Director - Governance, Risk and Compliance
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
TL;DR
Director - Governance, Risk and Compliance (Cybersecurity): Leading a global GRC team to drive cybersecurity governance, risk, and compliance activities with an accent on strategic management, third-party risk, and regulatory alignment. Focus on building high-performing teams, maturing security frameworks, and partnering with cross-functional stakeholders to ensure robust technology risk management.
Location: Must be based in or able to work from Norwalk, CT or New York City, USA
Salary: $185,000–$220,000
Company
provides flexible, open data and software solutions for over 200,000 investment professionals worldwide.
What you will do
- Develop and implement an Information Security GRC strategy aligned with business objectives and regulatory requirements.
- Manage the lifecycle of security policies and standards, including SOX, SOC2, ISO 27001, and DORA.
- Lead third-party risk management and customer trust processes, including assessments and remediation.
- Define and monitor key risk and compliance indicators (KRIs/KPIs) to ensure program effectiveness.
- Coordinate technology audits and collaborate with external auditors to meet compliance timelines.
- Foster a cyber-aware culture and mentor a high-performing GRC team.
Requirements
- Bachelor’s degree in IT, Computer Science, or related field required.
- 15+ years of experience in information security focusing on GRC domains.
- Must be legally authorized to work in the United States without employer sponsorship.
- Strong knowledge of IT risk assessment, IT General Controls, and NIST framework.
- Expertise in managing GRC platforms and translating risk data into executive dashboards.
- Proven ability to partner with Legal, Procurement, and Engineering teams.
Nice to have
- Master’s degree in a related field.
- Professional certifications such as CISA or CISSP.
- Familiarity with AI tools and trends, including generative and agentic AI.
Culture & Benefits
- Opportunity to join a growing, innovative firm with a 40-year track record.
- Dedicated time for career development, conference attendance, and online learning.
- Robust social community with volunteerism, intramural sports, and team-building events.
- Inclusive environment supported by business resource groups.
- Comprehensive benefits package including health and wellness support.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →