Senior Staff Analyst, GRC

2 hours, 7 minutes ago
Full-time
Lead
Cybersecurity
Mozilla

Mozilla

Mozilla, the maker of Firefox, is a non-profit organization ensuring an open, safe, and accessible internet for all users worldwide.

Internet Software & Services
251-1K
Founded 2005
$2M raised

Description

  • Develop and maintain a comprehensive GRC strategy and roadmap aligned with business objectives.
  • Lead the creation and enforcement of standards, policies, controls, audits, and reporting across enterprise and product verticals.
  • Develop and operationalize a periodic risk assessment and management framework to prioritize and remediate critical issues.
  • Define and deliver scorecards and metrics that support data-driven decision making.
  • Ensure compliance with regulatory standards and frameworks including ISO, NIST, SOC 2, CCPA, and GDPR.
  • Lead internal and external audit activities, including tracking and resolving deficiencies and remediations.
  • Partner closely with Legal, IT, Finance, and Security to align on the GRC program and integrated risk management framework.
  • Define requirements and reporting for data lifecycle management across enterprise and product domains.
  • Work with data platform and legal teams on data lifecycle management controls and reporting.

Requirements

  • 10+ years of progressive experience developing and delivering an integrated GRC framework.
  • Strong understanding of regulatory frameworks, processes, and tools for building a robust GRC program.
  • Experience leading cross-functional requirements for product and enterprise teams to implement controls and compliance measures.
  • Relevant industry certifications such as CISA, CISSP, CISM, or CRISC.
  • Hands-on experience with technology and tools such as SIEM and BI tools.
  • Ability to develop root cause analysis and remediation plans to resolve risk deficiencies.
  • Strong critical thinking skills with the ability to drive long-term organizational impact.
  • Demonstrated bias for action and ability to navigate constraints to achieve business outcomes.
  • Ability to collaborate with and influence diverse stakeholders to address cross-functional challenges and lead change.

Benefits

  • Generous performance-based bonus plans for eligible employees.
  • Rich medical, dental, and vision coverage.
  • Generous retirement contributions with 100% immediate vesting.
  • Quarterly all-company wellness days.
  • Country-specific holidays plus a day off for your birthday.
  • One-time home office stipend.
  • Annual professional development budget.
  • Quarterly well-being stipend.
  • Considerable paid parental leave.
  • Employee referral bonus program.
  • Additional benefits such as life/AD&D, disability, and EAP, depending on country.
  • Remote work designation (#LI-REMOTE).
  • US hiring ranges of $151,000 to $259,000 USD depending on location tier.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Compliance Manager

Marqeta 251-1K Diversified Financial Services

Marqeta is hiring a Compliance Manager, Program Management to serve as the primary consumer compliance lead for one or more issuing bank partners and their associated programs, ensuring bank and regulatory requirements are operationalized across the program lifecycle.

22 minutes ago

Payroll Risk & Compliance Expert - LATAM

Remote 251-1K Professional Services

Remote is hiring a GP Compliance Expert to own payroll compliance for a country or region and help embed local regulatory requirements into its global payroll platform.

1 hour, 7 minutes ago

Regulatory and Site Start Up Specialist

Precision Medicine Group 251-1K Pharmaceuticals

Precision for Medicine is hiring a Regulatory and Site Start Up Specialist in Shanghai or Beijing to manage clinical trial regulatory submissions and site activation activities for oncology and rare disease studies.

1 hour, 22 minutes ago

Licensing Manager

Oklo 51-250 Electric Utilities

Oklo is hiring a Licensing Manager to support nuclear regulatory licensing activities for its advanced reactor technologies, working with engineering teams to ensure designs and documentation meet U.S. nuclear requirements.

1 hour, 52 minutes ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers