Risk & Governance Manager

1 week, 1 day ago
Full-time
Senior
Cybersecurity
Dropbox

Dropbox

Dropbox is a technology company that builds simple, powerful products for individuals and businesses. With over 700 million registered users worldwide, Dropbox offers file sync, sharing, online backup, cloud storage, collaboration tools, and more to st...

Internet Software & Services
1K-5K
Founded 2007

Description

  • Support the design, implementation, and continuous improvement of governance, risk, and compliance programs, including FAIR-based quantitative risk management, controls, compliance readiness, issue management, and risk reporting.
  • Plan and execute risk assessments, gap analyses, certification readiness activities, compliance reviews, and audit support across security, privacy, AI, reliability, third-party services, and operational risk.
  • Partner with cross-functional stakeholders to identify risks, assess impact and likelihood, define mitigation plans, assign owners, and track remediation through completion.
  • Drive risk reduction projects that strengthen the control environment, improve operational maturity, and support risk-informed decision-making.
  • Coordinate improvements to risk management systems, workflows, documentation, reporting, and policies.
  • Collaborate with internal and external auditors on evidence collection, stakeholder coordination, gap remediation, and management reporting.
  • Support third-party service provider risk reviews and connect findings to enterprise risk, compliance, and customer trust objectives.
  • Lead or support cross-functional governance initiatives such as software asset management, control rationalization, audit readiness, and risk remediation programs.
  • Help implement and maintain Dropbox’s AI governance framework, company AI Principles, and trust policies.
  • Support business resilience activities including continuity planning, impact assessments, tabletop exercises, incident readiness, recovery planning, and after-action reviews.

Requirements

  • 7+ years of experience building or maintaining risk, governance, compliance, audit, business resilience, security, privacy, or related programs.
  • Experience at a publicly traded, fast-paced SaaS company.
  • Experience managing and reducing AI, security, privacy, or reliability risks.
  • Knowledge of FAIR quantitative risk methodologies.
  • Familiarity with cloud computing and SaaS concepts, including logical access, agile development, security architecture, information security, network security, and privacy.
  • Strong project management and organizational skills.
  • Collaborative working style with strong relationship-building skills and the ability to work effectively with technical and non-technical teams.
  • Excellent writing, communication, organizational skills, and strong attention to detail.
  • Ability to confidently convey nuanced information to senior leaders.
  • Related professional certifications such as AIGP (AI Governance Professional) or CIPP (Certified Information Privacy Professional) preferred.
  • Deep subject matter knowledge in AI governance, security, privacy, or reliability risk preferred.
  • Self-starter with the ability to navigate ambiguity, own and deliver projects end-to-end, and demonstrate strong executive presence preferred.
  • Experience completing complex cross-functional projects that can turn into self-sustaining programs as part of a risk team preferred.

Benefits

  • Canada pay range: $120,300 to $162,700 CAD.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Penetration Tester

FirmaTRUST Internet Software & Services

A security team is hiring a Penetration Tester to assess Active Directory, network, and web application environments, support purple-team exercises, and help improve detection, response, and remediation across enterprise systems.

Active Directory AWS Azure Bash Burp Suite Metasploit Nmap PowerShell Python SIEM SOC
16 hours, 6 minutes ago

Director - Pentesting Solutions

BreachLock 51-250 Professional Services

Director – Pentesting Solutions at a growing cybersecurity company, leading offensive security and penetration testing delivery, team development, client advisory, and service expansion.

Cybersecurity Network Security OWASP Penetration Testing
16 hours, 6 minutes ago

Infosec - Offensive Security Intern

Rubrik 1K-5K IT Services

Rubrik is seeking an Offensive Security Intern to support real-world attack simulations, vulnerability research, and security testing across cloud and emerging AI attack surfaces.

AWS Azure Burp Suite Cybersecurity DNS GCP Go HTTP Java JavaScript Linux Metasploit Network Security Nmap Node.js Penetration Testing Python TCP/IP
1 day, 5 hours ago

Senior Risk Management Engineer

Grafana 1K-5K IT Services

Grafana Labs is hiring a Senior Risk Management Engineer to strengthen its enterprise risk management program across a fast-scaling, remote-first cloud platform.

1 day, 6 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers