GRC Director - Position reports to company headquarters in Santa Clara, telecommuting permitted
Company
Ushur
Location
South Bay
Type
Full Time
Job Description
Responsibilities
- Establish best in class processes, operations, engineering & automation for managing and monitoring compliance at the cloud Application, Platform, and Infrastructure levels.
- Lead strategy and execution of the cloud Common Control Framework (CCF) and Continuous Control Monitoring (CCM) programs to address current domains (i.e. Security, Privacy, Quality, Sustainability and Accessibility) and third party attestations/certification (i.e. ISO 27001, ISO 27017, ISO 27018, ISO 27701, SOC 1, SOC 2, NIST 800-53, MTCS, IRAP, German C5 and more).
- Develop and maintain policy and procedures that drives key activities.
- Drive compliance onboarding and significant change request process along with cloud risk management teams to identify new product applications, features, deployments, and functionality to ensure timely inclusion in compliance programs and certifications.
- Evangelize CCF to drive control owner awareness and education to ensure controls are implemented, maintained and compliant.
- Develop and lead new domain/certification ingestion process for new standards, regulations and/or other requirement sets presented to address regulated markets, risk mitigation and/or company forward thinking.
- Drive efficiency in the compliance process through automation and rationalizing configuration/code-based compliance controls over manual process and controls.
- Work with engineering teams on new cloud and datacenter deployments, addressing compliance requirements as part of initial design and deployment.
Requirements
- Bachelor’s degree in Computer Science, Computer Engineering or related field of study, or foreign equivalent.Â
- For foreign equivalent, employer will accept any combination of degrees, diplomas and/or completed examinations deemed equivalent by a professional credential evaluator to a U.S. Bachelor’s degree in Computer Science, Computer Engineering or related field of study.
- 7 years of related professional experience, including 5 years of hands-on experience in Governance Risk and Compliance fields.
- Deep understanding of commercial certification and attestation to include SOC 1, SOC2, ISO 27001, ISO 27701, PCI-DSS, HITRUST, Singapore MTCS, and Australia IRAP.
- Demonstrated ability to build out scalable compliance systems and processes for complex environments and regulations.
- Demonstrated ability to build and lead product development.
- Deep understanding of compliance audit testing and design of tests.
- Self-motivated, self-directed, and able to thrive in a fast-paces environment with a passion to make an impact.
- Ability to work across the organization to evangelize and influence company compliance efforts.
- Demonstrated ability to interface successfully with customers and engineering teams in critical and challenging audits and conversations.
- Strong leadership skills, strategy, analytical, problem-solving, decision-making; works under minimum direction.
- Prior experience with an SaaS, PaaS or IAAS Cloud environment.
- Position reports to company headquarters in Santa Clara, telecommuting permitted
Date Posted
06/12/2024
Views
1
Similar Jobs
Sales Development Representative- French - Qualtrics
Views in the last 30 days - 0
Qualtrics is a company that creates software for top brands to enhance customer experiences team performance and product design They are looking for a...
View DetailsAI Solution Manager, ServiceNow Platform - ServiceNow
Views in the last 30 days - 0
ServiceNow a global market leader in AIenhanced technology is seeking an AI Solution Manager to lead the implementation of AI solutions for complex bu...
View DetailsSenior Software Engineer, Devices Automation - Block
Views in the last 30 days - 0
Square a company that has evolved since its inception in 2009 is seeking a Software Engineer with extensive experience in embedded devices and test en...
View DetailsSenior Systems Infrastructure Engineer - BlackLine
Views in the last 30 days - 0
BlackLine is seeking a highly skilled Infrastructure Engineer to design build and manage corporate environments across Azure AWS and GCP platforms The...
View DetailsSolution Manager, Workday - BlackLine
Views in the last 30 days - 0
BlackLine is a leading provider of cloud software that automates and controls the entire financial close process The company is committed to modernizi...
View DetailsSenior Program Manager, Global Occupational Health & Safety - ServiceNow
Views in the last 30 days - 0
ServiceNow is seeking a Health Safety Program Manager to design implement and lead a comprehensive corporate safety program The role involves develop...
View Details