessments, including the evaluation of existing policies, procedures, controls, and regulatory requirements (e.g., ISO 27001, NIST CSF, SOC 2).

Identify areas of risk, regulatory gaps, and weaknesses in security governance.

Evaluate third-party vendor risks and interdependencies in newly structured entities.

Roadmap Development: Develop strategic GRC roadmaps that align with the organization’s business goals and private equity timelines.

Prioritize recommendations to address short-term risks and long-term security objectives.

Provide actionable steps to help organizations meet key regulatory or compliance milestones.

Regulatory and Compliance Advisory: Provide expert guidance on compliance frameworks, including NIST, ISO 27001, SOC 2, and emerging privacy regulations.

Ensure that recommendations reflect PE-backed entities’ scalability needs.

Support compliance initiatives with documentation, reporting, and audit preparation.

Board and Stakeholder Reporting: Collaborate with executive leadership, private equity sponsors, and other key stakeholders to communicate risk findings and mitigation plans effectively.

Prepare executive-level reports summarizing key risks, recommendations, and compliance progress.

MA Transition Support: Advise on the security implications of post-merger integration, carveout transitions, or divestitures.

Identify transitional risks (e.g., access management, data segregation) and provide practical guidance to mitigate them.

Support operational resilience and business continuity during transitions.

Third-Party and Vendor Risk: Assess the security posture of critical vendors and service providers, ensuring proper risk management during onboarding and throughout the engagement lifecycle.

Policy and Framework Development: Assist clients in developing or updating GRC frameworks, policies, and procedures to reflect their newly independent operating model.

Required Technical and Professional Expertise

5+ years of experience in GRC, information security, or internal audit roles with a focus on risk assessment and compliance.

Familiarity with private equity environments, carveouts, or MA-related GRC challenges.

Strong knowledge of compliance regulations such as ISO 27001, NIST CSF, SOC 2, and emerging privacy laws (e.g., GDPR, CCPA).

Proven ability to develop GRC roadmaps and work with cross-functional teams to prioritize and implement recommendations.

Strong business acumen and the ability to communicate technical risks in business terms.

Experience engaging with executive leadership and providing board-level presentations.

Preferred Technical and Professional Expertise

Experience supporting PE-backed entities in MA, carveouts, or other high-pressure transition environments.

Familiarity with third-party risk management and vendor assessment frameworks.

Industry-related certifications: CISSP, ISO 27001 Lead Auditor, CISA, CGRC (formerly CAP), or CDPSE.

Powered by JazzHR

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Dev Ops Engineer
Phillips 66 YOU - Together we can fuel the future The Dev Ops Engineer is a member of the Corporate Business Solutions Organization. The position is accountable for representing Finance, Procurement,
Bilingual Lead Case Manager - JOR
Working At NYAP NYAP's commitment to doing what is best for children, youth and their families is a core value and one that we look for in our newest team members. 22 Days Off Each Year! Plus 11 Paid
Director of Corporate Development (Houston, TX)
Director of Corporate Development (Houston, TX) Job ID #: 29167 Location: TX-HOUSTON Functional Area: Management Position Type: Full Time Experience Required: 5 - 7 Years Relocation Provided: May be C
RN MICU
About the Unit The Medical Critical Care (MCC) is a 24-bed unit that cares for a wide variety of critically ill patients. The next year for MCC is an exciting time as the unit will be going through a
CNA LTC
Within ICONMA's Healthcare and Clinical division, we offer more than just a job; we offer you a path to a rewarding career. Our team is comprised of highly specialized recruitment professionals who ar
Regional Craft Employment - Southern California
Company Overview / Descripción general de la compañía Performance Contracting Group is a national specialty contractor that offers quality services and products to the commercial, industrial and non-r
Sales Associate Team Leader
Overview We are currently ready to hire a friendly, experienced Sales Associate/ Customer Service Team Leader that enjoys delivering 100% customer satisfaction! Starting Pay: $12/hour Responsibilities
Warehouse Shipping and Receiving Clerical Assistant
Position Description Ryder is immediately hiring for a Warehouse Shipping Receiving Associate in Lancaster, PA Warehouse Positions Pay Weekly Hourly Pay $20.98 Additional Pay: $1.00 per hour shift pay
On-Call Athletic Trainer
Position Summary(Basic Job Function)This is a temporary or an on-call position. Provides professional support. Responsibilities may include general business, science, medical, agricultural or other pr
Behavior Analyst (BCBA) (Part-Time)
Behavior Analyst (BCBA) (Part-Time) Behavioral Health (Mental Health, RBT, Psychologists, BCBA) Iowa City, Iowa Apply Description Ready for a fresh start? At ChildServe, we’re looking for Board Certif
Copyright 2023-2025 - www.zdrecruit.com All Rights Reserved