Risk & Governance Manager

1 week, 3 days ago
Full-time
Senior
Cybersecurity
Dropbox

Dropbox

Dropbox is a technology company that builds simple, powerful products for individuals and businesses. With over 700 million registered users worldwide, Dropbox offers file sync, sharing, online backup, cloud storage, collaboration tools, and more to st...

Internet Software & Services
1K-5K
Founded 2007

Description

  • Support the design, implementation, and continuous improvement of governance, risk, and compliance programs, including quantitative risk management, controls, compliance readiness, issue management, and risk reporting.
  • Plan and execute risk assessments, gap analyses, certification readiness activities, compliance reviews, and audit support across security, privacy, AI, reliability, third-party services, and operational risk.
  • Partner with cross-functional stakeholders to identify risks, assess impact and likelihood, define mitigation plans, assign owners, and track remediation through completion.
  • Drive risk reduction projects that strengthen the control environment, improve operational maturity, and enable risk-informed decision-making.
  • Coordinate improvements to risk management systems, workflows, documentation, reporting, and policies to improve consistency, transparency, and program effectiveness.
  • Collaborate with internal and external auditors on compliance engagements, including evidence collection, stakeholder coordination, gap remediation, and management reporting.
  • Support third-party service provider risk reviews and connect findings to enterprise risk, compliance, and customer trust objectives.
  • Lead or support cross-functional governance initiatives such as software asset management, control rationalization, audit readiness, and risk remediation programs.
  • Help implement and mature AI governance programs aligned to company AI principles, legal and regulatory obligations, and trust commitments.
  • Develop metrics, KPIs, dashboards, and reporting to communicate governance maturity, risk posture, compliance status, and remediation progress to leadership.
  • Support business resilience activities including business continuity planning, business impact assessments, tabletop exercises, incident readiness, recovery planning, and after-action reviews.

Requirements

  • 7+ years of experience building or maintaining risk, governance, compliance, audit, business resilience, security, privacy, or related programs.
  • Experience at a publicly traded, fast-paced SaaS company.
  • Experience managing and reducing AI, security, privacy, or reliability risks.
  • Knowledge of FAIR quantitative risk methodologies.
  • Familiarity with cloud computing and SaaS concepts, including logical access, agile development processes, security architecture, information security, network security, and privacy.
  • Strong project management and organizational skills.
  • Collaborative working style with strong relationship-building skills and the ability to work effectively with technical and non-technical teams.
  • Excellent writing, communication, organizational skills, and strong attention to detail.
  • Ability to confidently convey nuanced information to senior leaders.
  • Professional certifications such as AIGP (AI Governance Professional) or CIPP (Certified Information Privacy Professional) preferred.
  • Deep subject matter knowledge in AI governance, security, privacy, or reliability risk is preferred.
  • Self-starter with the ability to navigate ambiguity and own projects end-to-end is preferred.
  • Experience completing complex cross-functional projects that can become self-sustaining programs is preferred.
  • Strong executive presence is preferred.

Benefits

  • Competitive base salary of $160,700-$217,300 USD in US Zone 2.
  • Competitive base salary of $142,800-$193,200 USD in US Zone 3.
  • This role is not available in US Zone 1.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Penetration Tester

FirmaTRUST Internet Software & Services

A security team is hiring a Penetration Tester to assess Active Directory, network, and web application environments, support purple-team exercises, and help improve detection, response, and remediation across enterprise systems.

Active Directory AWS Azure Bash Burp Suite Metasploit Nmap PowerShell Python SIEM SOC
16 hours, 7 minutes ago

Director - Pentesting Solutions

BreachLock 51-250 Professional Services

Director – Pentesting Solutions at a growing cybersecurity company, leading offensive security and penetration testing delivery, team development, client advisory, and service expansion.

Cybersecurity Network Security OWASP Penetration Testing
16 hours, 7 minutes ago

Infosec - Offensive Security Intern

Rubrik 1K-5K IT Services

Rubrik is seeking an Offensive Security Intern to support real-world attack simulations, vulnerability research, and security testing across cloud and emerging AI attack surfaces.

AWS Azure Burp Suite Cybersecurity DNS GCP Go HTTP Java JavaScript Linux Metasploit Network Security Nmap Node.js Penetration Testing Python TCP/IP
1 day, 5 hours ago

Senior Risk Management Engineer

Grafana 1K-5K IT Services

Grafana Labs is hiring a Senior Risk Management Engineer to strengthen its enterprise risk management program across a fast-scaling, remote-first cloud platform.

1 day, 6 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers