Governance, Risk, and Compliance Manager at estateXchange ensuring regulatory compliance for enterprise clients. Leading security and risk management initiatives in a modern platform environment.
Responsibilities
Own and run SOC 2 Type 2 and ISO 27001 audit cycles end-to-end (evidence coordination, auditor liaison, remediation tracking)
Maintain and evolve our Information Security Management System (ISMS)
Design, implement and uplift GRC policies and practices
Drive continuous improvement across compliance maturity
Lead responses to enterprise security questionnaires and due diligence processes
Maintain standard security documentation and policy references
Act as a key point of contact for customers on security posture
Manage third-party vendor risk assessments
Build and mature our enterprise risk management framework
Oversee business continuity, disaster recovery and incident response readiness
Strengthen AI governance controls and security oversight
Partner with Engineering on secure SDLC practices and infrastructure security
Work closely with the Head of Engineering on secure architecture decisions
Partner with IT Operations on access management, vulnerability management and evidence collection
Support Sales and Legal across the procurement lifecycle
Help shape and embed a security-first culture across the organisation
Requirements
5 - 10+ years in GRC, ideally within a SaaS / cloud-native environment and/or a large financial institution
Deep, hands-on experience running SOC 2 and ISO 27001 programmes (not just exposure - ownership)
Experience using compliance automation platforms (Vanta preferred, Drata or similar)
Compliance Analyst at Severn Trent Water leading data and monitoring strategy to optimize environmental impact. Designing insights through complex data analytics and enhancing decision - making across teams.
Consultor GRC responsável pela implementação de projetos de Governança, Riscos e Compliance na Redbelt Security. Avaliação de processos e controles para segurança cibernética e melhoria contínua.
Policy & Regulatory Affairs Manager at Emerald AI influencing regulatory strategy and engaging with stakeholders. Analyzing policy developments and aligning business objectives with regulatory context.
Head of Compliance overseeing regulatory compliance for fintech company revolutionizing healthcare payments. Leading a high - performing compliance team ensuring adherence to evolving regulations.
BIC Compliance Analyst ensuring compliance with risk management policies related to engagement letters and conflict waivers. Collaborating with partners and supporting firm attorneys with conflicts analysis.
IT Compliance Coordinator responsible for IT compliance and resilience across Hydro's operations. Overseeing projects, audits, and collaboration with IT and business stakeholders to ensure adherence to regulations and frameworks.
Director, Global Regulatory Affairs leading Protara's ex - US regulatory strategy and operational execution for clinical studies in oncology, cell and gene therapy, and rare diseases.
Manager ensuring compliance across Regulatory, EHS, Product, and Data Governance domains at Celestica. Collaborating with suppliers and managing data integrity for compliance mandates.
Director of Regulatory Compliance managing compliance for cross - border payments fintech in Malta. Leading financial crime prevention and AML compliance efforts within the organization.
Compliance Associate managing client - specific tax forms at Oxford Risk Management Group. Responsibilities include data analysis and compliance reporting across various programs.