Hybrid Governance, Risk and Compliance Manager

Posted 16 hours ago

Apply now

About the role

  • Governance, Risk and Compliance Manager leading LEAP’s global GRC function. Connecting security and compliance practices to business growth in a technology environment.

Responsibilities

  • Own and mature LEAP’s global governance, risk, and compliance program, aligned to SOC 2, ISO 27001, NIST CSF, and relevant regional frameworks.
  • Lead audits and independent assessments, acting as the primary contact for external auditors and assessors.
  • Maintain a single source of truth for security policies, controls, and evidence across LEAP and its product portfolio.
  • Ensure compliance scales as the business grows, acquires products, and expands into new markets.
  • Establish and run an enterprise risk management framework, including risk assessments and executive risk acceptance.
  • Conduct access reviews, control effectiveness reviews, and third-party risk assessments, providing pragmatic guidance on risk and trade-offs.
  • Own enterprise security questionnaires, RFPs, and due diligence responses, reducing friction in the sales process.
  • Maintain LEAP’s client-facing Trust Centre and standardise responses to recurring customer questions.
  • Act as the escalation point for complex assurance topics, including AI usage, data handling, and product architecture.
  • Oversee security awareness and training programs to lift security maturity across the organisation.
  • Work closely with Information Security, Engineering, IT, Product, and Sales to embed compliance without slowing delivery.
  • Use automation and tooling to improve efficiency, reduce reactive work, and help build a scalable, sustainable security function.

Requirements

  • Proven experience in GRC, Technology Risk, or Information Security Compliance roles within SaaS, cloud, or technology environments.
  • Hands-on experience owning SOC 2 and/or ISO 27001 programs, and supporting enterprise customer security due diligence.
  • Strong understanding of cloud infrastructure, SaaS architectures, and modern software delivery practices.
  • Experience leading audits, managing evidence, and engaging directly with customers, auditors, and internal stakeholders.
  • Ability to translate technical security controls into clear, business-focused explanations that support sales and executive decision-making.
  • Experience operating in complex or multi-entity environments, and working pragmatically with changing requirements and incomplete information.
  • Prior people leadership experience, or readiness to build and lead a small GRC team.

Benefits

  • Flexible and hybrid working.
  • Enjoy an additional paid wellbeing day every year.
  • Free gym membership.
  • Corporate dental plan.
  • Weekly massages in the office.
  • Celebrations.
  • Socials.
  • Sports teams.
  • Access to sailing and yacht events.
  • Opportunities for career growth.

Job title

Governance, Risk and Compliance Manager

Job type

Experience level

Mid levelSenior

Salary

Not specified

Degree requirement

No Education Requirement

Tech skills

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job