Manager, Compliance

🕒 vor 21 Tagen

🇺🇸 Vereinigte Staaten – Remote

💵 $149.850 - $185.000 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

🚔 Compliance

🗣️🇺🇸🇬🇧 Englisch erforderlich

Jetzt Bewerben
Ähnliche Remote-Jobs finden

📊 Überprüfen Sie Ihre Lebenslauf-Bewertung für diese Stelle

Verbessern Sie Ihre Chancen auf ein Vorstellungsgespräch, indem Sie Ihre Lebenslauf-Bewertung vor der Bewerbung überprüfen.

Logo of Horizon3.ai

Horizon3.ai

51 - 200 Mitarbeiter

Gegründet 2019

Die NodeZero™-Plattform befähigt Ihr Unternehmen, Ihre ausnutzbare Angriffsfläche kontinuierlich zu identifizieren, zu beheben und die Wirksamkeit der Maßnahmen zu verifizieren. Reduzieren Sie Ihr Sicherheitsrisiko, indem Sie Schwachstellen in Ihrem Netzwerk autonom finden, wissen, wie Sie sie priorisieren und beheben, und umgehend verifizieren, dass Ihre Maßnahmen wirken. NodeZero liefert produktionssichere, autonome Penetrationstests sowie weitere zentrale Assessments, die über Ihre größten internen, externen, Cloud- und Hybrid-Cloud-Umgebungen skalieren. Keine Agents erforderlich, kein Code zu schreiben, keine Berater zu beauftragen.

Beschreibung

• Lead, coach, and grow the Compliance team, including ownership of compliance operations, privacy, third-party risk management, and customer assurance • Set priorities and operating rhythms for the team, balancing strategic program maturity, customer-facing support, audit readiness, and cross-functional execution • Serve as the internal lead for compliance efforts, including control mapping, evidence collection, audit coordination, and continuous improvement of the control environment • Maintain and improve compliance against frameworks such as, but limited to: SOC 2, ISO 27001, NIST AI RMF, ISO 42001, DORA, UK Cyber Essentials, FedRAMP, and/or NIST 800-53 • Collaborate with cross-functional teams including Engineering, IT, Legal, HR, Product, Sales, and Customer Success to implement and validate control requirements • Oversee the organization’s data privacy program, ensuring compliance with GDPR, CCPA/CPRA, EU AI Act, and emerging U.S. state privacy laws • Maintain records of processing activities (RoPAs), manage data subject access requests (DSARs), and conduct privacy impact assessments (PIAs) • Partner closely with Legal and Product to advise on privacy-by-design, data minimization, and transparency practices • Own and manage the third-party risk management lifecycle, including onboarding reviews, periodic reassessments, contract/privacy reviews, and ongoing risk tracking • Conduct security and privacy due diligence on new vendors and partners supporting the SaaS product • Maintain a current inventory of vendors, subprocessors, and associated risk assessments • Serve as the primary point of contact for customer security questionnaires, RFPs, customer audits, and due diligence requests • Leverage existing documentation such as the SOC 2 report, pentest reports, whitepapers, and DPAs, while partnering with SMEs to provide accurate and timely responses • Support Sales, Customer Success, and Legal in accelerating deals by strengthening trust in our security and compliance posture • Create metrics, reporting, and risk narratives that communicate compliance posture, trends, and priorities to business owners and leadership • Identify opportunities to improve processes, tooling, and documentation that help the company scale its compliance and privacy programs efficiently • Demonstrate a commitment to integrity, process improvement, and customer satisfaction • Act as the primary owner for enterprise security risk, establishing and maturing the Risk Register to ensure all identified threats are centralized and tracked. • Manage the comprehensive risk lifecycle, overseeing everything from initial detection and impact analysis to remediation tracking and formal sign-off. • Implement a standardized risk scoring methodology that utilizes quantitative and qualitative metrics to drive objective prioritization across the entire organization. • Recruiting and onboarding talented individuals to support our organizational goals • Mentoring, coaching, equipping, and developing your team • Recognizing and retaining high performers • Leading horizontally with peer management and senior leaders.

🎯 Anforderungen

• Must have deep experience in Governance, Risk, and Compliance (GRC) within a B2B SaaS, cybersecurity, or similarly regulated technology environment • Must have a deep understanding of compliance frameworks such as SOC 2, ISO 27001, NIST AI RMF, DORA, and NIST 800-53, including experience leading annual audits • Must have expertise in GDPR, CCPA/CPRA, EU AI Act, and emerging U.S. state data privacy laws • Must have strong working knowledge of third-party risk management, vendor due diligence, and privacy/security review processes • Must have experience responding to security questionnaires, RFPs, customer audits, and due diligence requests • Must be knowledgeable in common SaaS infrastructure and business systems such as AWS, Okta, MDM, SIEM, and DLP • Must have strong written and verbal communication skills, with the ability to translate complex compliance concepts for both technical and non-technical stakeholders • Must be able to work independently and as part of a team, with a strong sense of ownership and accountability • Must have experience building metrics and reporting that communicate compliance risk and program health to leadership.

🏖️ Vorteile

• Health insurance • Vision insurance • Dental insurance • Flexible vacation policy • Generous parental leave • Stock options

Jetzt Bewerben

Ähnliche Jobs

🕒 vor 21 Tagen

SpyCloud

51 - 200

🔒 Cybersecurity

🔐 Sicherheit

🏢 Unternehmen

Manager of Governance, Risk and Compliance at SpyCloud overseeing compliance initiatives and risk management processes. Collaborating with legal, engineering, and security teams for operational excellence.

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 21 Tagen

Regulatory Operations Specialist ensuring regulatory records accuracy and managing PECOS filings. Collaborating with various teams for compliance and credentialing activities.

🇺🇸 Vereinigte Staaten – Remote

⏰ Vollzeit

🟢 Junior

🟡 Mittelstufe

🚔 Compliance

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 21 Tagen

Centene Corporation

10.000+ Mitarbeiter

⚕️ Krankenversicherung

🤝 Non-Profit

🌍 Soziale Wirkung

Corporate Ethics & Compliance Investigator responsible for managing sensitive internal investigations across various locations. Requires strong experience in compliance and risk mitigation within the healthcare sector.

🇺🇸 Vereinigte Staaten – Remote

💵 $107.700 - $199.300 / Jahr

⏰ Vollzeit

🟠 Senior

🔴 Experte

🚔 Compliance

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 21 Tagen

Centene Corporation

10.000+ Mitarbeiter

⚕️ Krankenversicherung

🤝 Non-Profit

🌍 Soziale Wirkung

Lead Compliance Corrections team addressing Medicaid, Medicare, and Commercial regulation compliance. Oversee remediation activities and mentor team members in healthcare compliance solutions.

🇺🇸 Vereinigte Staaten – Remote

💵 $87.700 - $157.800 / Jahr

⏰ Vollzeit

🟠 Senior

🚔 Compliance

🗣️🇺🇸🇬🇧 Englisch erforderlich

🕒 vor 21 Tagen

Icmarc

-

💸 Finanzen

🤝 B2B

Manager, Compliance at MissionSquare managing compliance team and overseeing compliance programs and activities. Ensuring regulatory requirements are met and providing operational support for compliance.

🇺🇸 Vereinigte Staaten – Remote

💵 $95.700 - $148.340 / Jahr

⏰ Vollzeit

🟡 Mittelstufe

🟠 Senior

🚔 Compliance

🗣️🇺🇸🇬🇧 Englisch erforderlich