Apply

Governance, Risk, and Compliance Lead

Posted 3 days agoViewed

View full description

πŸ’Ž Seniority level: Lead, 10+ years

πŸ’Έ Salary: 189000.0 - 205000.0 USD per year

πŸ” Industry: Fintech

🏒 Company: ExtendπŸ‘₯ 51-100πŸ’° $40,000,000 Series B over 3 years agoMobile PaymentsCredit CardsPaymentsFinTechSoftware

⏳ Experience: 10+ years

Requirements:
  • 10+ years of experience in information security, risk management, or compliance
  • 2+ years in a leadership role managing GRC programs
  • Strong knowledge of security frameworks (SOC2, NIST, ISO) and regulatory requirements
  • Experience with DFS500 compliance preferred
  • Demonstrated ability to develop and implement risk management strategies
  • Excellent communication skills - able to translate technical concepts for non-technical audiences
  • Experience with compliance automation tools and GRC platforms
  • Strong project management and organizational skills
  • Ability to work effectively in a fast-paced, remote environment
  • Relevant certifications (CISA, CISSP, CRISC, etc.) preferred
Responsibilities:
  • Lead Compliance Auditing Process
  • Manage annual SOC2 audit processes and maintain DFS500 compliance
  • Coordinate with external auditors and internal stakeholders
  • Develop and implement audit preparation procedures
  • Track remediation efforts for audit findings
  • Develop and Maintain GRC Documentation
  • Compile and update security, privacy, and risk policies
  • Ensure policies align with regulatory requirements and industry standards
  • Create and maintain standards, procedures, and controls documentation
  • Collaborate with cross-functional teams to implement GRC requirements
  • Manage Risk Management Program
  • Oversee risk assessment and analysis activities
  • Develop risk mitigation strategies and track implementation
  • Maintain risk register and reporting metrics
  • Facilitate business continuity and disaster recovery planning
  • Additional Responsibilities
  • Provide GRC guidance and thought leadership to senior management
  • Oversee vulnerability management processes
  • Lead security awareness and training initiatives
  • Support incident response activities when needed
  • Generate reports and metrics for executive leadership
Apply

Related Jobs

Apply

πŸ’Έ 189000.0 - 205000.0 USD per year

πŸ” Fintech

  • 10+ years of experience in information security, risk management, or compliance
  • 2+ years in a leadership role managing GRC programs
  • Strong knowledge of security frameworks (SOC2, NIST, ISO) and regulatory requirements
  • Experience with DFS500 compliance preferred
  • Demonstrated ability to develop and implement risk management strategies
  • Experience with compliance automation tools and GRC platforms
  • Relevant certifications (CISA, CISSP, CRISC, etc.) preferred
  • Lead Compliance Auditing Process
  • Manage annual SOC2 audit processes and maintain DFS500 compliance
  • Develop and Maintain GRC Documentation
  • Manage Risk Management Program
  • Provide GRC guidance and thought leadership to senior management
  • Oversee vulnerability management processes
  • Lead security awareness and training initiatives
  • Support incident response activities when needed
  • Generate reports and metrics for executive leadership
Posted 3 days ago
Apply

Related Articles

Posted about 1 month ago

Why remote work is such a nice opportunity?

Why is remote work so nice? Let's try to see!

Posted 8 months ago

Insights into the evolving landscape of remote work in 2024 reveal the importance of certifications and continuous learning. This article breaks down emerging trends, sought-after certifications, and provides practical solutions for enhancing your employability and expertise. What skills will be essential for remote job seekers, and how can you navigate this dynamic market to secure your dream role?

Posted 8 months ago

Explore the challenges and strategies of maintaining work-life balance while working remotely. Learn about unique aspects of remote work, associated challenges, historical context, and effective strategies to separate work and personal life.

Posted 8 months ago

Google is gearing up to expand its remote job listings, promising more opportunities across various departments and regions. Find out how this move can benefit job seekers and impact the market.

Posted 8 months ago

Learn about the importance of pre-onboarding preparation for remote employees, including checklist creation, documentation, tools and equipment setup, communication plans, and feedback strategies. Discover how proactive pre-onboarding can enhance job performance, increase retention rates, and foster a sense of belonging from day one.