Senior Risk Management/GRC Manager

Job not on LinkedIn

🔥 0 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Zero Hash

Zero Hash

51 - 200 employees

💳 Fintech

₿ Crypto

🌐 Web 3

💰 $105M Series D on 2022-01

Fintech • Crypto • Web 3

Zero Hash is a company that provides infrastructure solutions for the integration of crypto and stablecoin products into various platforms. By offering API-first technology and turnkey regulatory infrastructure, Zero Hash enables businesses, especially in the fintech, payments, and banking sectors, to develop and launch crypto and stablecoin products efficiently and compliantly. Their services cover a wide range of applications including investments, trading platforms, payment gateways, and brands, focusing on simplifying the process of managing custody, liquidity, and settlement for their clients. Zero Hash supports over 60 digital assets and is operational in over 200 countries.

📋 Description

• Develop, implement, and maintain the organization’s security, governance, risk management, and compliance programs within zerohash’s European Risk Function, focusing on DORA compliance • Own and manage day-to-day compliance with DORA • Monitor laws, regulations, and industry standards related to IT security and compliance • Manage technical compliance programs, conduct assessments, and prepare audit documentation • Develop and maintain governance policies, procedures, standards, and technical frameworks • Manage ISO 27001, SOC 1, and SOC 2 governance frameworks with global security and audit teams • Establish governance committees and facilitate policy and procedure reviews • Develop and implement IT security strategies and solutions • Manage and monitor firewalls, intrusion detection systems, and endpoint protection • Conduct security assessments, vulnerability scans, penetration tests, forensic investigations, and root cause analyses • Identify, assess, prioritize, monitor, and report technical risks and control effectiveness • Develop risk mitigation strategies, action plans, security policies, and procedures • Oversee technical incident management and corrective actions • Develop and deliver technical security, GRC, and compliance training • Collaborate with auditors, regulators, technical teams, management, staff, and global response teams • Prepare and present reports to senior management and the board of directors • Maintain accurate technical records and documentation

🎯 Requirements

• Prior experience in a Risk Management / GRC leadership role is required • Prior experience with the Digital Operational Resilience Act (DORA) is required • Proven experience in technical IT security, governance, risk management, and compliance roles • Strong technical knowledge of IT governance frameworks, regulatory requirements, and best practices • Experience with SOC 1, SOC 2, and ISO 27001 is strongly preferred • Strong analytical and problem-solving skills with attention to detail • Ability to manage multiple technical projects and priorities in a fast-paced environment • Experience with technical security and GRC tools and software • Excellent communication and interpersonal skills, with the ability to collaborate effectively with cross-functional teams • Proficiency in risk assessment methodologies and tools • Experience with IT audit processes and procedures • Knowledge of GDPR, NYDFS Part 500, and other relevant laws and regulations • CISSP, CISM, CRISC, or CISA certification is a plus

🏖️ Benefits

• Chance to earn equity • Maternity & Paternity leave • WeWork Membership • WFH Yearly Stipend • L&D Stipend (after 6 months)

Apply Now