HQ - GRC Lead

3 weeks ago
Full-time
Lead
Cybersecurity
Jobandtalent

Jobandtalent

Jobandtalent is a world-leading job marketplace that connects workers with companies through its innovative app. With a focus on workforce optimization, the platform offers thousands of flexible jobs and cutting-edge technology to streamline the hiring...

Professional Services
1K-5K
Founded 2009
$1300M raised

Description

  • Own and lead the company’s GRC strategy across SOX, ISO 27001, and GDPR.
  • Design, implement, and maintain SOX control frameworks, including documentation, testing, and audit readiness.
  • Build and manage the Information Security Management System (ISMS) aligned with ISO 27001.
  • Ensure GDPR compliance across data processing activities, including data mapping, DPIAs, and privacy controls.
  • Lead internal and external audits and serve as the primary point of contact for auditors.
  • Identify compliance gaps and drive remediation plans with technical and non-technical teams.
  • Develop governance policies, procedures, and risk management frameworks.
  • Partner with Engineering and Security teams to embed controls into systems and SDLC processes.
  • Monitor regulatory and compliance changes and translate them into actionable requirements.

Requirements

  • 8+ years of experience in GRC, Risk, Compliance, or IT Audit roles.
  • Strong hands-on experience with SOX compliance programs, including design, testing, and audit coordination.
  • Solid knowledge of ISO 27001 and experience managing or supporting ISMS implementation.
  • Practical experience with GDPR in a product or corporate environment.
  • Experience working with internal and external auditors.
  • Strong stakeholder management and communication skills across technical and non-technical teams.
  • Ability to translate regulatory requirements into scalable business processes.
  • Fluent English.
  • Experience in SaaS or product-led companies is preferred.
  • Experience in Big 4 firms such as Deloitte, EY, PwC, or KPMG, or similar audit environments is preferred.
  • Familiarity with cloud environments such as AWS, GCP, or Azure is preferred.
  • Security certifications such as CISA, CISM, or ISO 27001 Lead Implementer/Auditor are preferred.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Director, State Regulatory Affairs

JuneShine 11-50 Beverages

JuneShine Brands is hiring a Director of State Regulatory Affairs to lead hemp beverage advocacy and regulatory strategy across state markets, reporting to the CEO to help shape policy and support growth.

3 hours, 34 minutes ago

Compliance Analyst

Delta Exchange 11-50 Capital Markets

A crypto and fintech compliance professional will oversee AML, trade surveillance, and regulatory reporting functions at the company to detect suspicious activity and maintain alignment with current compliance requirements.

3 hours, 34 minutes ago

Ombudsman Analyst

CloudWalk 51-250 Diversified Financial Services

CloudWalk is hiring an Ombudsman Analyst in São Paulo to handle complex customer complaints and support legal and customer experience teams with effective resolutions.

Generative AI
3 hours, 49 minutes ago

Director of Compliance- GRC

Worth AI Internet Software & Services

Worth AI is hiring a Director of Compliance to lead compliance, governance, and risk programs for its AI-powered B2B fintech platform that supports SMB onboarding and underwriting for regulated financial services customers.

3 hours, 49 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers