The right candidate is responsible for managing security compliance for BCG's software and data offerings in alignment with AICPA's SOC 1 and SOC 2 framework and ISO 27001 standards. This role requires a deep understanding of fundamental security compliance frameworks and the ability to navigate security and compliance audit processes effectively. The candidate must be a proactive team player, capable of communicating complex information clearly to guide solutions and foster collaboration within the team. Strong customer service skills are essential for developing positive relationships with internal stakeholders, ensuring their needs are met while maintaining compliance standards. The successful candidate will possess excellent interpersonal and communication skills, both written and oral, which are crucial for partnering with team members and stakeholders across the business. This collaboration will focus on identifying compliance gaps, issues, and risks, and working together to address them. The role involves working closely with auditors, managing audit request lists, and taking ownership of gathering security audit evidence. The candidate will coordinate audits and conduct reviews of deliverables to verify compliance with internal policies and industry best practices, ensuring thoroughness and attention to detail in all audit and compliance requests. Additionally, the candidate will be responsible for ensuring clear and expedient escalations with informed recommendations to management. They will work as part of a team to achieve common goals in a dynamic setting, identifying and leveraging lessons learned and best practices from audits to foster a culture of continuous improvement within BCG. A broad working knowledge in key areas of security compliance frameworks, including SOC 1, SOC 2, HITRUST, and ISO 27001, is essential for success in this role.