Назад
Company hidden
17 часов назад

Manager, Security Governance & Risk (AI Governance)

Формат работы
hybrid
Тип работы
fulltime
Грейд
lead
Английский
b2
Страна
US
Вакансия из списка Hirify.GlobalВакансия из Hirify Global, списка международных tech-компаний
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Manager, Security Governance & Risk (AI Governance): Leading Emburse's security governance, risk, compliance, and AI governance programs with an accent on enterprise risk management, GRC platform strategy, metrics, audit oversight, and third-party risk. Focus on building defensible risk reporting, translating AI regulations into controls, automating continuous monitoring, and developing a team of GRC professionals.

Location: Dallas, TX; hybrid workplace

Company

hirify.global develops AI-enabled products and operates a security, risk, compliance, and privacy program supporting cloud-based services.

What you will do

  • Lead, coach, and develop a team of GRC professionals across audit, privacy, and risk.
  • Own the GRC platform strategy, control architecture, integrations, data quality, automation, reporting, and continuous-controls-monitoring maturity.
  • Direct the enterprise information security risk management program, including risk assessments, the risk register, treatment planning, and remediation tracking.
  • Own third-party risk management, including vendor tiering, due diligence, contractual security requirements, monitoring, and reassessments.
  • Build executive and Board-level security metrics and reporting, using authoritative data sources and automated collection.
  • Establish AI governance for hirify.global products and internal employee and vendor use of AI, while translating emerging regulations and frameworks into controls.

Requirements

  • Bachelor’s degree and 7+ years of information security, risk, or compliance experience, including 2+ years of people management or equivalent team leadership.
  • Experience leading a security GRC function, enterprise risk management program, third-party risk management program, and audit activities.
  • Knowledge of PCI DSS, ISO 27001, ISO 27701, SOC 1, SOC 2, NIST, and Tx-RAMP, plus privacy requirements including GDPR, CPRA/CCPA, and PIPEDA.
  • Experience with AI governance or AI risk assessment; familiarity with the EU AI Act, NIST AI RMF, or ISO/IEC 42001 is strongly preferred.
  • Hands-on experience with Drata, Vanta, or comparable GRC and compliance automation platforms.
  • Strong analytical, communication, prioritization, judgment, and cross-functional influencing skills.

Nice to have

  • CISSP, CRISC, CISA, CIPP/E, CIPM, AIGP, or PMP certification.
  • Experience with SOX, business continuity and disaster recovery, cloud assurance, and commercial relationships with auditors, testing providers, and tooling vendors.

Culture & Benefits

  • People-leadership role with responsibility for coaching, career development, and delegation of ownership.
  • Cross-functional collaboration with Engineering, Product, Legal, Finance, Sales, auditors, and external partners.
  • Work in a rapid-paced environment with evolving AI governance standards and complex security risk decisions.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →