Manager, Compliance

🕒 il y a 1 mois

🇺🇸 États-Unis – Télétravail

💵 $149 850 - $185 000 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

🚔 Conformité

🗣️🇺🇸🇬🇧 Anglais requis

Postuler Maintenant
Trouver des Emplois à Distance Similaires

📊 Vérifiez votre score de CV pour ce poste

Améliorez vos chances d'obtenir un entretien en vérifiant votre score de CV avant de postuler.

Logo of Horizon3.ai

Horizon3.ai

51 - 200 employés

Fondée en 2019

La plateforme NodeZero™ permet à votre organisation de découvrir, corriger et vérifier en continu votre surface d'attaque exploitable. Réduisez votre risque de sécurité en trouvant de manière autonome les faiblesses de votre réseau, en sachant comment les prioriser et les corriger, et en vérifiant immédiatement que vos corrections fonctionnent. NodeZero offre des tests d'intrusion autonomes respectant l'environnement de production et d'autres opérations d'évaluation essentielles qui s'adaptent à vos environnements internes, externes, cloud et cloud hybride les plus vastes. Pas d'agents requis, pas de code à écrire, et pas de consultants à embaucher.

Description

• Lead, coach, and grow the Compliance team, including ownership of compliance operations, privacy, third-party risk management, and customer assurance • Set priorities and operating rhythms for the team, balancing strategic program maturity, customer-facing support, audit readiness, and cross-functional execution • Serve as the internal lead for compliance efforts, including control mapping, evidence collection, audit coordination, and continuous improvement of the control environment • Maintain and improve compliance against frameworks such as, but limited to: SOC 2, ISO 27001, NIST AI RMF, ISO 42001, DORA, UK Cyber Essentials, FedRAMP, and/or NIST 800-53 • Collaborate with cross-functional teams including Engineering, IT, Legal, HR, Product, Sales, and Customer Success to implement and validate control requirements • Oversee the organization’s data privacy program, ensuring compliance with GDPR, CCPA/CPRA, EU AI Act, and emerging U.S. state privacy laws • Maintain records of processing activities (RoPAs), manage data subject access requests (DSARs), and conduct privacy impact assessments (PIAs) • Partner closely with Legal and Product to advise on privacy-by-design, data minimization, and transparency practices • Own and manage the third-party risk management lifecycle, including onboarding reviews, periodic reassessments, contract/privacy reviews, and ongoing risk tracking • Conduct security and privacy due diligence on new vendors and partners supporting the SaaS product • Maintain a current inventory of vendors, subprocessors, and associated risk assessments • Serve as the primary point of contact for customer security questionnaires, RFPs, customer audits, and due diligence requests • Leverage existing documentation such as the SOC 2 report, pentest reports, whitepapers, and DPAs, while partnering with SMEs to provide accurate and timely responses • Support Sales, Customer Success, and Legal in accelerating deals by strengthening trust in our security and compliance posture • Create metrics, reporting, and risk narratives that communicate compliance posture, trends, and priorities to business owners and leadership • Identify opportunities to improve processes, tooling, and documentation that help the company scale its compliance and privacy programs efficiently • Demonstrate a commitment to integrity, process improvement, and customer satisfaction • Act as the primary owner for enterprise security risk, establishing and maturing the Risk Register to ensure all identified threats are centralized and tracked. • Manage the comprehensive risk lifecycle, overseeing everything from initial detection and impact analysis to remediation tracking and formal sign-off. • Implement a standardized risk scoring methodology that utilizes quantitative and qualitative metrics to drive objective prioritization across the entire organization. • Recruiting and onboarding talented individuals to support our organizational goals • Mentoring, coaching, equipping, and developing your team • Recognizing and retaining high performers • Leading horizontally with peer management and senior leaders.

🎯 Exigences

• Must have deep experience in Governance, Risk, and Compliance (GRC) within a B2B SaaS, cybersecurity, or similarly regulated technology environment • Must have a deep understanding of compliance frameworks such as SOC 2, ISO 27001, NIST AI RMF, DORA, and NIST 800-53, including experience leading annual audits • Must have expertise in GDPR, CCPA/CPRA, EU AI Act, and emerging U.S. state data privacy laws • Must have strong working knowledge of third-party risk management, vendor due diligence, and privacy/security review processes • Must have experience responding to security questionnaires, RFPs, customer audits, and due diligence requests • Must be knowledgeable in common SaaS infrastructure and business systems such as AWS, Okta, MDM, SIEM, and DLP • Must have strong written and verbal communication skills, with the ability to translate complex compliance concepts for both technical and non-technical stakeholders • Must be able to work independently and as part of a team, with a strong sense of ownership and accountability • Must have experience building metrics and reporting that communicate compliance risk and program health to leadership.

🏖️ Avantages

• Health insurance • Vision insurance • Dental insurance • Flexible vacation policy • Generous parental leave • Stock options

Postuler Maintenant

Emplois Similaires

🕒 il y a 1 mois

Regulatory Operations Specialist ensuring regulatory records accuracy and managing PECOS filings. Collaborating with various teams for compliance and credentialing activities.

🇺🇸 États-Unis – Télétravail

⏰ Temps Plein

🟢 Junior

🟡 Intermédiaire

🚔 Conformité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Centene Corporation

10 000+ employés

⚕️ Assurance santé

🤝 À but non lucratif

🌍 Impact social

Lead Compliance Corrections team addressing Medicaid, Medicare, and Commercial regulation compliance. Oversee remediation activities and mentor team members in healthcare compliance solutions.

🇺🇸 États-Unis – Télétravail

💵 $87 700 - $157 800 / an

⏰ Temps Plein

🟠 Senior

🚔 Conformité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Centene Corporation

10 000+ employés

⚕️ Assurance santé

🤝 À but non lucratif

🌍 Impact social

Corporate Ethics & Compliance Investigator responsible for managing sensitive internal investigations across various locations. Requires strong experience in compliance and risk mitigation within the healthcare sector.

🇺🇸 États-Unis – Télétravail

💵 $107 700 - $199 300 / an

⏰ Temps Plein

🟠 Senior

🔴 Expert

🚔 Conformité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Icmarc

-

💸 Finance

🤝 B2B

Manager, Compliance at MissionSquare managing compliance team and overseeing compliance programs and activities. Ensuring regulatory requirements are met and providing operational support for compliance.

🇺🇸 États-Unis – Télétravail

💵 $95 700 - $148 340 / an

⏰ Temps Plein

🟡 Intermédiaire

🟠 Senior

🚔 Conformité

🗣️🇺🇸🇬🇧 Anglais requis

🕒 il y a 1 mois

Icmarc

-

💸 Finance

🤝 B2B

Compliance Officer ensuring regulatory adherence at MissionSquare Retirement. Conducting reviews and supporting compliance operations to uphold standards.

🇺🇸 États-Unis – Télétravail

💵 $73 810 - $110 720 / an

⏰ Temps Plein

🟢 Junior

🟡 Intermédiaire

🚔 Conformité

🗣️🇺🇸🇬🇧 Anglais requis