GRC Analyst (Web3)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
GRC Analyst (Web3): Building and maturing the compliance foundation for a global crypto payments network with an accent on SOC 2, MiCA licensing, and regulatory alignment. Focus on operationalizing controls, managing the security issue lifecycle, and developing scalable BCP/DR programs.
Location: Remote (Europe)
Company
is building the infrastructure for the next era of the global economy, enabling consumers to pay and be paid with any tokenized asset through a seamless orchestration engine.
What you will do
- Own and strengthen the controls environment to ensure compliance requirements are implemented and maintained.
- Mature the GRC program, specifically focusing on SOC 2 operations and NIST framework alignment.
- Develop and maintain the Business Continuity and Disaster Recovery (BCP/DR) program, including BIAs and recovery runbooks.
- Conduct vendor and third-party risk assessments for a global network of partners.
- Support MiCA licensing and U.S. Money Transmitter License applications through due diligence and regulatory reporting.
- Manage the security issue lifecycle and partner with technical teams to drive remediation efforts.
Requirements
- 3–5 years of hands-on GRC experience building and managing compliance programs.
- Deep familiarity with frameworks such as SOC 2, NIST, PCI, MiCA, NYDFS, or CCPA.
- Experience building Business Continuity and Disaster Recovery programs.
- Proficiency in the full risk lifecycle, including assessment, control testing, and issue management.
- Must be based in Europe.
- Regular use of AI tools to increase efficiency in policy development and program management.
Nice to have
- Experience in fintech, crypto, payments, or other heavily regulated industries.
- Familiarity with GRC platforms such as Vanta, Drata, or Archer.
Culture & Benefits
- Competitive salary and equity packages.
- Comprehensive health coverage for employees and their families.
- Unlimited PTO policy.
- Dedicated budget for professional growth, including courses, conferences, and certifications.
- Remote-friendly work environment with top-tier tools and equipment.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →