Grc, privacy & ai governance consultant
Summary
A customer-facing consultant who implements and configures Command Post's cybersecurity platform across GRC, privacy, and AI governance — mapping frameworks like ISO 27001, ISO 42001 and NIST CSF to customer controls, supporting risk assessments, presales demos and platform onboarding. Not a developer role, but requires technical comfort working with engineering teams.
Command Post is expanding its cybersecurity and governance capabilities and is looking for a GRC, Privacy & AI Governance Consultant to join our growing team.
This is a hands‑on, customer‑facing role supporting the delivery and continued development of the Command Post (CP) platform, with particular focus on GRC, Privacy, AI Governance / AI Ops, presales and platform support.
We are looking for someone who understands governance and compliance in practice — not simply someone who can quote frameworks. You should be comfortable working with customers to understand their requirements, translate them into controls and workflows, configure technology to support them, and demonstrate how governance can become an operational capability rather than a spreadsheet exercise.
What you'll be doing GRC & Risk
Support implementation and configuration of CP's GRC capabilities.
Work with customers on risk registers, controls, assessments, exceptions, remediation and compliance programmes.
Support implementation and mapping of frameworks including ISO 27001, ISO 42001, NIST CSF and other regional/international standards.
Help customers link assets, vulnerabilities, risks, controls, exceptions and remediation activities into an integrated governance process.
Assist with third‑party risk, compliance evidence and audit‑readiness activities.
Privacy
Support deployment and operation of CP privacy capabilities.
Assist customers with privacy assessments, data inventories, processing activities, consent and governance workflows.
Support requirements associated with applicable privacy and data‑protection regulations.
Help translate privacy obligations into practical technical and operational controls.
AI Governance & AI Ops
Support customers adopting governance for AI, LLM and machine‑learning environments.
Assist with ISO 42001, AI risk assessments, AI inventories, control implementation and evidence management.
Support the development of CP's emerging AI Ops / AI governance services, including monitoring, governance, assurance and operational oversight of enterprise AI.
Work with technical teams to translate AI risks and governance requirements into measurable controls.
Participate in customer workshops, demonstrations and discovery sessions.
Understand customer challenges and map CP capabilities to their requirements.
Support proposals, RFP/RFI responses, solution designs and proof‑of‑concepts.
Deliver clear and credible demonstrations of GRC, Privacy and AI Governance capabilities to both technical and business stakeholders.
Platform & Customer Support
Support onboarding, configuration and ongoing operation of customer environments.
Investigate functional issues and coordinate resolution with engineering teams.
Participate in UAT and validation of new platform capabilities.
Capture customer requirements and provide structured feedback into the CP product roadmap.
Help develop implementation guides, customer documentation, use cases and training material.
What we're looking for We are particularly interested in candidates with experience across several of the following areas:
GRC, cybersecurity governance, risk or compliance
ISO 27001 implementation or auditing
ISO 42001 / AI governance
NIST CSF or similar cybersecurity frameworks
Privacy and data‑protection programmes
Risk assessments and control implementation
Audit and compliance evidence management
Customer‑facing cybersecurity consulting
Saa S or cybersecurity platform implementation
Technical presales and solution demonstrations
You do not need to be a software developer, but you should be technically comfortable and able to work effectively with cybersecurity engineers, developers and customer technical teams.
Experience with AI governance, privacy technology, GRC platforms or security automation would be particularly valuable.
The person we're looking for his role will suit someone who is:
Comfortable working across both consulting and technology
Confident engaging directly with customers
Able to take ownership rather than waiting for detailed instructions
Curious about emerging cybersecurity and AI risks
Comfortable working in a fast‑moving product environment
Able to translate regulatory and governance requirements into practical solutions
Interested in helping build and shape new capabilities rather than simply operating an established product
Why Command Post? Command Post is building an integrated cybersecurity platform connecting asset discovery, vulnerability management, risk, compliance, privacy, AI governance and security operations.
Rather than operating these disciplines as isolated tools and processes, CP is focused on creating a connected view of organisational risk — with automation and AI helping organisations continuously understand their assets, risks, obligations and required actions.