We are looking for a Senior Governance, Risk, and Compliance (GRC) professional to lead and strengthen our compliance and risk management program across multiple frameworks, entities, and geographies.
Requirements
- 5+ years of experience in Governance, Risk, and Compliance, Information Security, Audit, or a related field.
- Strong practical experience with SOC 2, ISO 27001, and PCI DSS including implementation, control mapping, readiness assessments, evidence collection, and audit support.
- Proven experience working with compliance automation / GRC platforms such as Sprinto, Drata, Vanta, or similar tools.
- Experience building or managing a unified control framework that maps multiple standards into a centralized and scalable compliance model.
- Experience supporting multi-entity and multi-geographical compliance programs with both centralized governance and localized compliance requirements.
- Strong understanding of risk management, control design, issue tracking, remediation planning, and compliance operations.
- Experience writing and maintaining policies, standards, procedures, and governance documentation.
- Good understanding of third-party risk management, supplier due diligence, and control assurance processes.
- Strong knowledge of core security and compliance domains such as access control, asset management, vulnerability management, incident management, change management, and business continuity.
- Experience working with auditors, control owners, leadership teams, and cross-functional stakeholders.
- Strong communication, organization, and documentation skills.
- Experience in regulated industries such as fintech, payments, healthcare, Software as a Service, or cloud environments.
- Familiarity with cloud compliance and shared responsibility models across Amazon Web Services, Microsoft Azure, or Google Cloud Platform.
- Relevant certifications such as Certified Information Systems Auditor, Certified in Risk and Information Systems Control, Certified Information Systems Security Professional, ISO 27001 Lead Implementer, ISO 27001 Lead Auditor, or PCI Professional is a plus.
Benefits
- Generous Paid Time Off
- 401k Matching
- Retirement Plan
- Visa Sponsorship
- Four Day Work Week
- Generous Parental Leave
- Tuition Reimbursement
- Relocation Assistance
